Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-cx2h-jfxr-vw9c

Опубликовано: 29 апр. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.8

Описание

Buffer overflow in the get_tag function in mod_include for Apache 1.3.x to 1.3.32 allows local users who can create SSI documents to execute arbitrary code as the apache user via SSI (XSSI) documents that trigger a length calculation error.

Buffer overflow in the get_tag function in mod_include for Apache 1.3.x to 1.3.32 allows local users who can create SSI documents to execute arbitrary code as the apache user via SSI (XSSI) documents that trigger a length calculation error.

Ссылки

EPSS

Процентиль: 88%
0.04161
Низкий

7.8 High

CVSS3

Дефекты

CWE-119
CWE-131

Связанные уязвимости

CVSS3: 7.8
ubuntu
больше 20 лет назад

Buffer overflow in the get_tag function in mod_include for Apache 1.3.x to 1.3.32 allows local users who can create SSI documents to execute arbitrary code as the apache user via SSI (XSSI) documents that trigger a length calculation error.

redhat
больше 20 лет назад

Buffer overflow in the get_tag function in mod_include for Apache 1.3.x to 1.3.32 allows local users who can create SSI documents to execute arbitrary code as the apache user via SSI (XSSI) documents that trigger a length calculation error.

CVSS3: 7.8
nvd
больше 20 лет назад

Buffer overflow in the get_tag function in mod_include for Apache 1.3.x to 1.3.32 allows local users who can create SSI documents to execute arbitrary code as the apache user via SSI (XSSI) documents that trigger a length calculation error.

CVSS3: 7.8
debian
больше 20 лет назад

Buffer overflow in the get_tag function in mod_include for Apache 1.3. ...

EPSS

Процентиль: 88%
0.04161
Низкий

7.8 High

CVSS3

Дефекты

CWE-119
CWE-131