Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-w7q3-c7q5-xfgf

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.8

Описание

Heap-based Buffer Overflow in the de_dotdot function in libhttpd.c in sthttpd before 2.27.1 allows remote attackers to cause a denial of service (daemon crash) or possibly have unspecified other impact via a crafted filename.

Heap-based Buffer Overflow in the de_dotdot function in libhttpd.c in sthttpd before 2.27.1 allows remote attackers to cause a denial of service (daemon crash) or possibly have unspecified other impact via a crafted filename.

EPSS

Процентиль: 52%
0.00287
Низкий

7.8 High

CVSS3

Дефекты

CWE-119
CWE-787

Связанные уязвимости

CVSS3: 7.8
nvd
больше 8 лет назад

Heap-based Buffer Overflow in the de_dotdot function in libhttpd.c in sthttpd before 2.27.1 allows remote attackers to cause a denial of service (daemon crash) or possibly have unspecified other impact via a crafted filename.

CVSS3: 7.8
debian
больше 8 лет назад

Heap-based Buffer Overflow in the de_dotdot function in libhttpd.c in ...

EPSS

Процентиль: 52%
0.00287
Низкий

7.8 High

CVSS3

Дефекты

CWE-119
CWE-787