Описание
Format string vulnerability in AnswerBook2 (AB2) web server dwhttpd 3.1a4 allows remote attackers to cause a denial of service and possibly execute arbitrary commands via encoded % characters in an HTTP request, which is improperly logged.
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:inso:answerbook2:*:*:*:*:*:*:*:*
EPSS
Процентиль: 75%
0.00908
Низкий
7.5 High
CVSS2
Дефекты
NVD-CWE-Other
Связанные уязвимости
github
около 3 лет назад
Format string vulnerability in AnswerBook2 (AB2) web server dwhttpd 3.1a4 allows remote attackers to cause a denial of service and possibly execute arbitrary commands via encoded % characters in an HTTP request, which is improperly logged.
EPSS
Процентиль: 75%
0.00908
Низкий
7.5 High
CVSS2
Дефекты
NVD-CWE-Other