ACME thttpd 2.22

CPE Details

ACME thttpd 2.22
2.22
2009-07-09
13h25 +00:00
2009-07-09
13h25 +00:00
Alerte pour un CPE
Restez informé de toutes modifications pour un CPE spécifique.
Gestion des notifications

CPE Name: cpe:2.3:a:acme:thttpd:2.22:*:*:*:*:*:*:*

Informations

Vendor

acme

Product

thttpd

Version

2.22

Related CVE

Open and find in CVE List

CVE ID Publié Description Score Gravité
CVE-2017-17663 2018-02-06 16h00 +00:00 The htpasswd implementation of mini_httpd before v1.28 and of thttpd before v2.28 is affected by a buffer overflow that can be exploited remotely to perform code execution.
9.8
Critique
CVE-2003-0899 2003-10-30 04h00 +00:00 Buffer overflow in defang in libhttpd.c for thttpd 2.21 to 2.23b1 allows remote attackers to execute arbitrary code via requests that contain '<' or '>' characters, which trigger the overflow when the characters are expanded to "<" and ">" sequences.
9.8
Critique
CVE-2001-0892 2002-02-02 04h00 +00:00 Acme Thttpd Secure Webserver before 2.22, with the chroot option enabled, allows remote attackers to view sensitive files under the document root (such as .htpasswd) via a GET request with a trailing /.
5