PT-2005-2105 · An · An Httpd Server+1

Publicado

2005-04-13

·

Atualizado

2017-07-11

·

CVE-2005-1086

CVSS v2.0

6.4

Média

VetorAV:N/AC:L/Au:N/C:N/I:P/A:P
Name of the Vulnerable Software and Affected Versions AN HTTPD Server version 1.42n
Description A buffer overflow issue exists in the cmdIS.DLL plugin, allowing remote attackers to execute arbitrary code via an HTTP request with a long User-Agent header.
Recommendations For AN HTTPD Server version 1.42n, consider updating to a newer version that addresses this issue, or as a temporary workaround, restrict access to the cmdIS.DLL plugin to minimize the risk of exploitation.

Exploit

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2005-1086

Produtos afetados

An Httpd Server
Cmdis.Dll