PT-2003-2503 · Fnord · Fnord

Ralf Wildenhues

·

Published

2003-12-31

·

Updated

2018-10-19

·

CVE-2003-1558

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions fnord version 1.6
Description The issue allows remote attackers to create a denial of service (crash) and possibly execute arbitrary code via a long CGI request passed to the do cgi function.
Recommendations For fnord version 1.6, consider restricting access to the do cgi function until a patch is available. As a temporary workaround, avoid using long CGI requests to minimize the risk of exploitation.

Fix

DoS

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2003-1558

Affected Products

Fnord