PT-2005-2105 · An · An Httpd Server+1

Published

2005-04-13

·

Updated

2017-07-11

·

CVE-2005-1086

CVSS v2.0

6.4

Medium

VectorAV:N/AC:L/Au:N/C:N/I:P/A:P
Name of the Vulnerable Software and Affected Versions AN HTTPD Server version 1.42n
Description A buffer overflow issue exists in the cmdIS.DLL plugin, allowing remote attackers to execute arbitrary code via an HTTP request with a long User-Agent header.
Recommendations For AN HTTPD Server version 1.42n, consider updating to a newer version that addresses this issue, or as a temporary workaround, restrict access to the cmdIS.DLL plugin to minimize the risk of exploitation.

Exploit

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2005-1086

Affected Products

An Httpd Server
Cmdis.Dll