PT-2024-15423 · Acme · Acme Ultra Mini Httpd

Fernando.Mengali

+1

·

Published

2024-01-06

·

Updated

2024-05-17

·

CVE-2024-0263

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions ACME Ultra Mini HTTPd version 1.21
Description A vulnerability was found in the HTTP GET Request Handler component, which can lead to denial of service. The manipulation can be initiated remotely. The exploit has been disclosed to the public and may be used.
Recommendations To fix this issue, apply a patch to ACME Ultra Mini HTTPd version 1.21. As a temporary workaround, consider restricting access to the HTTP GET Request Handler until a patch is available.

Exploit

Fix

Improper Resource Release

Weakness Enumeration

Related Identifiers

CVE-2024-0263

Affected Products

Acme Ultra Mini Httpd