Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.10285
Category:Gain root remotely
Title:thttpd 2.04 buffer overflow
Summary:NOSUMMARY
Description:Description:
It is possible to make the remote thttpd server execute
arbitrary code by sending a request like :

GET / HTTP/1.0
If-Modified-Since: AAA[...]AAAA

An attacker may use this to gain control on your computer.

Solution : if you are using thttpd, upgrade to version 2.05. If you
are not, then contact your vendor and ask for a patch,
or change your web server
Risk factor : High

Cross-Ref: BugTraq ID: 1248
Common Vulnerability Exposure (CVE) ID: CVE-2000-0359
http://www.securityfocus.com/bid/1248
Bugtraq: 19991113 thttpd 2.04 stack overflow (VD#6) (Google Search)
http://archives.neohapsis.com/archives/bugtraq/1626.html
SuSE Security Announcement: 19991116 Security hole in thttpd 1.90a - 2.04 (Google Search)
http://www.novell.com/linux/security/advisories/suse_security_announce_30.html
XForce ISS Database: thttpd-ifmodifiedsince-header-dos
CopyrightThis script is Copyright (C) 1999 Renaud Deraison

This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.