7.5
CVSSv2

CVE-2001-1433

Published: 29/12/2001 Updated: 11/07/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Cherokee web server prior to 0.2.7 does not properly drop root privileges after binding to port 80, which could allow remote malicious users to gain privileges via other vulnerabilities.

Vulnerable Product Search on Vulmon Subscribe to Product

cherokee cherokee httpd 0.1.6

cherokee cherokee httpd 0.2

cherokee cherokee httpd 0.2.5

cherokee cherokee httpd 0.2.6

cherokee cherokee httpd 0.1

cherokee cherokee httpd 0.1.5