9.8
CVSSv3

CVE-2002-1816

Published: 31/12/2002 Updated: 15/02/2024
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Off-by-one buffer overflow in the sock_gets function in sockhelp.c for ATPhttpd 0.4b and previous versions allows remote malicious users to execute arbitrary code via a long HTTP GET request.

Vulnerable Product Search on Vulmon Subscribe to Product

redshift atphttpd

Exploits

source: wwwsecurityfocuscom/bid/5956/info ATP httpd is a lightweight HTTP server A vulnerability has been reported in ATP httpd that may result in compromise of root access to remote attackers It is possible to overwrite the least significant byte of the saved base pointer with a NULL if a string of maximum length is transmitted to the ...