5
CVSSv2

CVE-2005-1121

Published: 02/05/2005 Updated: 11/07/2017
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:P/A:N

Vulnerability Summary

Format string vulnerability in the my_xlog function in lib.c for Oops! Proxy Server 1.5.23 and previous versions, as called by the auth functions in the passwd_mysql and passwd_pgsql modules, may allow malicious users to execute arbitrary code via a URL.

Vulnerable Product Search on Vulmon Subscribe to Product

igor khasilev oops proxy server 1.4.22

igor khasilev oops proxy server 1.5.19

igor khasilev oops proxy server 1.5.53

gentoo linux

Vendor Advisories

A format string vulnerability has been discovered in the MySQL/PgSQL authentication module of Oops, a caching HTTP proxy server written for performance For the stable distribution (woody) this problem has been fixed in version 1519cvs20010818-01woody1 For the unstable distribution (sid) this problem will be fixed soon We recommend that you u ...