Vulnerabilities > CVE-2000-0359 - Unspecified vulnerability in Acme Labs Thttpd

047910
CVSS 10.0 - CRITICAL
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
COMPLETE
Integrity impact
COMPLETE
Availability impact
COMPLETE
network
low complexity
acme-labs
critical
nessus

Summary

Buffer overflow in Trivial HTTP (THTTPd) allows remote attackers to cause a denial of service or execute arbitrary commands via a long If-Modified-Since header.

Nessus

NASL familyWeb Servers
NASL idTHTTPD_BUFFER_OVERFLOW.NASL
descriptionIt is possible to make the remote thttpd server execute arbitrary code by sending a request like : GET / HTTP/1.0 If-Modified-Since: AAA[...]AAAA An attacker may use this to gain control on your computer.
last seen2020-06-01
modified2020-06-02
plugin id10285
published1999-11-14
reporterThis script is Copyright (C) 1999-2018 Tenable Network Security, Inc.
sourcehttps://www.tenable.com/plugins/nessus/10285
titlethttpd 2.04 If-Modified-Since Header Remote Buffer Overflow