Vulnerabilities > CVE-2001-1496 - Off-by-one Error vulnerability in Acme Thttpd
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
HIGH Integrity impact
HIGH Availability impact
HIGH Summary
Off-by-one buffer overflow in Basic Authentication in Acme Labs thttpd 1.95 through 2.20 allows remote attackers to cause a denial of service and possibly execute arbitrary code.
Vulnerable Configurations
Common Weakness Enumeration (CWE)
References
- http://www.securityfocus.com/archive/1/241310
- http://www.securityfocus.com/archive/1/241310
- http://www.securityfocus.com/archive/1/241953
- http://www.securityfocus.com/archive/1/241953
- http://www.securityfocus.com/bid/3562
- http://www.securityfocus.com/bid/3562
- https://exchange.xforce.ibmcloud.com/vulnerabilities/7595
- https://exchange.xforce.ibmcloud.com/vulnerabilities/7595