Vulnerabilities > Acme > Mini Httpd > 1.21

DATE CVE VULNERABILITY TITLE RISK
2018-10-29 CVE-2018-18778 Information Exposure vulnerability in Acme Mini-Httpd
ACME mini_httpd before 1.30 lets remote users read arbitrary files.
network
low complexity
acme CWE-200
4.0
2018-02-06 CVE-2017-17663 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Acme Mini Httpd and Thttpd
The htpasswd implementation of mini_httpd before v1.28 and of thttpd before v2.28 is affected by a buffer overflow that can be exploited remotely to perform code execution.
network
low complexity
acme CWE-119
7.5
2015-02-10 CVE-2015-1548 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Acme Mini Httpd 1.21
mini_httpd 1.21 and earlier allows remote attackers to obtain sensitive information from process memory via an HTTP request with a long protocol string, which triggers an incorrect response size calculation and an out-of-bounds read.
network
low complexity
acme CWE-119
5.0