thttpd Basic Authentication Buffer...

- AV AC AU C I A
发布: 2001-11-20
修订: 2025-04-13

thttpd is a web server product designed to be small, fast and secure. Basic Authentication is a feature used by web servers to require remote users to authenticate with a password before being allowed to view certain files. thttpd may support basic authentication, which must be enabled at compile time. By default, basic authentication is enabled. When thttpd attempts to decode the user name and password provided to it, it is possible to overflow a string buffer by a single null character. Due to the placement of the buffer on the stack, it is not believed that this could lead to the execution of arbitrary code. Exploitation of this vulnerability has the potential to lead to erratic behavior in the thttpd process.

0%
暂无可用Exp或PoC
当前有0条受影响产品信息