VYPR

Nostromo

by Nazgul

CVEs (2)

  • CVE-2022-48253CriJan 11, 2023
    risk 0.64cvss 9.8epss 0.03

    nhttpd in Nostromo before 2.1 is vulnerable to a path traversal that may allow an attacker to execute arbitrary commands on the remote server. The vulnerability occurs when the homedirs option is used.

  • CVE-2011-0751Mar 16, 2011
    risk 0.03cvss epss 0.04

    Directory traversal vulnerability in nhttpd (aka Nostromo webserver) before 1.9.4 allows remote attackers to execute arbitrary programs or read arbitrary files via a ..%2f (encoded dot dot slash) in a URI.