VYPR

Minalic

by Hans Alshoff

CVEs (2)

  • CVE-2024-58306HigDec 11, 2025
    risk 0.57cvss epss 0.01

    minaliC 2.0.0 contains a denial of service vulnerability that allows remote attackers to crash the web server by sending oversized GET requests. Attackers can send crafted HTTP requests with excessive data to overwhelm the server and cause service interruption.

  • CVE-2012-0273Jun 20, 2014
    risk 0.00cvss epss 0.04

    Multiple stack-based buffer overflows in MinaliC 2.0.0 allow remote attackers to execute arbitrary code via a (1) session_id cookie in a request to the get_cookie_value function in response.c, (2) directory name in a request to the add_default_file function in response.c, or (3) file name in a request to the retrieve_physical_file_name_or_brows function in response.c.