VYPR

Simple Httpd

by Sergey Lyubka

CVEs (3)

CVESevRiskCVSSEPSSKEVPublishedDescription
CVE-2006-52160.100.82Oct 10, 2006Stack-based buffer overflow in Sergey Lyubka Simple HTTPD (shttpd) 1.34 allows remote attackers to execute arbitrary code via a long URI.
CVE-2007-63260.040.06Dec 13, 2007Sergey Lyubka Simple HTTPD (shttpd) 1.3 on Windows allows remote attackers to cause a denial of service via a request that includes an MS-DOS device name, as demonstrated by the /aux URI.
CVE-2007-34070.040.12Jun 26, 2007Sergey Lyubka Simple HTTPD (shttpd) 1.38 allows remote attackers to obtain sensitive information (script source code) via a URL with a trailing encoded space (%20).