Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2002-2400

EPSS 17.32% · P95
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2002-2400

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
Buffer overflow in the httpdProcessRequest function in LibHTTPD 1.2 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long HTTP POST request.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
LibHTTPD POST远程缓冲区溢出漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
LibHTTPD是一款用于嵌入设备的小型WEB服务程序。 LibHTTPD对超长POST请求处理不正确,远程攻击者可以利用这个漏洞对LibHTTPD服务程序进行缓冲区溢出攻击,以WEB进程在系统上执行任意指令。 检查libhttpd.a库中的'api.c'源代码,发现860行的httpdProcessRequest()函数对用户提交的输入缺少正确检查,提交超长POST请求可导致不经过充分边界检查而直接进行拷贝操作,发生缓冲区溢出,精心构建提交请求数据可能以WEB进程权限在系统上执行任意指令。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2002-2400

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2002-2400

登录查看更多情报信息。

Same Patch Batch · n/a · 2007-11-01 · 55 CVEs total

CVE-2007-5776Blue-Collar Productions i-Gallery igallery.ASP 目录遍历漏洞
CVE-2007-5791Vonage Motorola VT 2142用户身份伪造漏洞
CVE-2007-5786GoSamba 多个远程文件包含漏洞
CVE-2007-5789Grandstream HandyTone-488 PSTN To VoIP适配器IP栈远程拒绝服务漏洞
CVE-2007-5788Grandstream HandyTone-488 PSTN-to-VoIP适配器远程溢出漏洞
CVE-2007-5787Micro Login System UserPWD.TXT 信息泄露漏洞
CVE-2007-5790Globe7 SIP软件电话弱口令混淆漏洞
CVE-2007-5779Gretech GOM Player GomWeb3.dll远程栈溢出漏洞
CVE-2007-5778Mobile Spy Insecure Password Storage 信息泄露漏洞
CVE-2007-5777Blue-Collar Blue-Collar Productions I-Gallery web根目录 权限许可和访问控制漏洞
CVE-2007-5780Teatro pub08_comments.php 远程文件包含漏洞
CVE-2007-5775BitDefender在线扫描器OScan.OCX ActiveX控件堆溢出漏洞
CVE-2007-5774Flatnuke3 文件管理模块index.php 信息泄露漏洞
CVE-2007-5773Flatnuke index.php 跨站请求伪造漏洞
CVE-2007-5772Flatnuke3 文件管理模块 未授权访问漏洞
CVE-2007-5771Flatnuke3 myforum%00 cookie 权限绕过漏洞
CVE-2007-5793多个IDS产品全角/半角Unicode编码检测漏报漏洞
CVE-2002-2425Sun AnswerBook2未认证管理脚本访问漏洞
CVE-2002-2424PHPReactor样式属性HTML注入漏洞
CVE-2002-2423Sendmail超长Ident日志记录欺骗漏洞

Showing top 20 of 55 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2002-2400

No comments yet


Leave a comment