Lucene search

K
cveMitreCVE-2007-1870
HistoryApr 18, 2007 - 3:19 a.m.

CVE-2007-1870

2007-04-1803:19:00
mitre
web.nvd.nist.gov
92
cve-2007-1870
lighttpd
denial of service
crash
nvd
vulnerability

CVSS2

7.8

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:N/I:N/A:C

AI Score

6

Confidence

Low

EPSS

0.06

Percentile

93.6%

lighttpd before 1.4.14 allows attackers to cause a denial of service (crash) via a request to a file whose mtime is 0, which results in a NULL pointer dereference.

Affected configurations

Nvd
Node
lighttpdlighttpdMatch1.3.0
OR
lighttpdlighttpdMatch1.3.1
OR
lighttpdlighttpdMatch1.3.2
OR
lighttpdlighttpdMatch1.3.3
OR
lighttpdlighttpdMatch1.3.4
OR
lighttpdlighttpdMatch1.3.5
OR
lighttpdlighttpdMatch1.3.6
OR
lighttpdlighttpdMatch1.3.7
OR
lighttpdlighttpdMatch1.3.8
OR
lighttpdlighttpdMatch1.3.9
OR
lighttpdlighttpdMatch1.3.10
OR
lighttpdlighttpdMatch1.3.11
OR
lighttpdlighttpdMatch1.3.12
OR
lighttpdlighttpdMatch1.3.13
OR
lighttpdlighttpdMatch1.3.14
OR
lighttpdlighttpdMatch1.3.15
OR
lighttpdlighttpdMatch1.3.16
OR
lighttpdlighttpdMatch1.4.0
OR
lighttpdlighttpdMatch1.4.1
OR
lighttpdlighttpdMatch1.4.2
OR
lighttpdlighttpdMatch1.4.3
OR
lighttpdlighttpdMatch1.4.4
OR
lighttpdlighttpdMatch1.4.5
OR
lighttpdlighttpdMatch1.4.6
OR
lighttpdlighttpdMatch1.4.7
OR
lighttpdlighttpdMatch1.4.8
OR
lighttpdlighttpdMatch1.4.9
OR
lighttpdlighttpdMatch1.4.10
OR
lighttpdlighttpdMatch1.4.12
OR
lighttpdlighttpdMatch1.4.13
VendorProductVersionCPE
lighttpdlighttpd1.3.0cpe:2.3:a:lighttpd:lighttpd:1.3.0:*:*:*:*:*:*:*
lighttpdlighttpd1.3.1cpe:2.3:a:lighttpd:lighttpd:1.3.1:*:*:*:*:*:*:*
lighttpdlighttpd1.3.2cpe:2.3:a:lighttpd:lighttpd:1.3.2:*:*:*:*:*:*:*
lighttpdlighttpd1.3.3cpe:2.3:a:lighttpd:lighttpd:1.3.3:*:*:*:*:*:*:*
lighttpdlighttpd1.3.4cpe:2.3:a:lighttpd:lighttpd:1.3.4:*:*:*:*:*:*:*
lighttpdlighttpd1.3.5cpe:2.3:a:lighttpd:lighttpd:1.3.5:*:*:*:*:*:*:*
lighttpdlighttpd1.3.6cpe:2.3:a:lighttpd:lighttpd:1.3.6:*:*:*:*:*:*:*
lighttpdlighttpd1.3.7cpe:2.3:a:lighttpd:lighttpd:1.3.7:*:*:*:*:*:*:*
lighttpdlighttpd1.3.8cpe:2.3:a:lighttpd:lighttpd:1.3.8:*:*:*:*:*:*:*
lighttpdlighttpd1.3.9cpe:2.3:a:lighttpd:lighttpd:1.3.9:*:*:*:*:*:*:*
Rows per page:
1-10 of 301

CVSS2

7.8

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:N/I:N/A:C

AI Score

6

Confidence

Low

EPSS

0.06

Percentile

93.6%