Lucene search

K
prionPRIOn knowledge basePRION:CVE-2008-6520
HistoryMar 25, 2009 - 6:30 p.m.

Format string

2009-03-2518:30:00
PRIOn knowledge base
www.prio-n.com
1

8.5 High

AI Score

Confidence

High

0.018 Low

EPSS

Percentile

88.2%

Multiple format string vulnerabilities in the SSI filter in Xitami Web Server 2.5c2, and possibly other versions, allow remote attackers to cause a denial of service (daemon crash) and possibly execute arbitrary code via format string specifiers in a URI that ends in (1) .ssi, (2) .shtm, or (3) .shtml, which triggers incorrect logging code involving the sendfmt function in the SMT kernel.

CPENameOperatorVersion
xitamieq2.5.0-c2

8.5 High

AI Score

Confidence

High

0.018 Low

EPSS

Percentile

88.2%

Related for PRION:CVE-2008-6520