Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:27517
HistoryOct 04, 2020 - 4:40 a.m.

Arbitrary Code Execution

2020-10-0404:40:43
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
12
arbitrary code execution
caldav
remote attackers
http put
icalendar property

EPSS

0.029

Percentile

90.8%

The CalDAV feature in httpd is vulnerable to arbitrary code execution. It allows remote attackers to execute arbitrary code via a crafted HTTP PUT operation for an event with a long iCalendar property name.