Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2002-1870

Overview

Vulnerability Score 7.5 7.5
CVE Id CVE-2002-1870
Last Modified 05 Sep 2008 04:31:43
Published 31 Dec 2002 12:00:00
Confidentiality Impact PARTIAL PARTIAL
Integrity Impact PARTIAL PARTIAL
Availability Impact PARTIAL PARTIAL
Access Vector NETWORK
Access Complexity LOW
Authentication NONE

CVE-2002-1870

Summary

Simple Web Server (SWS) 0.0.4 through 0.1.0 does not properly handle when the recv function call fails, which may allow remote attackers to overwrite program data or perform actions on an uninitialized heap, leading to a denial of service and possibly code execution.

Vulnerable Systems

Application

  • Sws Simple Web Server 0.0.3

  • Sws Simple Web Server 0.0.4

  • Sws Simple Web Server 0.1.0

  • Sws Simple Web Server 0.1.1


References

BID - 5660

XF - sws-webserver-recv-overwrite(10072)

BUGTRAQ - 20020903 Re: SWS Web Server v0.1.0 Exploit


Last Updated: 27 May 2016 10:37:31