CVE-2008-6519 Information
Feb 14, 2021
cve
Description
Format string vulnerability in Xitami Web Server 2.2a through 2.5c2 and possibly other versions allows remote attackers to cause a denial of service (daemon crash) and possibly execute arbitrary code via format string specifiers in a Long Running Web Process (LRWP) request which triggers incorrect logging code involving the sendfmt function in the SMT kernel.
Reference
http://www.bratax.be/advisories/b013.html http://www.securityfocus.com/bid/28603 https://exchange.xforce.ibmcloud.com/vulnerabilities/41644 https://www.exploit-db.com/exploits/5354
Share on: