7.5
CVE-2002-2431
- EPSS 1.2%
- Veröffentlicht 06.02.2009 19:30:00
- Zuletzt bearbeitet 16.06.2026 22:01:17
- Erkennungen
Unspecified vulnerability in GoAhead WebServer before 2.1.4 allows remote attackers to cause "incorrect behavior" via unknown "malicious code," related to incorrect use of the socketInputBuffered function by sockGen.c.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Goahead ≫ Goahead Webserver Version <= 2.1.3
Goahead ≫ Goahead Webserver Version 2.0
Goahead ≫ Goahead Webserver Version 2.1
Goahead ≫ Goahead Webserver Version 2.1.1
Goahead ≫ Goahead Webserver Version 2.1.2
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 1.2% | 0.642 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 7.5 | 10 | 6.4 |
AV:N/AC:L/Au:N/C:P/I:P/A:P
|
http://data.goahead.com/Software/Webserver/2.1.8/release.htm#fixed-vulnerability-to-malicious-code-in-sockgen-c