5

CVE-2005-2008

Yaws Webserver 1.55 and earlier allows remote attackers to obtain the source code for yaws scripts via a request to a yaw script with a trailing %00 (null).

Data is provided by the National Vulnerability Database (NVD)
YawsWebserver Version1.50
YawsWebserver Version1.51
YawsWebserver Version1.52
YawsWebserver Version1.53
YawsWebserver Version1.54
YawsWebserver Version1.55
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.46% 0.61
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 5 10 2.9
AV:N/AC:L/Au:N/C:P/I:N/A:N