ZeroHour

Vulnerabilities

4 CVEs · NVD, GitHub Advisories, CISA KEV, FIRST EPSS, GitHub PoC repos

CVEVulnerabilityCVSSEPSSFlagsAffectedExposurePublished
CVE-2024-0263
A vulnerability was found in ACME Ultra Mini HTTPd 1.21.

A vulnerability was found in ACME Ultra Mini HTTPd 1.21. It has been classified as problematic. This affects an unknown part of the component HTTP GET Request Handler. The manipulation leads to denial of service. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. It is recommended to apply a patch to fix this issue. The associated identifier of this vulnerability is VDB-249819.

NVD description · AI analysis pending
7.51% PoC ×2
  • acme ultra mini httpd
CVE-2023-38198
acme.sh before 3.0.6 runs arbitrary commands from a remote server via eval, as exploited in the wild in June 2023.

acme.sh before 3.0.6 runs arbitrary commands from a remote server via eval, as exploited in the wild in June 2023.

NVD description · AI analysis pending
9.81%
  • acme.sh project acme.sh
CVE-2018-18778
ACME mini_httpd before 1.30 lets remote users read arbitrary files.

ACME mini_httpd before 1.30 lets remote users read arbitrary files.

NVD description · AI analysis pending
6.571%
  • acme mini-httpd
CVE-2017-17663
The htpasswd implementation of mini_httpd before v1.28 and of thttpd before v2.28 is affected by a buffer overflow that can be exploited remotely to perform cod

The htpasswd implementation of mini_httpd before v1.28 and of thttpd before v2.28 is affected by a buffer overflow that can be exploited remotely to perform code execution.

NVD description · AI analysis pending
9.83%
  • acme mini httpd
  • acme thttpd