An issue was discovered in src/http/httpLib.c in EmbedThis Appweb Community Edition 8.2.1, allows attackers to cause a denial of service via the stream paramter to the parseUri function.
References
Link | Resource |
---|---|
https://awxylitol.github.io/2021/05/09/embedthis-appweb-npd-bug.html | Exploit Patch Third Party Advisory |
https://awxylitol.github.io/2021/05/09/embedthis-appweb-npd-bug.html | Exploit Patch Third Party Advisory |
Configurations
Configuration 1 (hide)
AND |
|
History
21 Nov 2024, 06:08
Type | Values Removed | Values Added |
---|---|---|
References | () https://awxylitol.github.io/2021/05/09/embedthis-appweb-npd-bug.html - Exploit, Patch, Third Party Advisory |
09 Jun 2022, 12:17
Type | Values Removed | Values Added |
---|---|---|
CVSS |
v2 : v3 : |
v2 : 5.0
v3 : 7.5 |
References | (MISC) https://awxylitol.github.io/2021/05/09/embedthis-appweb-npd-bug.html - Exploit, Patch, Third Party Advisory | |
CWE | CWE-476 | |
CPE | cpe:2.3:a:embedthis:appweb:8.2.1:*:*:*:community:*:*:* cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:* |
02 Jun 2022, 14:53
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2022-06-02 14:15
Updated : 2024-11-21 06:08
NVD link : CVE-2021-33254
Mitre link : CVE-2021-33254
CVE.ORG link : CVE-2021-33254
JSON object : View
Products Affected
embedthis
- appweb
linux
- linux_kernel
CWE
CWE-476
NULL Pointer Dereference