CVE-2002-1866
Last modified
CVE-2002-1866 is a vulnerability of currently unknown severity. Simple Web Server (SWS) 0.0.4 through 0.1.0 does not close file descriptors for 404 error messages, which could allow remote attackers to cause a denial of service (file descriptor exhaustion) via multiple requests for pages that do not exist.. EPSS estimates a 1.57% chance of exploitation in the next 30 days.
Description
Simple Web Server (SWS) 0.0.4 through 0.1.0 does not close file descriptors for 404 error messages, which could allow remote attackers to cause a denial of service (file descriptor exhaustion) via multiple requests for pages that do not exist.
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Sws | Sws Simple Web Server | 0.0.3 |
| Sws | Sws Simple Web Server | 0.0.4 |
| Sws | Sws Simple Web Server | 0.1.0 |
| Sws | Sws Simple Web Server | 0.1.1 |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2002-1866?
How severe is CVE-2002-1866?
How do I fix CVE-2002-1866?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2002
- CVE-2002-1860Pramati Server 3.0, when running on Windows, allows remote a…
- CVE-2002-1861Sybase Enterprise Application Server 4.0, when running on Wi…
- CVE-2002-1862SmartMail Server 2.0 allows remote attackers to cause a deni…
- CVE-2002-1863Iomega Network Attached Storage (NAS) A300U, and possibly ot…
- CVE-2002-1864Directory traversal vulnerability in Simple Web Server (SWS)…
- CVE-2002-1865Buffer overflow in the Embedded HTTP server, as used in (1) …
- CVE-2002-1867The default configuration of BizDesign ImageFolio 2.23 throu…
- CVE-2002-1868Dispair 0.1 and 0.2 allows remote attackers to execute arbit…
- CVE-2002-1869Heysoft EventSave 5.1 and 5.2 and Heysoft EventSave+ 5.1 and…3.3
- CVE-2002-1870Simple Web Server (SWS) 0.0.4 through 0.1.0 does not properl…
- CVE-2002-1871pkgadd in Sun Solaris 2.5.1 through 8 installs files setuid/…
- CVE-2002-1872Microsoft SQL Server 6.0 through 2000, with SQL Authenticati…7.5
Are you affected by CVE-2002-1866?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
