CVE-2008-6519
Last modified
CVE-2008-6519 is a vulnerability of currently unknown severity. Format string vulnerability in Xitami Web Server 2.2a through 2.5c2, and possibly other versions, allows remote attackers to cause a denial of service (daemon crash) and possibly execute arbitrary code via format string specifiers in a Long Running Web Process (LRWP) request, which triggers incorrect logging code involving the sendfmt function in the SMT kernel.. EPSS estimates a 5.94% chance of exploitation in the next 30 days.
Description
Format string vulnerability in Xitami Web Server 2.2a through 2.5c2, and possibly other versions, allows remote attackers to cause a denial of service (daemon crash) and possibly execute arbitrary code via format string specifiers in a Long Running Web Process (LRWP) request, which triggers incorrect logging code involving the sendfmt function in the SMT kernel.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Imatix | Xitami | 2.2a |
| Imatix | Xitami | 2.4 |
| Imatix | Xitami | 2.4d7 |
| Imatix | Xitami | 2.5 |
| Imatix | Xitami | 2.5c2 |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2008-6519?
How severe is CVE-2008-6519?
How do I fix CVE-2008-6519?
Are you affected by CVE-2008-6519?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
