CVE-2001-1433

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
29/12/2001
Last modified:
03/04/2025

Description

Cherokee web server before 0.2.7 does not properly drop root privileges after binding to port 80, which could allow remote attackers to gain privileges via other vulnerabilities.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:cherokee:cherokee_httpd:0.1:*:*:*:*:*:*:*
cpe:2.3:a:cherokee:cherokee_httpd:0.1.5:*:*:*:*:*:*:*
cpe:2.3:a:cherokee:cherokee_httpd:0.1.6:*:*:*:*:*:*:*
cpe:2.3:a:cherokee:cherokee_httpd:0.2:*:*:*:*:*:*:*
cpe:2.3:a:cherokee:cherokee_httpd:0.2.5:*:*:*:*:*:*:*
cpe:2.3:a:cherokee:cherokee_httpd:0.2.6:*:*:*:*:*:*:*