CVE-2010-2435

Severity CVSS v4.0:
Pending analysis
Type:
CWE-20 Input Validation
Publication date:
24/06/2010
Last modified:
11/04/2025

Description

Weborf HTTP Server 0.12.1 and earlier allows remote attackers to cause a denial of service (crash) via Unicode characters in a Connection HTTP header, and possibly other headers.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:salvo_tomaselli:weborf_http_server:*:*:*:*:*:*:*:* 0.12.1 (including)
cpe:2.3:a:salvo_tomaselli:weborf_http_server:0.10:*:*:*:*:*:*:*
cpe:2.3:a:salvo_tomaselli:weborf_http_server:0.11:*:*:*:*:*:*:*
cpe:2.3:a:salvo_tomaselli:weborf_http_server:0.12:*:*:*:*:*:*:*