← back
CVE-2021-3466

CVE-2021-3466

EPSS 8.7%CWE-120
Vexday Risk Score
3Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS EPSS 8.7%KEV nãoPoC Nuclei Metasploit Patch referenciado
Lifecycle
25 Mar 2021Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
A flaw was found in libmicrohttpd. A missing bounds check in the post_process_urlencoded function leads to a buffer overflow, allowing a remote attacker to write arbitrary data in an application that uses libmicrohttpd. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability. Only version 0.9.70 is vulnerable.
Affected products
n/a · libmicrohttpd

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →