CVE-2003-0625
HIGHhadrons xfstt < 1.5.1 - Off-by-one Error via Malformed Client Request
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2003-0625. PoCs published by V9.
AI-analyzed exploit summary The provided text describes a memory disclosure vulnerability in xfstt, which can be triggered remotely to cause a denial of service or leak memory layout details. The example demonstrates a simple telnet interaction to exploit the issue.
Description
Off-by-one error in certain versions of xfstt allows remote attackers to read potentially sensitive memory via a malformed client request in the connection handshake, which leaks the memory in the server's response.
Exploits (1)
The provided text describes a memory disclosure vulnerability in xfstt, which can be triggered remotely to cause a denial of service or leak memory layout details. The example demonstrates a simple telnet interaction to exploit the issue.
References (4)
Scores
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N