CVE-2003-1228

mathopd 1.2-1.5b13 - Buffer Overflow via Long HTTP Path

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2003-1228. PoCs published by aion.

AI-analyzed exploit summary This exploit targets a buffer overflow vulnerability in Mathopd web server versions 1.2, 1.3, 1.4, and 1.5b9. It includes multiple shellcode payloads for Linux and BSD systems to achieve remote code execution by overflowing a buffer in the HTTP response handling.

Description

Buffer overflow in the prepare_reply function in request.c for Mathopd 1.2 through 1.5b13, and possibly earlier versions, allows remote attackers to cause a denial of service (server crash) and possibly execute arbitrary code via an HTTP request with a long path.

Exploits (1)

exploitdb WORKING POC VERIFIED
by aion · cremotelinux
https://www.exploit-db.com/exploits/23811

This exploit targets a buffer overflow vulnerability in Mathopd web server versions 1.2, 1.3, 1.4, and 1.5b9. It includes multiple shellcode payloads for Linux and BSD systems to achieve remote code execution by overflowing a buffer in the HTTP response handling.

Classification
Working Poc 95%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target: Mathopd 1.2/1.3/1.4/1.5b9
No auth needed
Prerequisites: Network access to the target Mathopd server · Mathopd configured with a redirect alias
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (6)

Core 6
Core References
Issue Tracking, Mailing List, Third Party Advisory mailing-list x_refsource_bugtraq
http://marc.info/?l=bugtraq&m=107090601705839&w=2
Exploit, Third Party Advisory x_refsource_misc
http://www.securiteam.com/unixfocus/5FP0C1FCAW.html
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/10385/
Issue Tracking, Mailing List, Third Party Advisory mailing-list x_refsource_bugtraq
http://marc.info/?l=bugtraq&m=107064887507504&w=2
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/9871
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/15474

Scores

EPSS 0.1410
EPSS Percentile 96.1%

Details

CWE
CWE-120
Status published
Products (2)
mathopd/mathopd 1.5 (2 CPE variants)
mathopd/mathopd 1.2 - 1.5
Published Dec 31, 2003
Tracked Since Feb 18, 2026