CVE-2004-0940
HIGHHP-UX - Buffer Overflow in mod_include get_tag Function
Title source: llmExploitation Summary
EIP tracks 2 public exploits for CVE-2004-0940. PoCs published by xCrZx.
AI-analyzed exploit summary This exploit targets a buffer overflow vulnerability in the get_tag function of mod_include in Apache 1.3.x, allowing arbitrary code execution with the privileges of the httpd child process. The exploit generates a malicious HTML file that triggers the overflow when processed by the vulnerable Apache server.
Description
Buffer overflow in the get_tag function in mod_include for Apache 1.3.x to 1.3.32 allows local users who can create SSI documents to execute arbitrary code as the apache user via SSI (XSSI) documents that trigger a length calculation error.
Exploits (2)
This exploit targets a buffer overflow vulnerability in the get_tag function of mod_include in Apache 1.3.x, allowing arbitrary code execution with the privileges of the httpd child process. The exploit generates a malicious HTML file that triggers the overflow when processed by the vulnerable Apache server.
This exploit targets a buffer overflow in Apache 1.3.x's mod_include module via a maliciously crafted HTML file. It leverages improper length validation in the get_tag function to execute arbitrary code (bind shell) with httpd privileges.
References (21)
Scores
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H