CVE-2004-1437

pavuk - Remote Code Execution via Digest Authentication Buffer Overflow

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2004-1437. PoCs published by infamous41md.

AI-analyzed exploit summary This exploit targets a buffer overflow vulnerability in Pavuk web spider's HTTP digest authentication handling. It crafts a malicious nonce to overwrite the stack, restore critical pointers, and execute shellcode for remote code execution.

Description

Multiple buffer overflows in the digest authentication functionality in Pavuk 0.9.28-r2 and earlier allow remote attackers to execute arbitrary code.

Exploits (1)

exploitdb WORKING POC VERIFIED
by infamous41md · cremotelinux
https://www.exploit-db.com/exploits/380

This exploit targets a buffer overflow vulnerability in Pavuk web spider's HTTP digest authentication handling. It crafts a malicious nonce to overwrite the stack, restore critical pointers, and execute shellcode for remote code execution.

Classification
Working Poc 95%
Attack Type
Rce
Complexity
Complex
Reliability
Reliable
Target: Pavuk web spider (version not specified)
No auth needed
Prerequisites: Network access to target · Target must be running Pavuk web spider · Attacker must bind to port 80
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (3)

Core 3
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/16807
Patch vendor-advisory x_refsource_gentoo
http://www.gentoo.org/security/en/glsa/glsa-200407-19.xml
Exploit, Patch vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/10797

Scores

EPSS 0.1337
EPSS Percentile 95.9%

Details

Status published
Products (3)
pavuk/pavuk 0.9pl28i
pavuk/pavuk 0.928r1
pavuk/pavuk 0.928r2
Published Dec 31, 2004
Tracked Since Feb 18, 2026