Exploitation Summary
EIP tracks 1 public exploit for CVE-2004-2117. PoCs published by Donato Ferrante.
AI-analyzed exploit summary The provided text describes multiple vulnerabilities in TinyServer, including directory traversal, denial of service (DoS), and cross-site scripting (XSS). It includes example HTTP GET requests that could trigger these issues but lacks executable exploit code.
Description
Tiny Server 1.1 allows remote attackers to cause a denial of service (crash) via malformed HTTP requests such as (1) a GET request without the HTTP version (HTTP/1.1), or (2) a request without GET or the HTTP version.
Exploits (1)
The provided text describes multiple vulnerabilities in TinyServer, including directory traversal, denial of service (DoS), and cross-site scripting (XSS). It includes example HTTP GET requests that could trigger these issues but lacks executable exploit code.