CVE-2009-3663
httpdx Web Server 1.4 - Remote Code Execution via Host Header Format String Specifiers
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2009-3663. PoCs published by Pankaj Kohli.
AI-analyzed exploit summary This exploit targets a format string vulnerability in httpdx Web Server 1.4 via the Host header. It sends a malformed Host header with multiple format specifiers to trigger a denial of service (DoS).
Description
Format string vulnerability in the h_readrequest function in http.c in httpdx Web Server 1.4 allows remote attackers to cause a denial of service (crash) or execute arbitrary code via format string specifiers in the Host header.
Exploits (1)
This exploit targets a format string vulnerability in httpdx Web Server 1.4 via the Host header. It sends a malformed Host header with multiple format specifiers to trigger a denial of service (DoS).