CVE-2013-5019

Ultra Mini HTTPD 1.21 - Buffer Overflow

Title source: llm

Description

Stack-based buffer overflow in Ultra Mini HTTPD 1.21 allows remote attackers to execute arbitrary code via a long resource name in an HTTP request.

Exploits (6)

exploitdb WORKING POC VERIFIED
by jollymongrel · pythonlocalwindows_x86
https://www.exploit-db.com/exploits/44472
exploitdb WORKING POC VERIFIED
by OJ Reeves · pythonremotewindows
https://www.exploit-db.com/exploits/31814
exploitdb WORKING POC VERIFIED
by Sumit · pythonremotewindows
https://www.exploit-db.com/exploits/31736
exploitdb WORKING POC VERIFIED
by Metasploit · rubyremotewindows
https://www.exploit-db.com/exploits/27608
exploitdb WORKING POC VERIFIED
by superkojiman · pythonremotewindows
https://www.exploit-db.com/exploits/26739
metasploit WORKING POC NORMAL
by superkojiman · rubypocwin
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/windows/http/ultraminihttp_bof.rb

Scores

EPSS 0.8177
EPSS Percentile 99.2%

Details

CWE
CWE-119
Status published
Products (1)
vector/ultra_mini_httpd 1.21
Published Jul 31, 2013
Tracked Since Feb 18, 2026