CVE-2023-46586

c

gi.c in weborf .0.17, 0.18, 0.19, and 0.20 (before 1.0) lacks '\0' termination of the path for CGI scripts because strncpy is misused.

Configurations

No configuration.

History

19 Mar 2025, 15:15

Type Values Removed Values Added
CWE CWE-119

09 Oct 2024, 14:35

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 9.1
Summary
  • (es) cgi.c en weborf .0.17, 0.18, 0.19 y 0.20 (antes de 1.0) carece de la terminación '\0' en la ruta para scripts CGI porque strncpy se usa incorrectamente.

09 Oct 2024, 06:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-10-09 06:15

Updated : 2025-03-19 15:15


NVD link : CVE-2023-46586

Mitre link : CVE-2023-46586

CVE.ORG link : CVE-2023-46586


JSON object : View

Products Affected

No product.

CWE
CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer