CVE-2004-1899Monit vulnerability

4 documents4 sources
Severity
5.0MEDIUMNVD
EPSS
0.7%
top 26.88%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedDec 31
Latest updateApr 29

Description

The administration interface in Monit 1.4 through 4.2 allows remote attackers to cause an off-by-one overflow via a POST that contains 1024 bytes.

CVSS vector

AV:N/AC:L/C:N/I:P/A:NExploitability: 10.0 | Impact: 2.9

Affected Packages3 packages

debiandebian/monit< monit 1:4.2.1 (bookworm)
Debiantildeslash/monit< 1:4.2.1+3
NVDtildeslash/monit9 versions+8

Patches

🔴Vulnerability Details

2
GHSA
GHSA-86jg-72jj-vxr7: The administration interface in Monit 12022-04-29
OSV
CVE-2004-1899: The administration interface in Monit 12004-12-31

📋Vendor Advisories

1
Debian
CVE-2004-1899: monit - The administration interface in Monit 1.4 through 4.2 allows remote attackers to...2004
CVE-2004-1899 — Debian Monit vulnerability | cvebase