← All CVEs

CVE-2004-0110

high · 7.5

Buffer overflow in the (1) nanohttp or (2) nanoftp modules in XMLSoft Libxml 2 (Libxml2) 2.6.0 through 2.6.5 allow remote attackers to execute arbitrary code via a long URL.

7.5
CVSS
24.2%
EPSS (exploit prob.)
98th
EPSS percentile
2004-03-15
Published

AV:N/AC:L/Au:N/C:P/I:P/A:P

Affected products

VendorProductAffected versions
sgipropack2.3
sgipropack2.4
xmlsoftlibxml1.8.17
xmlsoftlibxml22.4.19
xmlsoftlibxml22.4.23
xmlsoftlibxml22.5.4
xmlsoftlibxml22.5.10
xmlsoftlibxml22.5.11
xmlsoftlibxml22.6.0
xmlsoftlibxml22.6.1
xmlsoftlibxml22.6.2
xmlsoftlibxml22.6.3
xmlsoftlibxml22.6.4
xmlsoftlibxml22.6.5

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2004-0110