← All CVEs

CVE-2004-0179

medium · 6.8

Multiple format string vulnerabilities in (1) neon 0.24.4 and earlier, and other products that use neon including (2) Cadaver, (3) Subversion, and (4) OpenOffice, allow remote malicious WebDAV servers to execute arbitrary code.

6.8
CVSS
11.1%
EPSS (exploit prob.)
96th
EPSS percentile
2004-06-01
Published

AV:N/AC:M/Au:N/C:P/I:P/A:P

Weaknesses

CWE-134

Affected products

VendorProductAffected versions
webdavneon>= 0.19.0, < 0.24.5
apacheopenofficeall versions
apachesubversionall versions
webdavcadaverall versions
debiandebian_linux3.0

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2004-0179