Security Advisory

CVE-2009-4491

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2010-01-13 00:00:00
Last updated 2024-08-07 07:01:20
Assigner mitre
State PUBLISHED

Description

thttpd 2.25b0 writes data to a log file without sanitizing non-printable characters, which might allow remote attackers to modify a windows title, or possibly execute arbitrary commands or overwrite files, via an HTTP request containing an escape sequence for a terminal emulator.