Security Advisory

CVE-2018-15504

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2018-08-18 00:00:00
Last updated 2024-08-05 09:54:03
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

An issue was discovered in Embedthis GoAhead before 4.0.1 and Appweb before 7.0.2. The server mishandles some HTTP request fields associated with time, which results in a NULL pointer dereference, as demonstrated by If-Modified-Since or If-Unmodified-Since with a month greater than 11.