Security Advisory
CVE-2023-46586
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
cgi.c in weborf .0.17, 0.18, 0.19, and 0.20 (before 1.0) lacks 0 termination of the path for CGI scripts because strncpy is misused.