CVE-2008-5092

Heap-based buffer overflows in Novell eDirectory HTTP protocol stack (HTTPSTK) before 8.8 SP3 have unknown impact and attack vectors related to the (1) HTTP language header and (2) HTTP content-length header.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
10 UNKNOWN
NETWORK
LOW
AV:N/AC:L/Au:N/C:C/I:C/A:C
mitreCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 53%
VendorProductVersion
novelledirectory
𝑥
≤ 8.8
novelledirectory
8.0
novelledirectory
8.5
novelledirectory
8.5.12a:a
novelledirectory
8.5.27
novelledirectory
8.6.2
novelledirectory
8.7
novelledirectory
8.7.1
novelledirectory
8.7.1:sp1
novelledirectory
8.7.3
novelledirectory
8.7.3:sp1
novelledirectory
8.7.3:sp2
novelledirectory
8.7.3:sp3
novelledirectory
8.7.3:sp4
novelledirectory
8.7.3:sp5
novelledirectory
8.7.3:sp6
novelledirectory
8.7.3:sp7
novelledirectory
8.7.3:sp8
novelledirectory
8.7.3:sp9
novelledirectory
8.7.3.8
novelledirectory
8.7.3.8_presp9:_presp9
novelledirectory
8.7.3.9
novelledirectory
8.7.3.9
novelledirectory
8.7.3.9
novelledirectory
8.7.3.9
novelledirectory
8.7.3.9
novelledirectory
8.7.3.10
novelledirectory
8.8
novelledirectory
8.8
novelledirectory
8.8
novelledirectory
8.8
novelledirectory
8.8
novelledirectory
8.8.1
novelledirectory
8.8.1
novelledirectory
8.8.1
novelledirectory
8.8.1
novelledirectory
8.8.1
novelledirectory
8.8.2
novelledirectory
8.8.2
novelledirectory
8.8.2
novelledirectory
8.8.2
novelledirectory
8.8.2
novelledirectory
85.20
𝑥
= Vulnerable software versions