Unexpected Character OOB Write in Mongoose Web Server v7.14
CVE-2024-42385
7HIGH
What is CVE-2024-42385?
The vulnerability presents a serious risk within Cesanta Mongoose Web Server v7.14 due to improper neutralization of delimiters. An attacker can exploit this flaw by providing a PEM certificate that contains unexpected characters, leading to potential out-of-bound memory writes. This scenario can result in unpredictable behavior of the web server, posing threats to data integrity and availability. Organizations using this version should prioritize assessment of their systems and take appropriate measures to remediate the risk.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
References
CVSS V3.1
Score:
7
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
High
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged
Timeline
Vulnerability published
