Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2016-4864

H2O versions 2.0.3 and earlier and 2.1.0-beta2 and earlier allows remote attackers to cause a denial-of-service (DoS) via format string specifiers in a template file via fastcgi, mruby, proxy, redirect or reproxy.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.016
EPSS Ranking 80.7%
CVSS Severity
CVSS v3 Score 7.5
CVSS v2 Score 5.0
Products affected by CVE-2016-4864
  • Dena » H2o » Version: 2.0.0
    cpe:2.3:a:dena:h2o:2.0.0
  • Dena » H2o » Version: 2.0.1
    cpe:2.3:a:dena:h2o:2.0.1
  • Dena » H2o » Version: 2.0.2
    cpe:2.3:a:dena:h2o:2.0.2
  • Dena » H2o » Version: 2.0.3
    cpe:2.3:a:dena:h2o:2.0.3
  • Dena » H2o » Version: 2.1.0
    cpe:2.3:a:dena:h2o:2.1.0


Contact Us

Shodan ® - All rights reserved