Vulnerability Details CVE-2024-22086
handle_request in http.c in cherry through 4b877df has an sscanf stack-based buffer overflow via a long URI, leading to remote code execution.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.058
EPSS Ranking 90.1%
CVSS Severity
CVSS v3 Score 9.8
Products affected by CVE-2024-22086
-
-
cpe:2.3:a:hayyp:cherry:2021-01-05