CVE-2003-0899

Buffer overflow in defang in libhttpd.c for thttpd 2.21 to 2.23b1 allows remote attackers to execute arbitrary code via requests that contain '<' or '>' characters, which trigger the overflow when the characters are expanded to "&lt;" and "&gt;" sequences.

Scoring

CVSS base score
0.82
EPSS probability
20.46%
Published
2003-10-30
Last modified
2026-03-16

Affected products

Markdown version · Browse all CVEs