Skip to main content

Vendor/product archive

civetweb_project / civetweb CVEs

Beta · best-effort

4 CVEs tagged to civetweb_project / civetweb1 Critical, 3 High, 0 Medium, 0 Low, 0 Unrated.

CVE-2026-5789

Published Apr 21, 2026

Vulnerability related to an unquoted search path in CivetWeb v1.16. This vulnerability allows a local attacker to execute arbitrary code with elevated privileges by placing a mali…

CVSS 8.5 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2025-55763

Published Aug 29, 2025

Buffer Overflow in the URI parser of CivetWeb 1.14 through 1.16 (latest) allows a remote attacker to achieve remote code execution via a crafted HTTP request. This vulnerability i…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2018-12684

Published Jun 22, 2018

Out-of-bounds Read in the send_ssi_file function in civetweb.c in CivetWeb through 1.10 allows attackers to cause a Denial of Service or Information Disclosure via a crafted SSI f…

CVSS 7.1 · High
Vendor/product tagsBeta · best-effort
Showing 1-4 of 4 CVEsPage 1 of 1