CVE-2007-0664
thttpd before 2.25b-r6 in Gentoo Linux is started from the system root directory (/) by the Gentoo baselayout 1.12.6 package, which allows remote attackers to read arbitrary files.
- Affected products
- Baselayout, Thttpd
- Acme Labs Thttpd
- ≤ 2.24
- CVSS 2.0
- 5.0 MEDIUM
- EPSS
- 2.8% (86th percentile)
- NVD status
- Modified
- Published
- 2007-02-02
CVE-2007-0664 at NVD
1 known exploit for CVE-2007-0664
Proof-of-concept code and exploit modules indexed by Sploitus