Apsis / Pound
5 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2018-21245 | Pound before 2.8 allows HTTP request smuggling, a related issue to CVE-2016-10711. | CRITICAL | 9.1 | Jun 15, 2020 |
| CVE-2016-10711 | Apsis Pound before 2.8a allows request smuggling via crafted headers, a different vulnerability than CVE-2005-3751. | CRITICAL | 9.8 | Jan 29, 2018 |
| CVE-2005-3751 | HTTP request smuggling vulnerability in Pound before 1.9.4 allows remote attackers to poison web caches, bypass web application firewall protection, and conduc… | MEDIUM | 4.3 | Nov 22, 2005 |
| CVE-2004-2026 | Format string vulnerability in the logmsg function in svc.c for Pound 1.5 and earlier allows remote attackers to execute arbitrary code via format string speci… | HIGH | 7.5 | May 10, 2005 |
| CVE-2005-1391 | Buffer overflow in the add_port function in APSIS Pound 1.8.2 and earlier allows remote attackers to execute arbitrary code via a long Host HTTP header. | HIGH | 7.5 | May 2, 2005 |
Showing 1 to 5 of 5 CVEs