Geohttpserver
This hub aggregates every CVE we track for Geohttpserver, a product in the ics ot iot space. Use it to gauge the current risk picture and drill into individual advisories.
2
CVEs tracked
0
Critical
0
High
0
In CISA KEV
Severity distribution
MEDIUM2
Monthly trend
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
2024-102026-09
Latest CVEs
The 2 most recently published vulnerabilities affecting Geohttpserver.
- CVE-2004-2100GeoHttpServer, when configured to authenticate users, allows remote attackers to bypass authentication and access unauthorized files via a URL that contains %0a%0a (encoded newlines).5.0
- CVE-2004-2101The sysinfo script in GeoHttpServer allows remote attackers to cause a denial of service (crash) via a long pwd parameter, possibly triggering a buffer overflow.5.0
Product normalization is registry-driven with AI assist and human review. How it works