An issue was discovered in Aprelium Abyss Web Server X1 2.12.1 and 2.14. A crafted HTTP request can lead to an out-of-bounds read that crashes the application.
The product reads data past the end, or before the beginning, of the intended buffer.
Link | Tags |
---|---|
https://jankopecky.net/index.php/2021/04/08/cve-2021-3328-abyss-web-server-remote-dos/ | third party advisory exploit |