Security Advisory

CVE-2023-28391

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2023-11-14 09:14:53
Last updated 2025-11-04 19:15:51
Assigner talos
CVSS score 9.0
State PUBLISHED

Description

A memory corruption vulnerability exists in the HTTP Server header parsing functionality of Weston Embedded uC-HTTP v3.01.01. Specially crafted network packets can lead to code execution. An attacker can send a malicious packet to trigger this vulnerability.