Back

CVE-2005-0158

Format string vulnerability in bidwatcher before 1.3.17 allows remote malicious web servers from eBay, or a spoofed eBay server, to cause a denial of service and possibly execute arbitrary code via certain responses.

Published: May 2, 2005 Modified: Jun 16, 2026

CVSS Metrics

Affected Products (25)

Vendor Product Version
bidwatcher bidwatcher 1.0.5
bidwatcher bidwatcher 1.1.2
bidwatcher bidwatcher 1.1.7
bidwatcher bidwatcher 1.1.8
bidwatcher bidwatcher 1.1.9
bidwatcher bidwatcher 1.1.9.1
bidwatcher bidwatcher 1.1.9.2
bidwatcher bidwatcher 1.2.0
bidwatcher bidwatcher 1.3.0_beta
bidwatcher bidwatcher 1.3.1
bidwatcher bidwatcher 1.3.2
bidwatcher bidwatcher 1.3.3
bidwatcher bidwatcher 1.3.4
bidwatcher bidwatcher 1.3.5
bidwatcher bidwatcher 1.3.6
bidwatcher bidwatcher 1.3.7
bidwatcher bidwatcher 1.3.8
bidwatcher bidwatcher 1.3.9
bidwatcher bidwatcher 1.3.10
bidwatcher bidwatcher 1.3.11

…and 5 more

GitHub Security Advisory GHSA-fg5x-5cvc-6wxg

Format string vulnerability in bidwatcher before 1.3.17 allows remote malicious web servers from...

Risk Scores

CVSS Score 7.5 / 10
EPSS Score 1.91%

Top 22% most likely to be exploited

Threat Score 30.6 / 100

Data Sources

NVD EPSS GitHub