Back

CVE-2005-1344

Buffer overflow in htdigest in Apache 2.0.52 may allow attackers to execute arbitrary code via a long realm argument. NOTE: since htdigest is normally only locally accessible and not setuid or setgid, there are few attack vectors which would lead to an escalation of privileges, unless htdigest is executed from a CGI program. Therefore this may not be a vulnerability.

Published: May 2, 2005 Modified: Jun 16, 2026

CVSS Metrics

Affected Products (1)

Vendor Product Version
apache http_server 2.0.52

GitHub Security Advisory GHSA-p8pw-2w2f-8jr7

Buffer overflow in htdigest in Apache 2.0.52 may allow attackers to execute arbitrary code via a...

Risk Scores

CVSS Score 7.5 / 10
EPSS Score 29.10%

Top 2% most likely to be exploited

Threat Score 38.7 / 100

Data Sources

NVD EPSS GitHub