Metrics
Affected Vendors & Products
Mon, 05 Jan 2026 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was found in Ritlabs TinyWeb Server 1.94. It has been classified as problematic. Affected is an unknown function of the component Request Handler. The manipulation with the input %0D%0A leads to crlf injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. VDB-265830 is the identifier assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way. | A security vulnerability has been detected in Ritlabs TinyWeb Server 1.94. This vulnerability affects unknown code of the component Request Handler. The manipulation with the input %0D%0A leads to crlf injection. It is possible to initiate the attack remotely. The exploit has been disclosed publicly and may be used. Upgrading to version 1.99 is able to resolve this issue. The identifier of the patch is d49c3da6a97e950975b18626878f3ee1f082358e. It is suggested to upgrade the affected component. The vendor was contacted early about this disclosure but did not respond in any way. |
| Weaknesses | CWE-74 | |
| CPEs | cpe:2.3:a:ritlabs:tinyweb:*:*:*:*:*:*:*:* | |
| References |
| |
| Metrics |
cvssV2_0
|
ssvc
|
Mon, 23 Jun 2025 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Ritlabs
Ritlabs tinyweb |
|
| CPEs | cpe:2.3:a:ritlabs:tinyweb:1.94:*:*:*:*:*:*:* | |
| Vendors & Products |
Ritlabs
Ritlabs tinyweb |
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2026-01-05T19:02:50.252Z
Reserved: 2024-05-22T05:12:12.895Z
Link: CVE-2024-5193
Updated: 2024-08-01T21:03:11.062Z
Status : Modified
Published: 2024-05-22T11:15:53.487
Modified: 2026-01-05T19:15:55.683
Link: CVE-2024-5193
No data.
OpenCVE Enrichment
No data.