id: CVE-2018-10088 info: name: XiongMai uc-httpd 1.0.0 - Buffer Overflow author: 0x_Akoko severity: critical description: | Buffer overflow in XiongMai uc-httpd 1.0.0 has unspecified impact and attack vectors, a different vulnerability than CVE-2017-16725. impact: | Potential for remote code execution or denial of service when successfully exploited. remediation: | Update to the latest version of uc-httpd or apply security patches provided by the vendor. reference: - https://nvd.nist.gov/vuln/detail/CVE-2018-10088 - https://www.exploit-db.com/exploits/44864 - https://github.com/bitfu/uc-httpd-1.0.0-buffer-overflow-exploit - https://github.com/KostasEreksonas/Besder-6024PB-XMA501-ip-camera-security-investigation classification: cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H cvss-score: 9.8 cve-id: CVE-2018-10088 cwe-id: CWE-119 epss-score: 0.40386 epss-percentile: 0.98493 cpe: cpe:2.3:a:xiongmaitech:uc-httpd:1.0.0:*:*:*:*:*:*:* metadata: verified: true max-request: 1 vendor: xiongmaitech product: uc-httpd shodan-query: cpe:"cpe:2.3:a:xiongmaitech:uc-httpd" tags: cve,cve2018,xiongmai,buffer-overflow,rce,passive,vkev,vuln http: - method: GET path: - "{{BaseURL}}" matchers: - type: dsl dsl: - "status_code == 200" - "contains(tolower(header), 'uc-httpd')" - "compare_versions(version, '<= 1.0.0')" condition: and extractors: - type: regex name: version part: header group: 1 regex: - '(?i)Server:\s*uc-httpd[/\s]+([0-9]+\.[0-9]+\.[0-9]+)' internal: true - type: dsl dsl: - 'version' # digest: 490a00463044022046cc0105fae597e00fbd934148f81e8ecbcafb5a31e29c3b67e3bc7a32df3150022039d117f05ecdafe193de87d72ba919d7c3fb7f9a9b96042a0b4c2f4df5262d7a:922c64590222798bb761d5b6d8e72950