There exists use-after-free vulnerabilities in lighttpd <= 1.4.50 request parsing which might read from invalid pointers to memory used in the same request, not from other requests.
We have discovered 55,224 live websites that are affected by CVE-2018-25103.
Product | ![]() |
Category | Web Servers |
Vulnerable Domains | 55,224 live websites (87.20% of lighttpd install base) |
Vulnerable Versions |
|
Vulnerable Versions Count | 35 versions ( 57.38% of all versions) |
![]() | 887 websites |
![]() | 48,441 websites |
![]() | 2,008 websites |
![]() | 1,016 websites |
![]() | 365 websites |
![]() | 279 websites |
![]() | 240 websites |
![]() | 173 websites |
![]() | 145 websites |
![]() | 138 websites |
.ru | 45,010 websites |
.com | 1,675 websites |
.de | 1,570 websites |
.net | 632 websites |
.fr | 520 websites |
.org | 355 websites |
.cz | 235 websites |
.pl | 114 websites |
.ch | 101 websites |
.eu | 97 websites |
Domain | Country | Rank | Contacts |
---|---|---|---|
*******.*****.**.th | ![]() | **,*** | |
**********.com | ![]() | **,*** | |
***.*****.fi | ![]() | **,*** | |
*********.****.cz | ![]() | **,*** | |
*******.ru | ![]() | **,*** | |
*****.to | ![]() | **,*** | |
****.ru | ![]() | **,*** | |
************.pe | ![]() | ***,*** | |
********.is | ![]() | ***,*** | |
*******.********.com | ![]() | ***,*** |