RULE(RULE ID:330398)

Rule General Information
Release Date: 2020-06-12
Rule Name: ACME mini_httpd Arbitrary File Read Vulnerability (CVE-2018-18778)
Severity:
CVE ID:
Rule Protection Details
Description: ACME mini_httpd is a small, lightweight HTTP server software typically used for embedded systems or lightweight web services, known for its simplicity, efficiency, and ease of configuration. ACME mini_httpd before 1.30 has an arbitrary file read vulnerability, which can be exploited by remote attackers to read arbitrary file contents.
Impact: An attacker could exploit this vulnerability to have unspecified effect.
Affected OS: Windows, Others
Reference: http://www.acme.com/software/mini_httpd/
Solutions
Refer to the announcement or patch by the vendor: http://www.acme.com/software/mini_httpd/