Loading
An issue was discovered in Embedthis GoAhead before 4.0.1 and Appweb before 7.0.2. An HTTP POST request with a specially crafted "Host" header field may cause a NULL pointer dereference and thus cause a denial of service, as demonstrated by the lack of a trailing ']' character in an IPv6 address.
Use CWE-476, Embedthis vendor hub and Appweb product page to widen CVE-2018-15505 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2018-8715, CVE-2021-33254 and CVE-2020-15689 for nearby disclosures in the same product family.