I appreciate the author clearly stating that security was not really considered when writing the code. Still, it probably make sense for me to leave this issue here so that people are aware.
Tiny Web Server is suffering from a classic buffer overflow vulnerability when processing the URI part of a HTTP request, that can lead to the remote compromise of a system running the web server.
For those interested, I have created a video: https://youtu.be/DdvVnQaHRwM?t=817
I appreciate the author clearly stating that security was not really considered when writing the code. Still, it probably make sense for me to leave this issue here so that people are aware.
Tiny Web Server is suffering from a classic buffer overflow vulnerability when processing the URI part of a HTTP request, that can lead to the remote compromise of a system running the web server.
For those interested, I have created a video: https://youtu.be/DdvVnQaHRwM?t=817