CVE detail
CVE-2010-0551 — CVE-2010-0551
Published 2010-02-04 · Modified 2026-06-16 · Vendor geopp · Product geo\+\+_gncaster · Source nvd
UNKNOWN
severity
CVSS-derived band
0.0146
EPSS probability
exploitation probability, 30d
71.0%
EPSS percentile
percentile vs all CVEs
NOT LISTED
CISA KEV
known exploited catalog
Description
HTTP authentication implementation in Geo++ GNCASTER 1.4.0.7 and earlier allows remote attackers to read authentication headers of other users via a large request with an incorrect authentication attempt, which includes sensitive memory in the response. NOTE: this is referred to as a "memory leak" by some sources, but is better characterized as "memory disclosure."
Remediation
No vendor-published fix data in our corpus for this CVE. Check the references below or the vendor's PSIRT / security advisories page.
References