server.cpp in MyServer 0.8.5 calls Process::setuid before calling Process::setgid and thus does not properly drop privileges, which might allow remote attackers to execute CGI programs with unintended privileges.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Myserver | Myserver | 0.8.5 (including) | 0.8.5 (including) |