Handle_request in http.c in cherry through 4b877df has an sscanf stack-based buffer overflow via a long URI, leading to remote code execution.Ī vulnerability was found in Tenda A15 15.13.07.13. Route in main.c in Pico HTTP Server in C through f3b69a6 has an sprintf stack-based buffer overflow via a long URI, leading to remote code execution. A remote, unauthenticated attacker can exploit this vulnerability to achieve remote code execution with SYSTEM privileges. A stack-based buffer overflow exists in IBM Merge Healthcare eFilm Workstation license server.