AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2008-2654

HIGH · CVSS 10 EPSS 8.02%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2008-06-13 · Last synced 2026-08-04

CyberRota Analysis

This is a high severity vulnerability with a CVSS score of 10.0. It may be remotely exploitable.

CVE
CVE-2008-2654
Severity
HIGH
CVSS
10
EPSS
8.02%

Original NVD Description

Off-by-one error in the read_client function in webhttpd.c in Motion 3.2.10 and earlier might allow remote attackers to execute arbitrary code via a long request to a Motion HTTP Control interface, which triggers a stack-based buffer overflow with some combinations of processor architecture and compiler.