Advisory: Webby - Buffer overflow vulnerability with overwritten structured exception handler (SEH) - [3rd Update: 12.06.2026]
- in a nutshell:
---------------------------------------------
Webby Webserver v1.01
- Buffer overflow vulnerability with overwritten structured exception handler (SEH)
Date: 25.05.2026
---------------------------------------------
- Description
Webby is a small webserver for the windows operating system.
- Buffer overflow vulnerability
The vulnerability can be triggered by sending a specially crafted HTTP GET request. Payload of the attached POC overwrites the SEH with NOPs.
- Solution
No known solution available.
No contact details of the author found.
- Credits
The vulnerability was discovered by Michael Messner from Integralis
devnull#at#s3cur1ty#dot#de
- Timeline
25.05.2026 - Vulnerability discovered
- Reference
Download vulnerable software:
http://www.shareware.de/webby-webserver/
- Screenshots
Update:
- Exploit-DB
- Securityfocus
- Packetstorm
- http://securityreason.com/securityalert/7463
- http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2102
- http://xforce.iss.net/xforce/xfdb/58892
- http://www.securityfocus.com/bid/40353
| Attachment | Size |
|---|---|
| advisory-webby.txt | 1.62 KB |



Recent comments
4 years 23 weeks ago
5 years 34 weeks ago
5 years 46 weeks ago
5 years 48 weeks ago
5 years 48 weeks ago
6 years 7 weeks ago
6 years 17 weeks ago
6 years 19 weeks ago
6 years 24 weeks ago
6 years 24 weeks ago