Eterna maintains a narrow set of legacy infrastructure and utility software, including the Bozohttpd web server and Ircii IRC client, which represent niche but persistent components in specialized deployments. The vulnerability disclosures associated with this vendor reflect sparse or generic classification in the NVD, limiting clear insight into underlying weakness patterns; current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Eterna over time
Signals from CVEs in this vendor scope (4 CVEs).
4 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2021-29376HIGH ircII before 20210314 allows remote attackers to cause a denial of service (segmentation fault and client crash, disconnecting the victim from an IRC server) via a crafted CTCP UTC | Mar 30, 2021 | 7.5 | 25 | NO | NO |
CVE-2014-5015MEDIUM bozotic HTTP server (aka bozohttpd) before 20140708, as used in NetBSD, truncates paths when checking .htpasswd restrictions, which allows remote attackers to bypass the HTTP authe | Jul 24, 2014 | 5.0 | 19 | NO | NO |
CVE-2010-2195MEDIUM bozotic HTTP server (aka bozohttpd) 20090522 through 20100512 allows attackers to cause a denial of service via vectors related to a "wrong code generation interaction with GCC." | Aug 2, 2010 | 5.0 | 17 | NO | NO |
CVE-2010-2320MEDIUM bozotic HTTP server (aka bozohttpd) before 20100621 allows remote attackers to list the contents of home directories, and determine the existence of user accounts, via multiple req | Aug 2, 2010 | 5.0 | 15 | NO | NO |
Signals from CVEs in this vendor scope (4 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Eterna.
Media articles that mention a CVE ID that affects a product developed by Eterna — matched by CVE ID, not by vendor name.