Show filters
17 Total Results
Displaying 11-17 of 17
Sort by:
Attacker Value
Unknown

CVE-2004-0809

Disclosure Date: September 16, 2004 (last updated October 04, 2023)
The mod_dav module in Apache 2.0.50 and earlier allows remote attackers to cause a denial of service (child process crash) via a certain sequence of LOCK requests for a location that allows WebDAV authoring access.
0
Attacker Value
Unknown

CVE-2004-0493

Disclosure Date: August 06, 2004 (last updated February 22, 2025)
The ap_get_mime_headers_core function in Apache httpd 2.0.49 allows remote attackers to cause a denial of service (memory exhaustion), and possibly an integer signedness error leading to a heap-based buffer overflow on 64 bit systems, via long header lines with large numbers of space or tab characters.
0
Attacker Value
Unknown

CVE-2004-0492

Disclosure Date: August 06, 2004 (last updated February 22, 2025)
Heap-based buffer overflow in proxy_util.c for mod_proxy in Apache 1.3.25 to 1.3.31 allows remote attackers to cause a denial of service (process crash) and possibly execute arbitrary code via a negative Content-Length HTTP header field, which causes a large amount of data to be copied.
0
Attacker Value
Unknown

CVE-2002-1008

Disclosure Date: October 04, 2002 (last updated February 22, 2025)
Cross-site scripting vulnerability in PowerBASIC urlcount.cgi, as included in Lil' HTTP web server, allows remote attackers to execute arbitrary web script in other web browsers via a request to urlcount.cgi that contains the script, which is not filtered when the REPORT capability prints the original request.
0
Attacker Value
Unknown

CVE-2002-1009

Disclosure Date: October 04, 2002 (last updated February 22, 2025)
Cross-site scripting vulnerability in PowerBASIC pbcgi.cgi, as included in Lil' HTTP web server, allows remote attackers to execute arbitrary web script in other web browsers via the (1) "Name" or (2) "E-mail" parameters.
0
Attacker Value
Unknown

CVE-2002-0304

Disclosure Date: May 31, 2002 (last updated February 22, 2025)
Lil HTTP Server 2.1 allows remote attackers to read password-protected files via a /./ in the HTTP request.
0
Attacker Value
Unknown

CVE-1999-1068

Disclosure Date: July 23, 1997 (last updated February 22, 2025)
Oracle Webserver 2.1, when serving PL/SQL stored procedures, allows remote attackers to cause a denial of service via a long HTTP GET request.
0