Show filters
18 Total Results
Displaying 11-18 of 18
Sort by:
Attacker Value
Unknown

CVE-2001-1292

Disclosure Date: August 13, 2001 (last updated February 22, 2025)
Sambar Telnet Proxy/Server allows remote attackers to cause a denial of service and possibly execute arbitrary code via a long password.
0
Attacker Value
Unknown

CVE-2001-1106

Disclosure Date: July 25, 2001 (last updated February 22, 2025)
The default configuration of Sambar Server 5 and earlier uses a symmetric key that is compiled into the binary program for encrypting passwords, which could allow local users to break all user passwords by cracking the key or modifying a copy of the sambar program to call the decryption procedure.
0
Attacker Value
Unknown

CVE-2001-1010

Disclosure Date: July 22, 2001 (last updated February 22, 2025)
Directory traversal vulnerability in pagecount CGI script in Sambar Server before 5.0 beta 5 allows remote attackers to overwrite arbitrary files via a .. (dot dot) attack on the page parameter.
0
Attacker Value
Unknown

CVE-2000-0835

Disclosure Date: November 14, 2000 (last updated February 22, 2025)
search.dll Sambar ISAPI Search utility in Sambar Server 4.4 Beta 3 allows remote attackers to read arbitrary directories by specifying the directory in the query parameter.
0
Attacker Value
Unknown

CVE-2000-0509

Disclosure Date: June 01, 2000 (last updated February 22, 2025)
Buffer overflows in the finger and whois demonstration scripts in Sambar Server 4.3 allow remote attackers to execute arbitrary commands via a long hostname.
0
Attacker Value
Unknown

CVE-2000-0213

Disclosure Date: February 23, 2000 (last updated February 22, 2025)
The Sambar server includes batch files ECHO.BAT and HELLO.BAT in the CGI directory, which allow remote attackers to execute commands via shell metacharacters.
0
Attacker Value
Unknown

CVE-1999-1523

Disclosure Date: October 04, 1999 (last updated February 22, 2025)
Buffer overflow in Sambar Web Server 4.2.1 allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long HTTP GET request.
0
Attacker Value
Unknown

CVE-1999-1178

Disclosure Date: June 10, 1998 (last updated February 22, 2025)
Sambar Server 4.1 beta allows remote attackers to obtain sensitive information about the server via an HTTP request for the dumpenv.pl script.
0