Show filters
295 Total Results
Displaying 291-295 of 295
Sort by:
Attacker Value
Unknown

CVE-2001-0308

Disclosure Date: May 03, 2001 (last updated February 22, 2025)
UploadServlet in Bajie HTTP JServer 0.78, and possibly other versions before 0.80, allows remote attackers to execute arbitrary commands by calling the servlet to upload a program, then using a ... (modified ..) to access the file that was created for the program.
0
Attacker Value
Unknown

CVE-2000-0812

Disclosure Date: November 14, 2000 (last updated February 22, 2025)
The administration module in Sun Java web server allows remote attackers to execute arbitrary commands by uploading Java code to the module and invoke the com.sun.server.http.pagecompile.jsp92.JspServlet by requesting a URL that begins with a /servlet/ tag.
0
Attacker Value
Unknown

CVE-2000-0773

Disclosure Date: October 20, 2000 (last updated February 22, 2025)
Bajie HTTP web server 0.30a allows remote attackers to read arbitrary files via a URL that contains a "....", a variant of the dot dot directory traversal attack.
0
Attacker Value
Unknown

CVE-2000-0774

Disclosure Date: October 20, 2000 (last updated February 22, 2025)
The sample Java servlet "test" in Bajie HTTP web server 0.30a reveals the real pathname of the web document root.
0
Attacker Value
Unknown

CVE-2000-0629

Disclosure Date: July 12, 2000 (last updated February 22, 2025)
The default configuration of the Sun Java web server 2.0 and earlier allows remote attackers to execute arbitrary commands by uploading Java code to the server via board.html, then directly calling the JSP compiler servlet.
0