Show filters
295 Total Results
Displaying 291-295 of 295
Sort by:
Attacker Value
Unknown
CVE-2001-0308
Disclosure Date: May 03, 2001 (last updated February 22, 2025)
UploadServlet in Bajie HTTP JServer 0.78, and possibly other versions before 0.80, allows remote attackers to execute arbitrary commands by calling the servlet to upload a program, then using a ... (modified ..) to access the file that was created for the program.
0
Attacker Value
Unknown
CVE-2000-0812
Disclosure Date: November 14, 2000 (last updated February 22, 2025)
The administration module in Sun Java web server allows remote attackers to execute arbitrary commands by uploading Java code to the module and invoke the com.sun.server.http.pagecompile.jsp92.JspServlet by requesting a URL that begins with a /servlet/ tag.
0
Attacker Value
Unknown
CVE-2000-0773
Disclosure Date: October 20, 2000 (last updated February 22, 2025)
Bajie HTTP web server 0.30a allows remote attackers to read arbitrary files via a URL that contains a "....", a variant of the dot dot directory traversal attack.
0
Attacker Value
Unknown
CVE-2000-0774
Disclosure Date: October 20, 2000 (last updated February 22, 2025)
The sample Java servlet "test" in Bajie HTTP web server 0.30a reveals the real pathname of the web document root.
0
Attacker Value
Unknown
CVE-2000-0629
Disclosure Date: July 12, 2000 (last updated February 22, 2025)
The default configuration of the Sun Java web server 2.0 and earlier allows remote attackers to execute arbitrary commands by uploading Java code to the server via board.html, then directly calling the JSP compiler servlet.
0