Show filters
545 Total Results
Displaying 461-470 of 545
Sort by:
Attacker Value
Unknown

CVE-2007-3364

Disclosure Date: June 22, 2007 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in the cgi-bin/post.mscgi sample page in MyServer 0.8.9 allows remote attackers to inject arbitrary web script or HTML via the body content.
0
Attacker Value
Unknown

CVE-2007-3159

Disclosure Date: June 11, 2007 (last updated October 04, 2023)
http.c in MiniWeb Http Server 0.8.x allows remote attackers to cause a denial of service (application crash) via a negative value in the Content-Length HTTP header.
0
Attacker Value
Unknown

CVE-2007-2414

Disclosure Date: May 01, 2007 (last updated October 04, 2023)
MyServer before 0.8.8 allows remote attackers to cause a denial of service via unspecified vectors.
0
Attacker Value
Unknown

CVE-2007-2367

Disclosure Date: April 30, 2007 (last updated October 04, 2023)
Buffer overflow in wserve_console.exe in Wserve HTTP Server (whttp) 4.6 allows remote attackers to cause a denial of service (forced application exit) via a long directory name in the URI.
0
Attacker Value
Unknown

CVE-2007-2179

Disclosure Date: April 24, 2007 (last updated October 04, 2023)
Multiple unspecified vulnerabilities in IXceedCompression in XceddZipLib (RaidenFTPD.dll) in RaidenFTPD 2.4 allow remote attackers to cause a denial of service (crash) via unspecified vectors involving the (1) CalculateCrc, (2) Compress, and (3) Uncompress functions, which result in a NULL pointer dereference.
0
Attacker Value
Unknown

CVE-2007-1588

Disclosure Date: March 21, 2007 (last updated October 04, 2023)
server.cpp in MyServer 0.8.5 calls Process::setuid before calling Process::setgid and thus does not properly drop privileges, which might allow remote attackers to execute CGI programs with unintended privileges.
0
Attacker Value
Unknown

CVE-2007-0925

Disclosure Date: February 14, 2007 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in search/SearchResults.aspx in Community Server allows remote attackers to inject arbitrary web script or HTML via the q parameter.
0
Attacker Value
Unknown

CVE-2007-0872

Disclosure Date: February 12, 2007 (last updated October 04, 2023)
Directory traversal vulnerability in the Plain Old Webserver (POW) add-on before 0.0.9 for Mozilla Firefox allows remote attackers to read arbitrary files via a .. (dot dot) in the URI.
0
Attacker Value
Unknown

CVE-2007-0846

Disclosure Date: February 08, 2007 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in forum.php in Open Tibia Server CMS (OTSCMS) 2.1.5 and earlier allows remote attackers to inject arbitrary HTML or web script via the name parameter.
0
Attacker Value
Unknown

CVE-2007-0847

Disclosure Date: February 08, 2007 (last updated October 04, 2023)
SQL injection vulnerability in mod/PM/reply.php in Open Tibia Server CMS (OTSCMS) 2.1.5 and earlier allows remote attackers to execute arbitrary SQL commands via the id parameter to priv.php.
0