Show filters
545 Total Results
Displaying 531-540 of 545
Sort by:
Attacker Value
Unknown
CVE-2002-1003
Disclosure Date: October 04, 2002 (last updated February 22, 2025)
Buffer overflow in MyWebServer 1.02 and earlier allows remote attackers to execute arbitrary code via a long HTTP GET request.
0
Attacker Value
Unknown
CVE-2002-1353
Disclosure Date: August 29, 2002 (last updated February 22, 2025)
LocalWEB2000 HTTP server 2.1.0 stores passwords in plain text under the web document root in users.lst, which allows remote attackers to obtain the passwords via a direct request to users.lst.
0
Attacker Value
Unknown
CVE-2002-1452
Disclosure Date: August 14, 2002 (last updated February 22, 2025)
Buffer overflow in the search capability for MyWebServer 1.0.2 allows remote attackers to execute arbitrary code via a long searchTarget parameter.
0
Attacker Value
Unknown
CVE-2002-1453
Disclosure Date: August 14, 2002 (last updated February 22, 2025)
Cross-site scripting (XSS) vulnerability in MyWebServer 1.0.2 allows remote attackers to insert script and HTML via a long request followed by the malicious script, which is echoed back to the user in an error message.
0
Attacker Value
Unknown
CVE-2002-0260
Disclosure Date: May 29, 2002 (last updated February 22, 2025)
Buffer overflow in InstantServers MiniPortal 1.1.5 and earlier allows remote attackers to execute arbitrary code via a long login name, which is not properly handled by the logging utility.
0
Attacker Value
Unknown
CVE-2002-0259
Disclosure Date: May 29, 2002 (last updated February 22, 2025)
InstantServers MiniPortal 1.1.5 and earlier stores sensitive login and account data in plaintext in (1) .pwd files in the miniportal/apache directory, or (2) mplog.txt, which could allow local users to gain privileges.
0
Attacker Value
Unknown
CVE-2002-0261
Disclosure Date: May 29, 2002 (last updated February 22, 2025)
Directory traversal vulnerability in InstantServers MiniPortal 1.1.5 and earlier allows remote authenticated users to read arbitrary files via a ... (modified dot dot) in the GET command.
0
Attacker Value
Unknown
CVE-2001-1250
Disclosure Date: June 29, 2001 (last updated February 22, 2025)
vWebServer 1.2.0 allows remote attackers to cause a denial of service (hang) via a small number of long URL requests, possibly due to a buffer overflow.
0
Attacker Value
Unknown
CVE-2001-1248
Disclosure Date: June 29, 2001 (last updated February 22, 2025)
vWebServer 1.2.0 allows remote attackers to view arbitrary ASP scripts via a request for an ASP script that ends with a URL-encoded space character (%20).
0
Attacker Value
Unknown
CVE-2001-1251
Disclosure Date: June 29, 2001 (last updated February 22, 2025)
SmallHTTP 1.204 through 3.00 beta 8 allows remote attackers to cause a denial of service via multiple long URL requests.
0