Show filters
5 Total Results
Displaying 1-5 of 5
Sort by:
Attacker Value
Unknown
CVE-2008-2333
Disclosure Date: May 23, 2008 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in ldap_test.cgi in Barracuda Spam Firewall (BSF) before 3.5.11.025 allows remote attackers to inject arbitrary web script or HTML via the email parameter.
0
Attacker Value
Unknown
CVE-2006-4081
Disclosure Date: August 11, 2006 (last updated October 04, 2023)
preview_email.cgi in Barracuda Spam Firewall (BSF) 3.3.01.001 through 3.3.03.053 allows remote attackers to execute commands via shell metacharacters ("|" pipe symbol) in the file parameter. NOTE: the attack can be extended to arbitrary commands by the presence of CVE-2006-4000.
0
Attacker Value
Unknown
CVE-2006-4082
Disclosure Date: August 11, 2006 (last updated October 04, 2023)
Barracuda Spam Firewall (BSF), possibly 3.3.03.053, contains a hardcoded password for the admin account for logins from 127.0.0.1 (localhost), which allows local users to gain privileges.
0
Attacker Value
Unknown
CVE-2006-4001
Disclosure Date: August 05, 2006 (last updated October 04, 2023)
Login.pm in Barracuda Spam Firewall (BSF) 3.3.01.001 through 3.3.03.053 contains a hard-coded password for the guest account, which allows remote attackers to read sensitive information such as e-mail logs, and possibly e-mail contents and the admin password.
0
Attacker Value
Unknown
CVE-2006-4000
Disclosure Date: August 05, 2006 (last updated October 04, 2023)
Directory traversal vulnerability in cgi-bin/preview_email.cgi in Barracuda Spam Firewall (BSF) 3.3.01.001 through 3.3.03.053 allows remote authenticated users to read arbitrary files via a .. (dot dot) in the file parameter.
0