Show filters
3 Total Results
Displaying 1-3 of 3
Sort by:
Attacker Value
Unknown

CVE-2002-0094

Disclosure Date: March 25, 2002 (last updated February 22, 2025)
config_converters.py in BSCW (Basic Support for Cooperative Work) 3.x and versions before 4.06 allows remote attackers to execute arbitrary commands via shell metacharacters in the file name during filename conversion.
0
Attacker Value
Unknown

CVE-2002-0095

Disclosure Date: March 25, 2002 (last updated February 22, 2025)
The default configuration of BSCW (Basic Support for Cooperative Work) 3.x and possibly version 4 enables user self registration, which could allow remote attackers to upload files and possibly join a user community that was intended to be closed.
0
Attacker Value
Unknown

CVE-2001-0973

Disclosure Date: August 31, 2001 (last updated February 22, 2025)
BSCW groupware system 3.3 through 4.0.2 beta allows remote attackers to read or modify arbitrary files by uploading and extracting a tar file with a symlink into the data-bag space.
0