Show filters
5 Total Results
Displaying 1-5 of 5
Sort by:
Attacker Value
Unknown

CVE-2021-31609

Disclosure Date: September 07, 2021 (last updated November 28, 2024)
The Bluetooth Classic implementation in Silicon Labs iWRAP 6.3.0 and earlier does not properly handle the reception of an oversized LMP packet greater than 17 bytes, allowing attackers in radio range to trigger a crash in WT32i via a crafted LMP packet.
Attacker Value
Unknown

CVE-2008-2852

Disclosure Date: June 25, 2008 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in CGIWrap before 4.1, when an Internet Explorer based browser is used, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors related to failure to set the charset in error messages.
0
Attacker Value
Unknown

CVE-2006-0767

Disclosure Date: February 18, 2006 (last updated February 22, 2025)
CGIWrap before 3.10 allows remote attackers to obtain sensitive information via unknown attack vectors that cause errors in scripts that reveal system information.
0
Attacker Value
Unknown

CVE-2005-3254

Disclosure Date: October 18, 2005 (last updated February 22, 2025)
The CGIwrap program before 3.9 on Debian GNU/Linux uses an incorrect minimum value of 100 for a UID to determine whether it can perform a seteuid operation, which could allow attackers to execute code as other system UIDs that are greater than the minimum value, which should be 1000 on Debian systems.
0
Attacker Value
Unknown

CVE-2001-0987

Disclosure Date: July 22, 2001 (last updated February 22, 2025)
Cross-site scripting vulnerability in CGIWrap before 3.7 allows remote attackers to execute arbitrary Javascript on other web clients by causing the Javascript to be inserted into error messages that are generated by CGIWrap.
0