Show filters
4 Total Results
Displaying 1-4 of 4
Sort by:
Attacker Value
Unknown
CVE-2008-5160
Disclosure Date: November 18, 2008 (last updated October 04, 2023)
Unspecified vulnerability in MyServer 0.8.11 allows remote attackers to cause a denial of service (daemon crash) via multiple invalid requests with the HTTP GET, DELETE, OPTIONS, and possibly other methods, related to a "204 No Content error."
0
Attacker Value
Unknown
CVE-2007-3364
Disclosure Date: June 22, 2007 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in the cgi-bin/post.mscgi sample page in MyServer 0.8.9 allows remote attackers to inject arbitrary web script or HTML via the body content.
0
Attacker Value
Unknown
CVE-2007-1588
Disclosure Date: March 21, 2007 (last updated October 04, 2023)
server.cpp in MyServer 0.8.5 calls Process::setuid before calling Process::setgid and thus does not properly drop privileges, which might allow remote attackers to execute CGI programs with unintended privileges.
0
Attacker Value
Unknown
CVE-2005-1658
Disclosure Date: May 18, 2005 (last updated February 22, 2025)
Directory traversal vulnerability in filemanager.cpp in MyServer 0.8 allows remote attackers to list the parent directory of the web root via a URL with a "..." (triple dot).
0