Show filters
3 Total Results
Displaying 1-3 of 3
Sort by:
Attacker Value
Unknown

CVE-2010-1079

Disclosure Date: March 23, 2010 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in Sawmill before 7.2.18 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
0
Attacker Value
Unknown

CVE-2000-0588

Disclosure Date: June 26, 2000 (last updated February 22, 2025)
SawMill 5.0.21 CGI program allows remote attackers to read the first line of arbitrary files by listing the file in the rfcf parameter, whose contents SawMill attempts to parse as configuration commands.
0
Attacker Value
Unknown

CVE-2000-0589

Disclosure Date: June 26, 2000 (last updated February 22, 2025)
SawMill 5.0.21 uses weak encryption to store passwords, which allows attackers to easily decrypt the password and modify the SawMill configuration.
0