Show filters
4 Total Results
Displaying 1-4 of 4
Sort by:
Attacker Value
Unknown
CVE-2002-2427
Disclosure Date: February 06, 2009 (last updated October 04, 2023)
The security handler in GoAhead WebServer before 2.1.1 allows remote attackers to bypass authentication and obtain access to protected web content via "an extra slash in a URL," a different vulnerability than CVE-2002-1603.
0
Attacker Value
Unknown
CVE-2009-0474
Disclosure Date: February 06, 2009 (last updated October 04, 2023)
The web interface in the Rockwell Automation ControlLogix 1756-ENBT/A EtherNet/IP Bridge Module allows remote attackers to obtain "internal web page information" and "internal information about the module" via unspecified vectors. NOTE: this may overlap CVE-2002-1603.
0
Attacker Value
Unknown
CVE-2007-6702
Disclosure Date: March 04, 2008 (last updated October 04, 2023)
goform/QuickStart_c0 on the GoAhead Web Server on the FS4104-AW (aka rooter) VDSL device contains a password in the typepassword field, which allows remote attackers to obtain this password by reading the HTML source, a different vulnerability than CVE-2002-1603.
0
Attacker Value
Unknown
CVE-2002-1603
Disclosure Date: February 13, 2002 (last updated February 22, 2025)
GoAhead Web Server 2.1.7 and earlier allows remote attackers to obtain the source code of ASP files via a URL terminated with a /, \, %2f (encoded /), %20 (encoded space), or %00 (encoded null) character, which returns the ASP source code unparsed.
0