Show filters
4 Total Results
Displaying 1-4 of 4
Sort by:
Attacker Value
Unknown

CVE-2007-3396

Disclosure Date: June 26, 2007 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in index.wkf in KeyFocus (KF) web server 3.1.0 allows remote attackers to inject arbitrary web script or HTML via the opsubmenu parameter.
0
Attacker Value
Unknown

CVE-2002-2403

Disclosure Date: December 31, 2002 (last updated February 22, 2025)
Directory traversal vulnerability in KeyFocus web server 1.0.8 allows remote attackers to read arbitrary files for recognized MIME type files via "...", "....", ".....", and other multiple dot sequences.
0
Attacker Value
Unknown

CVE-2002-1031

Disclosure Date: October 04, 2002 (last updated February 22, 2025)
KeyFocus (KF) web server 1.0.2 allows remote attackers to list directories and read restricted files via an HTTP request containing a %00 (null) character.
0
Attacker Value
Unknown

CVE-2002-1032

Disclosure Date: October 04, 2002 (last updated February 22, 2025)
Buffer overflow in KeyFocus (KF) web server 1.0.5 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary code via a malformed HTTP header.
0