Show filters
6 Total Results
Displaying 1-6 of 6
Sort by:
Attacker Value
Unknown
CVE-2003-1583
Disclosure Date: February 05, 2010 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in WebTrends allows remote attackers to inject arbitrary web script or HTML via a crafted client domain name, related to an "Inverse Lookup Log Corruption (ILLC)" issue.
0
Attacker Value
Unknown
CVE-2004-2748
Disclosure Date: December 31, 2004 (last updated February 22, 2025)
viewreport.pl in NetIQ WebTrends Reporting Center Enterprise Edition 6.1a allows remote attackers to determine the installation path via an invalid profileid parameter, which leaks the pathname in an error message.
0
Attacker Value
Unknown
CVE-2002-0596
Disclosure Date: June 18, 2002 (last updated February 22, 2025)
WebTrends Reporting Center 4.0d allows remote attackers to determine the real path of the web server via a GET request to get_od_toc.pl with an empty Profile parameter, which leaks the pathname in an error message.
0
Attacker Value
Unknown
CVE-2002-0595
Disclosure Date: June 18, 2002 (last updated February 22, 2025)
Buffer overflow in WTRS_UI.EXE (WTX_REMOTE.DLL) for WebTrends Reporting Center 4.0d allows remote attackers to execute arbitrary code via a long HTTP GET request to the /reports/ directory.
0
Attacker Value
Unknown
CVE-2001-0693
Disclosure Date: September 20, 2001 (last updated February 22, 2025)
WebTrends HTTP Server 3.1c and 3.5 allows a remote attacker to view script source code via a filename followed by an encoded space (%20).
0
Attacker Value
Unknown
CVE-1999-0916
Disclosure Date: June 29, 1999 (last updated February 22, 2025)
WebTrends software stores account names and passwords in a file which does not have restricted access permissions.
0