VYPR

Webmathematica

by Wolfram Research

CVEs (3)

  • CVE-2002-0926Oct 4, 2002
    risk 0.04cvss epss 0.18

    Directory traversal vulnerability in Wolfram Research webMathematica 1.0.0 and 1.0.0.1 allows remote attackers to read arbitrary files via a .. (dot dot) in the MSPStoreID parameter.

  • CVE-2009-4814Apr 27, 2010
    risk 0.03cvss epss 0.02

    Cross-site scripting (XSS) vulnerability in Wolfram Research webMathematica allows remote attackers to inject arbitrary web script or HTML via the URI to the MSP script.

  • CVE-2009-4812Apr 27, 2010
    risk 0.00cvss epss 0.00

    Wolfram Research webMathematica allows remote attackers to obtain sensitive information via a direct request to the MSP script, which reveals the installation path in an error message.