Mywebserver
by Mywebserver
CVEs (7)
| CVE | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2002-1897 | 0.04 | — | 0.07 | Dec 31, 2002 | MyWebServer LLC MyWebServer 1.0.2 allows remote attackers to cause a denial of service (crash) via a long HTTP request, possibly triggering a buffer overflow. | ||
| CVE-2002-1452 | 0.04 | — | 0.16 | Aug 14, 2002 | Buffer overflow in the search capability for MyWebServer 1.0.2 allows remote attackers to execute arbitrary code via a long searchTarget parameter. | ||
| CVE-2002-1453 | 0.03 | — | 0.01 | Aug 14, 2002 | Cross-site scripting (XSS) vulnerability in MyWebServer 1.0.2 allows remote attackers to insert script and HTML via a long request followed by the malicious script, which is echoed back to the user in an error message. | ||
| CVE-2004-1556 | 0.00 | — | 0.01 | Dec 31, 2004 | MyWebServer 1.0.3 allows remote attackers to cause a denial of service (application crash) via a large number of connections within a short time. | ||
| CVE-2004-1557 | 0.00 | — | 0.01 | Dec 31, 2004 | MyWebServer 1.0.3 allows remote attackers to bypass authentication, modify configuration, and read arbitrary files via a direct HTTP request to (1) /admin or (2) ServerProperties.html. | ||
| CVE-2002-1454 | 0.00 | — | 0.01 | Jun 9, 2003 | MyWebServer 1.0.2 allows remote attackers to determine the absolute path of the web document root via a request for a directory that does not exist, which leaks the pathname in an error message. | ||
| CVE-2002-1003 | 0.00 | — | 0.04 | Oct 4, 2002 | Buffer overflow in MyWebServer 1.02 and earlier allows remote attackers to execute arbitrary code via a long HTTP GET request. |
- CVE-2002-1897Dec 31, 2002risk 0.04cvss —epss 0.07
MyWebServer LLC MyWebServer 1.0.2 allows remote attackers to cause a denial of service (crash) via a long HTTP request, possibly triggering a buffer overflow.
- CVE-2002-1452Aug 14, 2002risk 0.04cvss —epss 0.16
Buffer overflow in the search capability for MyWebServer 1.0.2 allows remote attackers to execute arbitrary code via a long searchTarget parameter.
- CVE-2002-1453Aug 14, 2002risk 0.03cvss —epss 0.01
Cross-site scripting (XSS) vulnerability in MyWebServer 1.0.2 allows remote attackers to insert script and HTML via a long request followed by the malicious script, which is echoed back to the user in an error message.
- CVE-2004-1556Dec 31, 2004risk 0.00cvss —epss 0.01
MyWebServer 1.0.3 allows remote attackers to cause a denial of service (application crash) via a large number of connections within a short time.
- CVE-2004-1557Dec 31, 2004risk 0.00cvss —epss 0.01
MyWebServer 1.0.3 allows remote attackers to bypass authentication, modify configuration, and read arbitrary files via a direct HTTP request to (1) /admin or (2) ServerProperties.html.
- CVE-2002-1454Jun 9, 2003risk 0.00cvss —epss 0.01
MyWebServer 1.0.2 allows remote attackers to determine the absolute path of the web document root via a request for a directory that does not exist, which leaks the pathname in an error message.
- CVE-2002-1003Oct 4, 2002risk 0.00cvss —epss 0.04
Buffer overflow in MyWebServer 1.02 and earlier allows remote attackers to execute arbitrary code via a long HTTP GET request.