VYPR

Aspupload

by Persits

CVEs (2)

  • CVE-2001-0938Nov 30, 2001
    risk 0.00cvss epss 0.03

    Directory traversal vulnerability in AspUpload 2.1, in certain configurations, allows remote attackers to upload and read arbitrary files, and list arbitrary directories, via a .. (dot dot) in the Filename parameter in (1) UploadScript11.asp or (2) DirectoryListing.asp.

  • CVE-1999-1535Jul 20, 1999
    risk 0.00cvss epss 0.04

    Buffer overflow in AspUpload.dll in Persits Software AspUpload before 1.4.0.2 allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long argument in the HTTP request.