Lionmax Software
Products
2- 4 CVEs
- 3 CVEs
Recent CVEs
7| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2005-0522 | 0.03 | — | 0.01 | May 2, 2005 | Chat Anywhere 2.72a stores sensitive information such as passwords in plaintext in the .INI file for a chatroom, which allows local users to gain privileges. | |||
| CVE-2004-1802 | 0.00 | — | 0.01 | Dec 31, 2004 | Chat Anywhere 2.72 and earlier allows remote attackers to hide their IP address by using %00 before the nickname, which causes the IP address to be displayed as $IP$ on the administration web page. | |||
| CVE-2004-2724 | 0.00 | — | 0.02 | Dec 31, 2004 | LionMax Software Chat Anywhere 2.72a allows remote attackers to cause a denial of service (server crash and client CPU consumption) via a username beginning with percent (%) followed by a null character. | |||
| CVE-2004-0741 | 0.00 | — | 0.01 | Jul 27, 2004 | LionMax Software WWW File Share Pro 2.60 allows remote attackers to cause a denial of service (crash or hang) via a long URL, possibly triggering a buffer overflow. | |||
| CVE-2004-0059 | 0.00 | — | 0.01 | Feb 17, 2004 | Directory traversal vulnerability in upload capability of WWW File Share Pro 2.42 and earlier allows remote attackers to overwrite arbitrary files via .. (dot dot) sequences in the filename parameter of a Content-Disposition: header. | |||
| CVE-2004-0060 | 0.00 | — | 0.01 | Feb 17, 2004 | WWW File Share Pro 2.42 and earlier allows remote attackers to cause a denial of service (crash) via a large POST request. | |||
| CVE-2004-0061 | 0.00 | — | 0.01 | Feb 17, 2004 | WWW File Share Pro 2.42 and earlier allows remote attackers to bypass directory access restrictions via (1) a URL with a trailing . (dot), or (2) a URI with a leading slash or backslash character. |
- CVE-2005-0522May 2, 2005risk 0.03cvss —epss 0.01
Chat Anywhere 2.72a stores sensitive information such as passwords in plaintext in the .INI file for a chatroom, which allows local users to gain privileges.
- CVE-2004-1802Dec 31, 2004risk 0.00cvss —epss 0.01
Chat Anywhere 2.72 and earlier allows remote attackers to hide their IP address by using %00 before the nickname, which causes the IP address to be displayed as $IP$ on the administration web page.
- CVE-2004-2724Dec 31, 2004risk 0.00cvss —epss 0.02
LionMax Software Chat Anywhere 2.72a allows remote attackers to cause a denial of service (server crash and client CPU consumption) via a username beginning with percent (%) followed by a null character.
- CVE-2004-0741Jul 27, 2004risk 0.00cvss —epss 0.01
LionMax Software WWW File Share Pro 2.60 allows remote attackers to cause a denial of service (crash or hang) via a long URL, possibly triggering a buffer overflow.
- CVE-2004-0059Feb 17, 2004risk 0.00cvss —epss 0.01
Directory traversal vulnerability in upload capability of WWW File Share Pro 2.42 and earlier allows remote attackers to overwrite arbitrary files via .. (dot dot) sequences in the filename parameter of a Content-Disposition: header.
- CVE-2004-0060Feb 17, 2004risk 0.00cvss —epss 0.01
WWW File Share Pro 2.42 and earlier allows remote attackers to cause a denial of service (crash) via a large POST request.
- CVE-2004-0061Feb 17, 2004risk 0.00cvss —epss 0.01
WWW File Share Pro 2.42 and earlier allows remote attackers to bypass directory access restrictions via (1) a URL with a trailing . (dot), or (2) a URI with a leading slash or backslash character.