Lucene search

K

Sws Security Vulnerabilities

cve
cve

CVE-2002-1864

Directory traversal vulnerability in Simple Web Server (SWS) 0.0.4 through 0.1.0 allows remote attackers to read arbitrary files via a ".." (dot dot) in an HTTP request.

7.1AI Score

0.458EPSS

2022-10-03 04:23 PM
14
cve
cve

CVE-2002-1866

Simple Web Server (SWS) 0.0.4 through 0.1.0 does not close file descriptors for 404 error messages, which could allow remote attackers to cause a denial of service (file descriptor exhaustion) via multiple requests for pages that do not exist.

7AI Score

0.004EPSS

2022-10-03 04:23 PM
21
cve
cve

CVE-2002-1870

Simple Web Server (SWS) 0.0.4 through 0.1.0 does not properly handle when the recv function call fails, which may allow remote attackers to overwrite program data or perform actions on an uninitialized heap, leading to a denial of service and possibly code execution.

7.7AI Score

0.018EPSS

2022-10-03 04:23 PM
21
cve
cve

CVE-2002-2370

SWS web server 0.0.4, 0.0.3 and 0.1.0 allows remote attackers to cause a denial of service (crash) via a URL request that does not end with a newline.

6.6AI Score

0.089EPSS

2022-10-03 04:23 PM
41
cve
cve

CVE-2006-2114

Buffer overflow in SWS web Server 0.1.7 allows remote attackers to execute arbitrary code via a long request.

7.9AI Score

0.026EPSS

2006-05-01 07:06 PM
19
cve
cve

CVE-2006-2115

Format string vulnerability in SWS web Server 0.1.7 allows remote attackers to execute arbitrary code via unspecified vectors that are not properly handled in a syslog function call.

7.7AI Score

0.015EPSS

2006-05-01 07:06 PM
26
cve
cve

CVE-2006-5636

PHP remote file inclusion vulnerability in common.php in Simple Website Software (SWS) 0.99 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the SWSDIR parameter.

8AI Score

0.058EPSS

2006-11-01 12:07 AM
20