Lucene search

K

Xerver Security Vulnerabilities

cve
cve

CVE-2009-3544

Xerver HTTP Server 4.32 allows remote attackers to obtain the source code for a web page via an HTTP request with the addition of ::$DATA after the HTML file...

6.6AI Score

0.027EPSS

2009-10-05 07:30 PM
21
cve
cve

CVE-2009-3561

Directory traversal vulnerability in Xerver HTTP Server 4.32 allows remote attackers to read arbitrary files via a full pathname with a drive letter in the currentPath parameter in a chooseDirectory...

6.6AI Score

0.004EPSS

2009-10-05 07:30 PM
23
cve
cve

CVE-2009-3562

Cross-site scripting (XSS) vulnerability in Xerver HTTP Server 4.32 allows remote attackers to inject arbitrary web script or HTML via the currentPath parameter in a chooseDirectory...

5.6AI Score

0.002EPSS

2009-10-05 07:30 PM
22
cve
cve

CVE-2005-4774

Cross-site scripting (XSS) vulnerability in Xerver 4.17 allows remote attackers to inject arbitrary web script or HTML after a /%00/ sequence at the end of the...

5.7AI Score

0.009EPSS

2006-04-13 10:00 AM
19
cve
cve

CVE-2005-3293

Xerver 4.17 allows remote attackers to (1) obtain source code of scripts via a request with a trailing "." (dot) or (2) list directory contents via a trailing null...

6.9AI Score

0.032EPSS

2005-10-23 10:02 AM
22
cve
cve

CVE-2002-0447

Directory traversal vulnerability in Xerver Free Web Server 2.10 and earlier allows remote attackers to list arbitrary directories via a .. (dot dot) in an HTTP GET...

7.2AI Score

0.003EPSS

2002-07-26 04:00 AM
21
cve
cve

CVE-2002-0448

Xerver Free Web Server 2.10 and earlier allows remote attackers to cause a denial of service (crash) via an HTTP request that contains many "C:/"...

6.7AI Score

0.012EPSS

2002-07-26 04:00 AM
23