RSS   Vulnerabilities for 'Lil http server'   RSS

2002-10-04
 
CVE-2002-1009

 

 
Cross-site scripting vulnerability in PowerBASIC pbcgi.cgi, as included in Lil' HTTP web server, allows remote attackers to execute arbitrary web script in other web browsers via the (1) "Name" or (2) "E-mail" parameters.

 
 
CVE-2002-1008

 

 
Cross-site scripting vulnerability in PowerBASIC urlcount.cgi, as included in Lil' HTTP web server, allows remote attackers to execute arbitrary web script in other web browsers via a request to urlcount.cgi that contains the script, which is not filtered when the REPORT capability prints the original request.

 
2002-05-31
 
CVE-2002-0304

 

 
Lil HTTP Server 2.1 allows remote attackers to read password-protected files via a /./ in the HTTP request.

 

 >>> Vendor: Summit computer networks 2 Products
Lil http server
Lil http


Copyright 2024, cxsecurity.com

 

Back to Top