RSS   Vulnerabilities for 'Freestyle chat'   RSS

2001-08-14
 
CVE-2001-0616

 

 
Faust Informatics Freestyle Chat server prior to 4.1 SR3 allows a remote attacker to create a denial of service via a URL request which includes a MS-DOS device name (e.g., GET /aux HTTP/1.0).

 
 
CVE-2001-0615

 

 
Directory traversal vulnerability in Faust Informatics Freestyle Chat server prior to 4.1 SR3 allows a remote attacker to read arbitrary files via a specially crafted URL which includes variations of a '..' (dot dot) attack such as '...' or '....'.

 


Copyright 2024, cxsecurity.com

 

Back to Top