RSS   Vulnerabilities for 'Sws simple web server'   RSS

2006-05-01
 
CVE-2006-2115

CWE-Other
 

 
Format string vulnerability in SWS web Server 0.1.7 allows remote attackers to execute arbitrary code via unspecified vectors that are not properly handled in a syslog function call.

 
 
CVE-2006-2114

CWE-Other
 

 
Buffer overflow in SWS web Server 0.1.7 allows remote attackers to execute arbitrary code via a long request.

 
2002-12-31
 
CVE-2002-2370

 

 
SWS web server 0.0.4, 0.0.3 and 0.1.0 allows remote attackers to cause a denial of service (crash) via a URL request that does not end with a newline.

 
 
CVE-2002-1870

 

 
Simple Web Server (SWS) 0.0.4 through 0.1.0 does not properly handle when the recv function call fails, which may allow remote attackers to overwrite program data or perform actions on an uninitialized heap, leading to a denial of service and possibly code execution.

 
 
CVE-2002-1866

 

 
Simple Web Server (SWS) 0.0.4 through 0.1.0 does not close file descriptors for 404 error messages, which could allow remote attackers to cause a denial of service (file descriptor exhaustion) via multiple requests for pages that do not exist.

 
 
CVE-2002-1864

 

 
Directory traversal vulnerability in Simple Web Server (SWS) 0.0.4 through 0.1.0 allows remote attackers to read arbitrary files via a ".." (dot dot) in an HTTP request.

 

 >>> Vendor: SWS 2 Products
Sws simple web server
Simple website software


Copyright 2024, cxsecurity.com

 

Back to Top