RSS   Vulnerabilities for 'Webspeed'   RSS

2007-05-03
 
CVE-2007-2506

CWE-Other
 

 
WebSpeed 3.x in OpenEdge 10.x in Progress Software Progress 9.1e, and certain other 9.x versions, allows remote attackers to cause a denial of service (infinite loop and daemon hang) via a messenger URL that invokes _edit.r with no additional parameters, as demonstrated by requests for cgiip.exe or wsisa.dll with WService=wsbroker1/_edit.r in the PATH_INFO.

 
2000-02-03
 
CVE-2000-0127

 

 
The Webspeed configuration program does not properly disable access to the WSMadmin utility, which allows remote attackers to gain privileges via wsisa.dll.

 

 >>> Vendor: Progress 14 Products
Webspeed
Progress
Database
4gl compiler
Webspeed messenger
Openedge
Sitefinity
Kendo ui editor
Sitefinity cms
Fiddler
Kendo ui
Ipswitch ws ftp server
Moveit transfer
Moveit automation


Copyright 2024, cxsecurity.com

 

Back to Top