Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
sambar sambar server 6.0 vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2003-1285
Multiple cross-site scripting (XSS) vulnerabilities in Sambar Server prior to 6.0 beta 6 allow remote malicious users to inject arbitrary web script or HTML via the query string to (1) isapi/testisa.dll, (2) testcgi.exe, (3) environ.pl, (4) the query parameter to samples/search.d...
Sambar Sambar Server 5.0
Sambar Sambar Server 5.2
Sambar Sambar Server 5.3
Sambar Sambar Server 6.0
Sambar Sambar Server 5.1
NA
CVE-2003-1286
HTTP Proxy in Sambar Server prior to 6.0 beta 6, when security.ini lacks a 127.0.0.1 proxydeny entry, allows remote malicious users to send proxy HTTP requests to the Sambar Server's administrative interface and external web servers, by making a "Connection: keep-alive&...
Sambar Sambar Server 5.0
Sambar Sambar Server 5.1
Sambar Sambar Server 6.0
Sambar Sambar Server 5.2
Sambar Sambar Server 5.3
1 EDB exploit
NA
CVE-2003-1287
Sambar Server prior to 6.0 beta 3 allows attackers with physical access to execute arbitrary code via a request with an MS-DOS device name such as com1.pl, con.pl, or aux.pl, which causes Perl to read the code from the associated device.
Sambar Sambar Server 5.0
Sambar Sambar Server 5.2
Sambar Sambar Server 5.3
Sambar Sambar Server 5.1
Sambar Sambar Server 6.0
NA
CVE-2004-2086
Stack-based buffer overflow in results.stm for Sambar Server before the 6.0 production release allows remote malicious users to cause a denial of service (crash) and possibly execute arbitrary code via an HTTP POST request with a long query parameter.
Sambar Sambar Server 6.0
2 EDB exploits
NA
CVE-2003-1284
Sambar Server prior to 6.0 beta 6 allows remote malicious users to obtain sensitive information via direct requests to the default scripts (1) environ.pl and (2) testcgi.exe.
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-29895
blind SQL injection
CVE-2024-5064
CVE-2023-52677
CVE-2023-52682
CVE-2024-30051
CVE-2024-35849
remote attackers
remote
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started