Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
donato ferrante vulnerabilities and exploits
(subscribe to this query)
5
CVSSv2
CVE-2004-1739
Bird Chat 1.61 allows remote malicious users to cause a denial of service (crash) via invalid users.
Bird Chat Internet Chat Server 1.61
1 EDB exploit
5
CVSSv2
CVE-2004-1838
Directory traversal vulnerability in xweb 1.0 allows remote malicious users to download arbitrary files via a .. (dot dot) in the URL.
Xweb Xweb 1.0
1 EDB exploit
5
CVSSv2
CVE-2004-1919
The hash_strcmp function in hasch.c in Crackalaka 1.0.8 allows remote malicious users to cause a denial of service (crash) via large malformed strings.
Crackalaka Crackalaka 1.0.8
1 EDB exploit
5
CVSSv2
CVE-2004-1973
DiGi Web Server allows remote malicious users to cause a denial of service (CPU consumption) via an HTTP GET request that contains a large number of / (slash) characters, which consumes resources when DiGi converts the slashes to \ (backslash) characters.
Digi Www Server Compieuw
1 EDB exploit
5
CVSSv2
CVE-2004-2035
MiniShare 1.3.2 allows remote malicious users to cause a denial of service (crash) via a malformed HTTP GET or HEAD request without the proper number of trailing CRLF sequences.
Minishare Minimal Http Server 1.3.2
1 EDB exploit
5
CVSSv2
CVE-2004-2646
The addUser function in UserManager.java in Free Web Chat 2.0 allows remote malicious users to cause a denial of service (uncaught NullPointerException) via unknown attack vectors that cause the usrName variable to be null.
1 EDB exploit
10
CVSSv2
CVE-2004-1127
Buffer overflow in Open Dc Hub 0.7.14 allows remote attackers, with administrator privileges, to execute arbitrary code via a long RedirectAll command.
Open Dc Hub Direct Connect Peer-to-peer Client 0.7.14
1 EDB exploit
5
CVSSv2
CVE-2004-2117
Tiny Server 1.1 allows remote malicious users to cause a denial of service (crash) via malformed HTTP requests such as (1) a GET request without the HTTP version (HTTP/1.1), or (2) a request without GET or the HTTP version.
Tinyserver Tinyserver 1.1
1 EDB exploit
5
CVSSv2
CVE-2005-0950
Directory traversal vulnerability in FastStone 4in1 Browser 1.2 allows remote malicious users to read arbitrary files via a (1) ... (triple dot) or (2) ..\ (dot dot backslash) in the URL.
Faststone 4in1 Browser 1.2
1 EDB exploit
5
CVSSv2
CVE-2004-2617
Directory traversal vulnerability in Pegasi Web Server (PWS) 0.2.2 allows remote malicious users to read files outside of the web root via a .. (dot dot) directly after the initial '/' (slash) in the URI.
Pegasi Web Server Pegasi Web Server 0.2.2
1 EDB exploit
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2023-49223
CVE-2024-0044
information disclosure
CVE-2024-35753
HTML injection
CVE-2024-21306
CVE-2024-35733
SQL injection
CVE-2024-35732
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
NEXT »