Skip to content
Noroxi

nextweb records

3 published records for vendor nextweb.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
1
With a fix record
0%
Median publish → KEV
No record has entered KEV

Records by year

    Bar: total · dark part: CISA KEV.

    Recurring classes

    The weakness classes this vendor ships most often: where to look.

    CWE

    All records

    3 records
    • CVE-2005-1834
      30Monitor

      SQL injection vulnerability in login.asp in NEXTWEB (i)Site allows remote attackers to execute arbitrary SQL commands and bypass authenticat

      HighCVSS 7.5No exploitEPSS 1%

      nextweb · nextweb \(i\)siteJun 1, 2005

    • CVE-2005-1835
      21Monitor

      NEXTWEB (i)Site stores databases under the web document root with insufficient access control, which allows remote attackers to obtain sensi

      MediumCVSS 5.0No exploitEPSS 2%

      nextweb · nextweb \(i\)siteJun 1, 2005

    • CVE-2005-1836
      21Monitor

      NEXTWEB (i)Site allows remote attackers to cause a denial of service (error 500) via a crafted HTTP request, possibly involving wildcard req

      MediumCVSS 5.0No exploitEPSS 2%

      nextweb · nextweb \(i\)siteJun 1, 2005