tinyserver records
4 published records for vendor tinyserver.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Records by year
Bar: total · dark part: CISA KEV.
Attack profile
All records
4 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
23Monitor | CVE-2004-2116Proof of concept | Directory traversal vulnerability in Tiny Server 1.1 allows remote attackers to read or download arbitrary files via a ..tinyserver · tinyserver | Medium5.0 | — | 8.7% | Dec 31, 2004 |
22Monitor | CVE-2004-2117Proof of concept | Tiny Server 1.1 allows remote attackers to cause a denial of service (crash) via malformed HTTP requests such as (1) a GET request without ttinyserver · tinyserver | Medium5.0 | — | 8.0% | Jan 24, 2004 |
21Monitor | CVE-2004-2118No exploit | Tiny Server 1.1 allows remote attackers to cause a denial of service (crash) via a GET request with a long filename, possibly due to a buffetinyserver · tinyserver | Medium5.0 | — | 1.9% | Dec 31, 2004 |
18Monitor | CVE-2004-2119Proof of concept | Cross-site scripting (XSS) vulnerability in Tiny Server 1.1 allows remote attackers to inject arbitrary web script or HTML via the URL.tinyserver · tinyserver | Medium4.3 | — | 1.9% | Dec 31, 2004 |
- CVE-2004-211623Monitor
Directory traversal vulnerability in Tiny Server 1.1 allows remote attackers to read or download arbitrary files via a ..
MediumCVSS 5.0Proof of conceptEPSS 9%tinyserver · tinyserverDec 31, 2004
- CVE-2004-211722Monitor
Tiny Server 1.1 allows remote attackers to cause a denial of service (crash) via malformed HTTP requests such as (1) a GET request without t
MediumCVSS 5.0Proof of conceptEPSS 8%tinyserver · tinyserverJan 24, 2004
- CVE-2004-211821Monitor
Tiny Server 1.1 allows remote attackers to cause a denial of service (crash) via a GET request with a long filename, possibly due to a buffe
MediumCVSS 5.0No exploitEPSS 2%tinyserver · tinyserverDec 31, 2004
- CVE-2004-211918Monitor
Cross-site scripting (XSS) vulnerability in Tiny Server 1.1 allows remote attackers to inject arbitrary web script or HTML via the URL.
MediumCVSS 4.3Proof of conceptEPSS 2%tinyserver · tinyserverDec 31, 2004