Skip to content
Noroxi

4D records

14 published records for vendor 4d.

Researcher profile

Entered KEV
0 · 0%
Weaponized
1 · 7.1%
Pre-auth RCE
2
With a fix record
21.4%
Median publish → KEV
No record has entered KEV

All records

14 records
  • Stack-based buffer overflow in the FTP service for 4D WebSTAR 5.3.2 and earlier allows remote attackers to execute arbitrary code via a long

    HighCVSS 7.5WeaponizedEPSS 38%

    4d · webstarJul 27, 2004

  • Arbitrary File Read and Server Side Request Forgery via XML External Entities in 4D Server SOAP

    HighCVSS 8.7No exploitEPSS 0%

    4d · serverApr 30, 2026

  • CVE-2004-0079
    33Monitor

    The do_change_cipher_spec function in OpenSSL 0.9.6c to 0.9.6k, and 0.9.7a to 0.9.7c, allows remote attackers to cause a denial of service (

    HighCVSS 7.5No exploitEPSS 10%

    openssl · opensslNov 23, 2004

  • CVE-2023-4770
    31Monitor

    Uncontrolled Search Path Element Vulnerability in 4D and 4D Windows Server

    HighCVSS 7.8No exploitEPSS 0%

    4d · 4dNov 30, 2023

  • An information disclosure vulnerability in 4D SAS 4D Server Application v17, v18, v19 R7 and earlier allows attackers to retrieve password h

    HighCVSS 7.5No exploitEPSS 1%

    4d · serverJun 16, 2023

  • A broken authentication vulnerability in 4D SAS 4D Server software v17, v18, v19 R7, and earlier allows attackers to send crafted TCP packet

    HighCVSS 7.5No exploitEPSS 1%

    4d · serverJun 16, 2023

  • CVE-2004-0112
    23Monitor

    The SSL/TLS handshaking code in OpenSSL 0.9.7a, 0.9.7b, and 0.9.7c, when using Kerberos ciphersuites, does not properly check the length of

    MediumCVSS 5.0No exploitEPSS 10%

    openssl · opensslNov 23, 2004

  • CVE-2004-0081
    22Monitor

    OpenSSL 0.9.6 before 0.9.6d does not properly handle unknown message types, which allows remote attackers to cause a denial of service (infi

    MediumCVSS 5.0No exploitEPSS 7%

    openssl · opensslNov 23, 2004

  • CVE-2005-1507
    22Monitor

    Buffer overflow in the Tomcat plugin in 4d WebSTAR 5.33 and 5.4 allows remote attackers to cause a denial of service and possibly execute ar

    MediumCVSS 5.0Proof of conceptEPSS 6%

    4d · webstarMay 11, 2005

  • CVE-2000-0290
    21Monitor

    Buffer overflow in Webstar HTTP server allows remote attackers to cause a denial of service via a long GET request.

    MediumCVSS 5.0No exploitEPSS 2%

    4d · webstar http serverMar 31, 2000

  • CVE-2004-0696
    20Monitor

    The ShellExample.cgi script in 4D WebSTAR 5.3.2 and earlier allows remote attackers to list arbitrary directories via a URL with the desired

    MediumCVSS 5.0No exploitEPSS 1%

    4d · webstarJul 27, 2004

  • CVE-2004-0697
    20Monitor

    Unknown vulnerability in 4D WebSTAR 5.3.2 and earlier allows remote attackers to read the php.ini configuration file and possibly obtain sen

    MediumCVSS 5.0No exploitEPSS 1%

    4d · webstarJul 27, 2004

  • CVE-2005-3143
    20Monitor

    Unspecified vulnerability in the Mailbox Server for 4D WebStar before 5.3.5 allows attackers to cause a denial of service (crash) via IMAP c

    MediumCVSS 5.0No exploitEPSS 1%

    4d · webstarOct 5, 2005

  • CVE-2004-0698
    14Monitor

    4D WebSTAR 5.3.2 and earlier allows local users to read and modify arbitrary files via a symlink attack.

    LowCVSS 3.6No exploitEPSS 0%

    4d · webstarJul 27, 2004