htdig records
5 published records for vendor htdig.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 1
- With a fix record
- 40%
- Median publish → KEV
- No record has entered KEV
Records by year
Bar: total · dark part: CISA KEV.
Attack profile
All records
5 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
28Monitor | CVE-2005-0085No exploit | Cross-site scripting (XSS) vulnerability in ht://dig (htdig) before 3.1.6-r7 allows remote attackers to execute arbitrary web script or HTMLhtdig · htdig | Medium6.8 | — | 2.3% | Apr 27, 2005 |
26Monitor | CVE-2001-0834No exploit | htsearch CGI program in htdig (ht://Dig) 3.1.5 and earlier allows remote attackers to use the -c option to specify an alternate configuratiohtdig · htdig | Medium6.4 | — | 2.6% | Dec 6, 2001 |
22Monitor | CVE-2000-0208Proof of concept | The htdig (ht://Dig) CGI program htsearch allows remote attackers to read arbitrary files by enclosing the file name with backticks (`) in phtdig · htdig | Medium5.0 | — | 6.9% | Feb 29, 2000 |
18Monitor | CVE-2007-6110Proof of concept | Cross-site scripting (XSS) vulnerability in htsearch in htdig 3.2.0b6 allows remote attackers to inject arbitrary web script or HTML via thehtdig · htdig · CWE-79 | Medium4.3 | — | 4.4% | Nov 23, 2007 |
17Monitor | CVE-2002-2010No exploit | Cross-site scripting (XSS) vulnerability in htsearch.cgi in htdig (ht://Dig) 3.1.5, 3.1.6, and 3.2 allows remote attackers to inject arbitrahtdig · htdig | Medium4.3 | — | 1.2% | Dec 31, 2002 |
- CVE-2005-008528Monitor
Cross-site scripting (XSS) vulnerability in ht://dig (htdig) before 3.1.6-r7 allows remote attackers to execute arbitrary web script or HTML
MediumCVSS 6.8No exploitEPSS 2%htdig · htdigApr 27, 2005
- CVE-2001-083426Monitor
htsearch CGI program in htdig (ht://Dig) 3.1.5 and earlier allows remote attackers to use the -c option to specify an alternate configuratio
MediumCVSS 6.4No exploitEPSS 3%htdig · htdigDec 6, 2001
- CVE-2000-020822Monitor
The htdig (ht://Dig) CGI program htsearch allows remote attackers to read arbitrary files by enclosing the file name with backticks (`) in p
MediumCVSS 5.0Proof of conceptEPSS 7%htdig · htdigFeb 29, 2000
- CVE-2007-611018Monitor
Cross-site scripting (XSS) vulnerability in htsearch in htdig 3.2.0b6 allows remote attackers to inject arbitrary web script or HTML via the
MediumCVSS 4.3Proof of conceptEPSS 4%htdig · htdigNov 23, 2007
- CVE-2002-201017Monitor
Cross-site scripting (XSS) vulnerability in htsearch.cgi in htdig (ht://Dig) 3.1.5, 3.1.6, and 3.2 allows remote attackers to inject arbitra
MediumCVSS 4.3No exploitEPSS 1%htdig · htdigDec 31, 2002