Skip to content
Noroxi

inserter.cgi records

3 published records for vendor inserter.cgi.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
1
With a fix record
0%
Median publish → KEV
No record has entered KEV

Records by year

    Bar: total · dark part: CISA KEV.

    Recurring classes

      The weakness classes this vendor ships most often: where to look.

      CWE

      Attack profile

      All records

      3 records
      • The inserter.cgi script allows remote attackers to execute arbitrary commands via shell metacharacters in the argument.

        CriticalCVSS 10.0No exploitEPSS 3%

        inserter.cgi · inserter.cgiApr 25, 2005

      • CVE-2005-1298
        30Monitor

        The inserter.cgi script allows remote attackers to read arbitrary files via a full pathname in the argument.

        HighCVSS 7.5No exploitEPSS 1%

        inserter.cgi · inserter.cgiApr 25, 2005

      • CVE-2005-1300
        27Monitor

        Cross-site scripting (XSS) vulnerability in the inserter.cgi script allows remote attackers to inject arbitrary web script or HTML via the a

        MediumCVSS 6.8No exploitEPSS 1%

        inserter.cgi · inserter.cgiApr 25, 2005