soft3304 records
9 published records for vendor soft3304.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 1
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Records by year
Bar: total · dark part: CISA KEV.
Attack profile
All records
9 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
30Monitor | CVE-2006-4200No exploit | Unspecified vulnerability in 04WebServer 1.83 and earlier allows remote attackers to bypass user authentication via unspecified vectors relasoft3304 · 04webserver | High7.5 | — | 1.6% | Aug 17, 2006 |
27Monitor | CVE-2006-4199No exploit | Cross-site scripting (XSS) vulnerability in Soft3304 04WebServer 1.83 and earlier allows remote attackers to inject arbitrary web script or soft3304 · 04webserver | Medium6.8 | — | 1.3% | Aug 17, 2006 |
21Monitor | CVE-2004-2662No exploit | Soft3304 04WebServer before 1.41 allows remote attackers to cause a denial of service (resource consumption or crash) via certain data relatsoft3304 · 04webserver | Medium5.0 | — | 1.8% | Dec 31, 2004 |
21Monitor | CVE-2004-1514No exploit | 04WebServer 1.42 allows remote attackers to cause a denial of service (fail to restart properly) via an HTTP request for an MS-DOS device nasoft3304 · 04webserver | Medium5.0 | — | 1.8% | Dec 31, 2004 |
20Monitor | CVE-2004-1513No exploit | 04WebServer 1.42 does not adequately filter data that is written to log files, which could allow remote attackers to inject carriage return soft3304 · 04webserver | Medium5.0 | — | 1.7% | Dec 31, 2004 |
20Monitor | CVE-2005-1416No exploit | Directory traversal vulnerability in 04WebServer 1.81 allows remote attackers to read files outside of the web root but within the installatsoft3304 · 04webserver | Medium5.0 | — | 1.6% | May 3, 2005 |
20Monitor | CVE-2004-2661No exploit | Soft3304 04WebServer before 1.41 does not properly check file names, which allows remote attackers to obtain sensitive information (CGI soursoft3304 · 04webserver | Medium5.0 | — | 1.2% | Dec 31, 2004 |
20Monitor | CVE-2002-2216No exploit | Soft3304 04WebServer before 1.20 does not properly process URL strings, which allows remote attackers to obtain unspecified sensitive informsoft3304 · 04webserver | Medium5.0 | — | 1.2% | Dec 31, 2002 |
17Monitor | CVE-2004-1512No exploit | Cross-site scripting (XSS) vulnerability in Response_default.html in 04WebServer 1.42 allows remote attackers to execute arbitrary web scripsoft3304 · 04webserver | Medium4.3 | — | 1.4% | Dec 31, 2004 |
- CVE-2006-420030Monitor
Unspecified vulnerability in 04WebServer 1.83 and earlier allows remote attackers to bypass user authentication via unspecified vectors rela
HighCVSS 7.5No exploitEPSS 2%soft3304 · 04webserverAug 17, 2006
- CVE-2006-419927Monitor
Cross-site scripting (XSS) vulnerability in Soft3304 04WebServer 1.83 and earlier allows remote attackers to inject arbitrary web script or
MediumCVSS 6.8No exploitEPSS 1%soft3304 · 04webserverAug 17, 2006
- CVE-2004-266221Monitor
Soft3304 04WebServer before 1.41 allows remote attackers to cause a denial of service (resource consumption or crash) via certain data relat
MediumCVSS 5.0No exploitEPSS 2%soft3304 · 04webserverDec 31, 2004
- CVE-2004-151421Monitor
04WebServer 1.42 allows remote attackers to cause a denial of service (fail to restart properly) via an HTTP request for an MS-DOS device na
MediumCVSS 5.0No exploitEPSS 2%soft3304 · 04webserverDec 31, 2004
- CVE-2004-151320Monitor
04WebServer 1.42 does not adequately filter data that is written to log files, which could allow remote attackers to inject carriage return
MediumCVSS 5.0No exploitEPSS 2%soft3304 · 04webserverDec 31, 2004
- CVE-2005-141620Monitor
Directory traversal vulnerability in 04WebServer 1.81 allows remote attackers to read files outside of the web root but within the installat
MediumCVSS 5.0No exploitEPSS 2%soft3304 · 04webserverMay 3, 2005
- CVE-2004-266120Monitor
Soft3304 04WebServer before 1.41 does not properly check file names, which allows remote attackers to obtain sensitive information (CGI sour
MediumCVSS 5.0No exploitEPSS 1%soft3304 · 04webserverDec 31, 2004
- CVE-2002-221620Monitor
Soft3304 04WebServer before 1.20 does not properly process URL strings, which allows remote attackers to obtain unspecified sensitive inform
MediumCVSS 5.0No exploitEPSS 1%soft3304 · 04webserverDec 31, 2002
- CVE-2004-151217Monitor
Cross-site scripting (XSS) vulnerability in Response_default.html in 04WebServer 1.42 allows remote attackers to execute arbitrary web scrip
MediumCVSS 4.3No exploitEPSS 1%soft3304 · 04webserverDec 31, 2004