Skip to content
Noroxi

soft3304 records

9 published records for vendor soft3304.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
1
With a fix record
0%
Median publish → KEV
No record has entered KEV

Records by year

    Bar: total · dark part: CISA KEV.

    Recurring classes

      The weakness classes this vendor ships most often: where to look.

      CWE

      All records

      9 records
      • CVE-2006-4200
        30Monitor

        Unspecified vulnerability in 04WebServer 1.83 and earlier allows remote attackers to bypass user authentication via unspecified vectors rela

        HighCVSS 7.5No exploitEPSS 2%

        soft3304 · 04webserverAug 17, 2006

      • CVE-2006-4199
        27Monitor

        Cross-site scripting (XSS) vulnerability in Soft3304 04WebServer 1.83 and earlier allows remote attackers to inject arbitrary web script or

        MediumCVSS 6.8No exploitEPSS 1%

        soft3304 · 04webserverAug 17, 2006

      • CVE-2004-2662
        21Monitor

        Soft3304 04WebServer before 1.41 allows remote attackers to cause a denial of service (resource consumption or crash) via certain data relat

        MediumCVSS 5.0No exploitEPSS 2%

        soft3304 · 04webserverDec 31, 2004

      • CVE-2004-1514
        21Monitor

        04WebServer 1.42 allows remote attackers to cause a denial of service (fail to restart properly) via an HTTP request for an MS-DOS device na

        MediumCVSS 5.0No exploitEPSS 2%

        soft3304 · 04webserverDec 31, 2004

      • CVE-2004-1513
        20Monitor

        04WebServer 1.42 does not adequately filter data that is written to log files, which could allow remote attackers to inject carriage return

        MediumCVSS 5.0No exploitEPSS 2%

        soft3304 · 04webserverDec 31, 2004

      • CVE-2005-1416
        20Monitor

        Directory traversal vulnerability in 04WebServer 1.81 allows remote attackers to read files outside of the web root but within the installat

        MediumCVSS 5.0No exploitEPSS 2%

        soft3304 · 04webserverMay 3, 2005

      • CVE-2004-2661
        20Monitor

        Soft3304 04WebServer before 1.41 does not properly check file names, which allows remote attackers to obtain sensitive information (CGI sour

        MediumCVSS 5.0No exploitEPSS 1%

        soft3304 · 04webserverDec 31, 2004

      • CVE-2002-2216
        20Monitor

        Soft3304 04WebServer before 1.20 does not properly process URL strings, which allows remote attackers to obtain unspecified sensitive inform

        MediumCVSS 5.0No exploitEPSS 1%

        soft3304 · 04webserverDec 31, 2002

      • CVE-2004-1512
        17Monitor

        Cross-site scripting (XSS) vulnerability in Response_default.html in 04WebServer 1.42 allows remote attackers to execute arbitrary web scrip

        MediumCVSS 4.3No exploitEPSS 1%

        soft3304 · 04webserverDec 31, 2004