Vulnerability   
Search   
    Search 324607 CVE descriptions
and 146377 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.51779
Category:CGI abuses
Title:JAWS arbitrary file disclosure vulnerability
Summary:NOSUMMARY
Description:Description:

JAWS, a PHP based content management system,
suffers from vulnerbailities that allow an attacker
to read abitrary files from your system, such as your
password file. Versions up to and including 0.3 are
known to be vulnerable.

Solution: Upgrade to a later version when one becomes
available.

Risk factor : High

CVSS Score:
7.5

Cross-Ref: BugTraq ID: 10670
Common Vulnerability Exposure (CVE) ID: CVE-2004-2445
http://www.securityfocus.com/bid/10670
http://archives.neohapsis.com/archives/fulldisclosure/2004-07/0226.html
http://www.osvdb.org/7722
http://securitytracker.com/id?1010651
XForce ISS Database: jaws-index-file-disclosure(16620)
https://exchange.xforce.ibmcloud.com/vulnerabilities/16620
Common Vulnerability Exposure (CVE) ID: CVE-2004-2444
http://www.osvdb.org/7723
XForce ISS Database: jaws-indexphp-xss(16621)
https://exchange.xforce.ibmcloud.com/vulnerabilities/16621
Common Vulnerability Exposure (CVE) ID: CVE-2004-2443
http://www.osvdb.org/7724
XForce ISS Database: jaws-cookie-bypass-authentication(16622)
https://exchange.xforce.ibmcloud.com/vulnerabilities/16622
CopyrightCopyright (c) 2005 E-Soft Inc. http://www.securityspace.com

This is only one of 146377 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.