Vulnerability   
Search   
    Search 202850 CVE descriptions
and 87302 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.56819
Category:CGI abuses
Title:Xerver < 4.20 Multiple Input Validation Vulnerabilities
Summary:NOSUMMARY
Description:Description:
The remote host is running a vulnerable version
of Xerver that allows attackers to reveal the content of directories,
source source of web pages, and perform cross site scripting attacks.
Versions prior to 4.20 are vulnerable.

Solution: Upgrade to 4.20 or later.

Risk factor : Medium

CVSS Score:
5.0

Cross-Ref: BugTraq ID: 15135
Common Vulnerability Exposure (CVE) ID: CVE-2005-3293
http://www.securityfocus.com/bid/15135
http://www.osvdb.org/20075
http://www.osvdb.org/20076
http://securitytracker.com/id?1015079
http://secunia.com/advisories/17243
XForce ISS Database: xerver-null-character-directory-traversal(22786)
https://exchange.xforce.ibmcloud.com/vulnerabilities/22786
XForce ISS Database: xerver-source-code-disclosure(22785)
https://exchange.xforce.ibmcloud.com/vulnerabilities/22785
Common Vulnerability Exposure (CVE) ID: CVE-2005-4774
http://www.osvdb.org/20077
XForce ISS Database: xerver-null-character-xss(22787)
https://exchange.xforce.ibmcloud.com/vulnerabilities/22787
CopyrightCopyright (c) 2005 E-Soft Inc. http://www.securityspace.com

This is only one of 87302 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2021 E-Soft Inc. All rights reserved.