CVE-2007-3340 – BugHunter HTTP Server 1.6.2 - 'httpsv.exe' GET 404 Remote Denial of Service
https://notcve.org/view.php?id=CVE-2007-3340
BugHunter HTTP SERVER (httpsv.exe) 1.6.2 allows remote attackers to cause a denial of service (application crash) via a large number of requests for nonexistent pages. El servidor HTTP (httpsv.exe) de BugHunter versión 1.6.2, permite a los atacantes remotos causar una denegación de servicio (bloqueo de aplicación) por medio de un gran número de peticiones de páginas inexistentes. • https://www.exploit-db.com/exploits/9478 http://osvdb.org/37582 http://secunia.com/advisories/25760 http://securityreason.com/securityalert/2822 http://www.exploit-db.com/exploits/9478 http://www.securityfocus.com/archive/1/471917/100/0/threaded http://www.securityfocus.com/bid/24576 https://exchange.xforce.ibmcloud.com/vulnerabilities/34976 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •
CVE-2007-3327 – BugHunter HTTP Server 1.6.2 - Parse Error Information Disclosure
https://notcve.org/view.php?id=CVE-2007-3327
httpsv.exe in HTTP Server 1.6.2 allows remote attackers to obtain sensitive information (script source code) via a URI with a trailing %20 (encoded space). El httpsv.exe en el HTTP Server 1.6.2 permite a atacantes remotos la obtención de información sensible (código fuente de las secuencias de comandos) mediante una URI con un rastro %20 (espacio codificado). • https://www.exploit-db.com/exploits/30218 http://osvdb.org/38628 http://securityreason.com/securityalert/2828 http://www.securityfocus.com/archive/1/471876/100/0/threaded http://www.securityfocus.com/bid/24566 https://exchange.xforce.ibmcloud.com/vulnerabilities/34960 •