4 results (0.004 seconds)

CVSS: 7.5EPSS: 1%CPEs: 9EXPL: 0

Format string vulnerability in Ns_PdLog function for the external database driver proxy daemon library (libnspd.a) of AOLServer 3.0 through 3.4.2 allows remote attackers to execute arbitrary code via the Error or Notice parameters. • http://archives.neohapsis.com/archives/bugtraq/2002-04/0195.html http://sourceforge.net/tracker/index.php?func=detail&aid=533141&group_id=3152&atid=303152 http://www.iss.net/security_center/static/8860.php http://www.securityfocus.com/bid/4535 •

CVSS: 7.5EPSS: 3%CPEs: 9EXPL: 0

Buffer overflow in Ns_PdLog function for the external database driver proxy daemon library (libnspd.a) of AOLServer 3.0 through 3.4.2 allows remote attackers to cause a denial of service or execute arbitrary code via the Error or Notice parameters. • http://archives.neohapsis.com/archives/bugtraq/2002-04/0195.html http://cvs.sourceforge.net/cgi-bin/viewcvs.cgi/aolserver/aolserver/nspd/log.c.diff?r1=1.4&r2=1.4.6.1 http://sourceforge.net/tracker/index.php?func=detail&aid=533141&group_id=3152&atid=303152 •

CVSS: 10.0EPSS: 2%CPEs: 2EXPL: 4

Buffer overflow in AOLserver 3.0 allows remote attackers to cause a denial of service, and possibly execute arbitrary code, via an HTTP request with a long Authorization header. • https://www.exploit-db.com/exploits/21089 https://www.exploit-db.com/exploits/21088 http://archives.neohapsis.com/archives/bugtraq/2001-08/0325.html http://www.securityfocus.com/archive/1/213041 http://www.securityfocus.com/bid/3230 https://exchange.xforce.ibmcloud.com/vulnerabilities/7030 •

CVSS: 5.0EPSS: 68%CPEs: 1EXPL: 2

Directory traversal vulnerability in AOLserver 3.2 and earlier allows remote attackers to read arbitrary files by inserting "..." into the requested pathname, a modified .. (dot dot) attack. • https://www.exploit-db.com/exploits/20614 http://marc.info/?l=bugtraq&m=98148759123258&w=2 http://marc.info/?l=bugtraq&m=98168216003867&w=2 http://www.securityfocus.com/bid/2343 •