3 results (0.003 seconds)

CVSS: 9.8EPSS: 1%CPEs: 4EXPL: 1

16 Apr 2005 — Format string vulnerability in the my_xlog function in lib.c for Oops! Proxy Server 1.5.23 and earlier, as called by the auth functions in the passwd_mysql and passwd_pgsql modules, may allow attackers to execute arbitrary code via a URL. • http://rst.void.ru/papers/advisory24.txt •

CVSS: 10.0EPSS: 12%CPEs: 1EXPL: 4

12 Feb 2001 — Buffer overflow in the HTML parsing code in oops WWW proxy server 1.5.2 and earlier allows remote attackers to execute arbitrary commands via a large number of " (quotation) characters. • https://www.exploit-db.com/exploits/20496 •

CVSS: 10.0EPSS: 5%CPEs: 1EXPL: 3

02 Feb 2001 — Buffer overflow in oops WWW proxy server 1.4.6 (and possibly other versions) allows remote attackers to execute arbitrary commands via a long host or domain name that is obtained from a reverse DNS lookup. • https://www.exploit-db.com/exploits/228 •