10 results (0.005 seconds)

CVSS: 9.8EPSS: 6%CPEs: 1EXPL: 0

12 Jun 2007 — Stack-based buffer overflow in smtpdll.dll in the SMTP service in 602Pro LAN SUITE 2003 2003.0.03.0828 allows remote attackers to execute arbitrary code via an e-mail message with a long address. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. Desbordamiento de búfer basado en pila en smtpdll.dll en el servicio SMTP en 602Pro LAN SUITE 2003 2003.0.03.0828 permite a atacantes remotos ejecutar código de su elección a través de un mensaje de co... • http://osvdb.org/37232 •

CVSS: 7.5EPSS: 0%CPEs: 2EXPL: 1

01 Sep 2004 — LAN SUITE Web Mail 602Pro allows remote attackers to gain sensitive information via the mail login form, which contains the path to the mail directory. • http://archives.neohapsis.com/archives/bugtraq/2004-03/0096.html •

CVSS: 5.3EPSS: 0%CPEs: 1EXPL: 0

18 Mar 2004 — LAN SUITE Web Mail 602Pro, when configured to use the "Directory browsing" feature, allows remote attackers to obtain a directory listing via an HTTP request to (1) index.html, (2) cgi-bin/, or (3) users/. • http://archives.neohapsis.com/archives/bugtraq/2004-03/0096.html •

CVSS: 6.8EPSS: 0%CPEs: 2EXPL: 2

18 Mar 2004 — Cross-site scripting (XSS) vulnerability in LAN SUITE Web Mail 602Pro allows remote attackers to execute arbitrary script or HTML as other users via a URL to index.html, followed by a / (slash) and the desired script. NOTE: the vendor states that this bug could not be reproduced, so this issue may be REJECTed in the future. • https://www.exploit-db.com/exploits/23776 •

CVSS: 5.3EPSS: 0%CPEs: 1EXPL: 0

31 Dec 2002 — 602Pro LAN SUITE 2002 allows remote attackers to view the directory tree via an HTTP GET request with a trailing "~" (tilde) or ".bak" extension. • http://archives.neohapsis.com/archives/bugtraq/2002-10/0265.html •

CVSS: 10.0EPSS: 1%CPEs: 1EXPL: 0

31 Dec 2002 — The Czech edition of Software602's Web Server before 2002.0.02.0916 allows remote attackers to gain administrator privileges via direct HTTP requests to the /admin/ directory, which is not password protected. • http://online.securityfocus.com/archive/1/296119 •

CVSS: 7.5EPSS: 4%CPEs: 1EXPL: 1

31 Dec 2002 — The Telnet proxy of 602Pro LAN SUITE 2002 does not restrict the number of outstanding connections to the local host, which allows remote attackers to create a denial of service (memory consumption) via a large number of connections. • https://www.exploit-db.com/exploits/21694 •

CVSS: 9.8EPSS: 0%CPEs: 1EXPL: 0

24 May 2001 — Web configuration server in 602Pro LAN SUITE allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long HTTP request containing "%2e" (dot dot) characters. • http://www.securityfocus.com/archive/1/171418 •

CVSS: 7.5EPSS: 0%CPEs: 1EXPL: 0

24 May 2001 — Web configuration server in 602Pro LAN SUITE allows remote attackers to cause a denial of service via an HTTP GET HTTP request to the aux directory, and possibly other directories with legacy DOS device names. • http://www.securityfocus.com/archive/1/171418 •

CVSS: 9.8EPSS: 1%CPEs: 1EXPL: 0

09 Jan 2001 — Buffer overflow in remote web administration component (webprox.dll) of 602Pro LAN SUITE before 2000.0.1.33 allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long GET request. • http://archives.neohapsis.com/archives/bugtraq/2000-11/0299.html •