Vulnerabilities (CVE)

Filtered by vendor Cgicentral Subscribe
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2001-1344 1 Cgicentral 2 Webstore 400, Webstore 400cs 2024-02-04 7.5 HIGH N/A
WSSecurity.pl in WebStore allows remote attackers to bypass authentication by providing the program with a filename that exists, which is made easier by (1) inserting a null character or (2) .. (dot dot).
CVE-2001-1343 1 Cgicentral 2 Webstore 400, Webstore 400cs 2024-02-04 7.5 HIGH N/A
ws_mail.cgi in WebStore 400/400CS 4.14 allows remote authenticated WebStore administrators to execute arbitrary code via shell metacharacters in the kill parameter.