Vulnerabilities (CVE)

Filtered by vendor Sergey Lyubka Subscribe
Total 5 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2009-4530 1 Sergey Lyubka 1 Mongoose 2024-02-04 5.0 MEDIUM N/A
Mongoose 2.8.0 and earlier allows remote attackers to obtain the source code for a web page by appending ::$DATA to the URI.
CVE-2009-1354 1 Sergey Lyubka 1 Mongoose 2024-02-04 4.0 MEDIUM N/A
Directory traversal vulnerability in Mongoose 2.4 allows remote attackers to read arbitrary files via a .. (dot dot) in the URI.
CVE-2007-3407 1 Sergey Lyubka 1 Simple Httpd 2024-02-04 5.0 MEDIUM N/A
Sergey Lyubka Simple HTTPD (shttpd) 1.38 allows remote attackers to obtain sensitive information (script source code) via a URL with a trailing encoded space (%20).
CVE-2006-5216 1 Sergey Lyubka 1 Simple Httpd 2024-02-04 7.5 HIGH N/A
Stack-based buffer overflow in Sergey Lyubka Simple HTTPD (shttpd) 1.34 allows remote attackers to execute arbitrary code via a long URI.
CVE-2007-6326 1 Sergey Lyubka 1 Simple Httpd 2024-02-04 5.0 MEDIUM N/A
Sergey Lyubka Simple HTTPD (shttpd) 1.3 on Windows allows remote attackers to cause a denial of service via a request that includes an MS-DOS device name, as demonstrated by the /aux URI.