Vulnerabilities (CVE)

Filtered by vendor Vqsoft Subscribe
Total 4 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2000-0240 1 Vqsoft 1 Vqserver 2024-02-14 5.0 MEDIUM N/A
vqSoft vqServer program allows remote attackers to read arbitrary files via a /........../ in the URL, a variation of a .. (dot dot) attack.
CVE-2000-0766 1 Vqsoft 1 Vqserver 2024-02-04 7.5 HIGH N/A
Buffer overflow in vqSoft vqServer 1.4.49 allows remote attackers to cause a denial of service or possibly gain privileges via a long HTTP GET request.
CVE-2000-0241 1 Vqsoft 1 Vqserver 2024-02-04 5.0 MEDIUM N/A
vqSoft vqServer stores sensitive information such as passwords in cleartext in the server.cfg file, which allows attackers to gain privileges.
CVE-2002-0731 1 Vqsoft 1 Vqserver 2024-02-04 7.5 HIGH N/A
Cross-site scripting vulnerability in demonstration scripts for vqServer allows remote attackers to execute arbitrary script via a link that contains the script in arguments to demo scripts such as respond.pl.