Efssoft Easy File Sharing Web Server vulnerabilities
3 known vulnerabilities affecting efssoft/easy_file_sharing_web_server.
Total CVEs
3
CISA KEV
0
Public exploits
2
Exploited in wild
0
Severity breakdown
CRITICAL1MEDIUM2
Vulnerabilities
Page 1 of 1
CVE-2014-3791P2CRITICALCVSS 10.0PoCv6.82014-05-20
CVE-2014-3791 [CRITICAL] CWE-119 CVE-2014-3791: Stack-based buffer overflow in Easy File Sharing (EFS) Web Server 6.8 allows remote attackers to exe
Stack-based buffer overflow in Easy File Sharing (EFS) Web Server 6.8 allows remote attackers to execute arbitrary code via a long string in a cookie UserID parameter to vfolder.ghp.
nvd
CVE-2014-9439P4MEDIUMCVSS 4.3PoCv6.82015-01-02
CVE-2014-9439 [MEDIUM] CWE-79 CVE-2014-9439: Cross-site scripting (XSS) vulnerability in Easy File Sharing Web Server 6.8 allows remote attackers
Cross-site scripting (XSS) vulnerability in Easy File Sharing Web Server 6.8 allows remote attackers to inject arbitrary web script or HTML via the username field during registration, which is not properly handled by forum.ghp.
nvd
CVE-2014-5178P4MEDIUMCVSS 4.3v6.82014-08-06
CVE-2014-5178 [MEDIUM] CWE-79 CVE-2014-5178: Multiple cross-site scripting (XSS) vulnerabilities in Easy File Sharing (EFS) Web Server 6.8 allow
Multiple cross-site scripting (XSS) vulnerabilities in Easy File Sharing (EFS) Web Server 6.8 allow remote authenticated users to inject arbitrary web script or HTML via the content parameter when (1) creating a topic or (2) posting an answer. NOTE: some of these details are obtained from third party information.
nvd