Sws Simple Web Server vulnerabilities
6 known vulnerabilities affecting sws/sws_simple_web_server.
Total CVEs
6
CISA KEV
0
Public exploits
2
Exploited in wild
0
Severity breakdown
HIGH3MEDIUM3
Vulnerabilities
Page 1 of 1
CVE-2002-1864P4MEDIUMCVSS 5.0PoCv0.0.3v0.0.4+2 more2002-12-31
CVE-2002-1864 [MEDIUM] CVE-2002-1864: Directory traversal vulnerability in Simple Web Server (SWS) 0.0.4 through 0.1.0 allows remote attac
Directory traversal vulnerability in Simple Web Server (SWS) 0.0.4 through 0.1.0 allows remote attackers to read arbitrary files via a ".." (dot dot) in an HTTP request.
nvd
CVE-2006-2114P3HIGHCVSS 7.5v0.0.3v0.0.4+8 more2006-05-01
CVE-2006-2114 [HIGH] CVE-2006-2114: Buffer overflow in SWS web Server 0.1.7 allows remote attackers to execute arbitrary code via a long
Buffer overflow in SWS web Server 0.1.7 allows remote attackers to execute arbitrary code via a long request.
nvd
CVE-2006-2115P3HIGHCVSS 7.5v0.0.3v0.0.4+8 more2006-05-01
CVE-2006-2115 [HIGH] CVE-2006-2115: Format string vulnerability in SWS web Server 0.1.7 allows remote attackers to execute arbitrary cod
Format string vulnerability in SWS web Server 0.1.7 allows remote attackers to execute arbitrary code via unspecified vectors that are not properly handled in a syslog function call.
nvd
CVE-2002-2370P4MEDIUMCVSS 5.0PoCv0.0.3v0.0.4+1 more2002-12-31
CVE-2002-2370 [MEDIUM] CVE-2002-2370: SWS web server 0.0.4, 0.0.3 and 0.1.0 allows remote attackers to cause a denial of service (crash) v
SWS web server 0.0.4, 0.0.3 and 0.1.0 allows remote attackers to cause a denial of service (crash) via a URL request that does not end with a newline.
nvd
CVE-2002-1870P4HIGHCVSS 7.5v0.0.3v0.0.4+2 more2002-12-31
CVE-2002-1870 [HIGH] CVE-2002-1870: Simple Web Server (SWS) 0.0.4 through 0.1.0 does not properly handle when the recv function call fai
Simple Web Server (SWS) 0.0.4 through 0.1.0 does not properly handle when the recv function call fails, which may allow remote attackers to overwrite program data or perform actions on an uninitialized heap, leading to a denial of service and possibly code execution.
nvd
CVE-2002-1866P4MEDIUMCVSS 5.0v0.0.3v0.0.4+2 more2002-12-31
CVE-2002-1866 [MEDIUM] CVE-2002-1866: Simple Web Server (SWS) 0.0.4 through 0.1.0 does not close file descriptors for 404 error messages,
Simple Web Server (SWS) 0.0.4 through 0.1.0 does not close file descriptors for 404 error messages, which could allow remote attackers to cause a denial of service (file descriptor exhaustion) via multiple requests for pages that do not exist.
nvd