Vulnerabilities (CVE)

Filtered by vendor Cgi-world Subscribe
Total 4 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2000-1069 1 Cgi-world 2 Poll It, Poll It Pro 2023-12-10 6.4 MEDIUM N/A
pollit.cgi in Poll It 2.01 and earlier allows remote attackers to access administrative functions without knowing the real password by specifying the same value to the entered_password and admin_password parameters.
CVE-2000-1070 1 Cgi-world 2 Poll It, Poll It Pro 2023-12-10 5.0 MEDIUM N/A
pollit.cgi in Poll It 2.01 and earlier uses data files that are located under the web document root, which allows remote attackers to access sensitive or private information.
CVE-2000-1068 1 Cgi-world 2 Poll It, Poll It Pro 2023-12-10 10.0 HIGH N/A
pollit.cgi in Poll It 2.0 allows remote attackers to execute arbitrary commands via shell metacharacters in the poll_options parameter.
CVE-2000-0590 1 Cgi-world 1 Poll It 2023-12-10 7.5 HIGH N/A
Poll It 2.0 CGI script allows remote attackers to read arbitrary files by specifying the file name in the data_dir parameter.