Vulnerabilities (CVE)

Filtered by vendor Jerod Moemeka Subscribe
Total 3 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2004-1646 1 Jerod Moemeka 1 Xedus 2023-12-10 5.0 MEDIUM N/A
Directory traversal vulnerability in Xedus 1.0 allows remote attackers to read arbitrary files via a .. (dot dot) in the URL.
CVE-2004-1645 1 Jerod Moemeka 1 Xedus 2023-12-10 4.3 MEDIUM N/A
Cross-site scripting (XSS) vulnerability in Xedus 1.0 allows remote attackers to execute arbitrary web script or HTML via the (1) username parameter to test.x, (2) username parameter to TestServer.x, or (3) param parameter to testgetrequest.x.
CVE-2004-1644 1 Jerod Moemeka 1 Xedus 2023-12-10 5.0 MEDIUM N/A
Xedus 1.0 allows remote attackers to cause a denial of service (refuse connections) by connecting multiple times from the same IP address.