Skip to main content

Vendor/product archive

key_focus / kf_web_server CVEs

Beta · best-effort

4 CVEs tagged to key_focus / kf_web_server0 Critical, 1 High, 3 Medium, 0 Low, 0 Unrated.

CVE-2007-3396

Published Jun 26, 2007

Cross-site scripting (XSS) vulnerability in index.wkf in KeyFocus (KF) web server 3.1.0 allows remote attackers to inject arbitrary web script or HTML via the opsubmenu parameter.

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2002-2403

Published Dec 31, 2002

Directory traversal vulnerability in KeyFocus web server 1.0.8 allows remote attackers to read arbitrary files for recognized MIME type files via "...", "....", ".....", and other…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2002-1031

Published Oct 4, 2002

KeyFocus (KF) web server 1.0.2 allows remote attackers to list directories and read restricted files via an HTTP request containing a %00 (null) character.

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2002-1032

Published Oct 4, 2002

Buffer overflow in KeyFocus (KF) web server 1.0.5 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary code via a malformed HTTP header.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort
Showing 1-4 of 4 CVEsPage 1 of 1