Skip to main content

Vendor/product archive

bajie / java_http_server CVEs

Beta · best-effort

6 CVEs tagged to bajie / java_http_server0 Critical, 2 High, 4 Medium, 0 Low, 0 Unrated.

CVE-2003-1511

Published Dec 31, 2003

Cross-site scripting (XSS) vulnerability in Bajie Java HTTP Server 0.95 through 0.95zxv4 allows remote attackers to inject arbitrary web script or HTML via (1) the query string to…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2003-1543

Published Dec 31, 2003

Cross-site scripting (XSS) vulnerability in Bajie Http Web Server 0.95zxe, 0.95zxc, and possibly others, allows remote attackers to inject arbitrary web script or HTML via the que…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2001-0307

Published May 3, 2001

Bajie HTTP JServer 0.78, and other versions before 0.80, allows remote attackers to execute arbitrary commands via shell metacharacters in an HTTP request for a CGI program that d…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2001-0308

Published May 3, 2001

UploadServlet in Bajie HTTP JServer 0.78, and possibly other versions before 0.80, allows remote attackers to execute arbitrary commands by calling the servlet to upload a program…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2000-0773

Published Oct 20, 2000

Bajie HTTP web server 0.30a allows remote attackers to read arbitrary files via a URL that contains a "....", a variant of the dot dot directory traversal attack.

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2000-0774

Published Oct 20, 2000

The sample Java servlet "test" in Bajie HTTP web server 0.30a reveals the real pathname of the web document root.

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-6 of 6 CVEsPage 1 of 1