CVE-2002-1154
Published Oct 11, 2002anlgform.pl in Analog before 5.23 does not restrict access to the PROGRESSFREQ progress update command, which allows remote attackers to cause a denial of service (disk consumptio…
Vendor/product archive
4 CVEs tagged to stephen_turner / analog — 1 Critical, 1 High, 2 Medium, 0 Low, 0 Unrated.
anlgform.pl in Analog before 5.23 does not restrict access to the PROGRESSFREQ progress update command, which allows remote attackers to cause a denial of service (disk consumptio…
Cross-site scripting vulnerability in analog before 5.22 allows remote attackers to execute Javascript via an HTTP request containing the script, which is entered into a web logfi…
Buffer overflow in Analog before 4.16 allows remote attackers to execute arbitrary commands by using the ALIAS command to construct large strings.
Vulnerability in Analog 3.0 and earlier allows remote attackers to read arbitrary files via the forms interface.