Skip to main content

Vendor/product archive

sun / solaris_answerbook2 CVEs

Beta · best-effort

6 CVEs tagged to sun / solaris_answerbook22 Critical, 2 High, 2 Medium, 0 Low, 0 Unrated.

CVE-2005-0549

Published May 2, 2005

Cross-site scripting (XSS) vulnerability in Solaris AnswerBook2 Documentation 1.4.4 and earlier allows remote attackers to inject arbitrary web script or HTML via the "View Log Fi…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2005-0548

Published Mar 7, 2005

Cross-site scripting (XSS) vulnerability in Solaris AnswerBook2 Documentation 1.4.4 and earlier allows remote attackers to inject arbitrary web script or HTML via the Search funct…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2002-2425

Published Dec 31, 2002

Sun AnswerBook2 1.2 through 1.4.2 allows remote attackers to execute administrative scripts such as (1) AdminViewError and (2) AdminAddadmin via a direct request.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2002-0360

Published Jun 25, 2002

Buffer overflow in Sun AnswerBook2 1.4 through 1.4.3 allows remote attackers to execute arbitrary code via a long filename argument to the gettransbitmap CGI program.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2000-0696

Published Oct 20, 2000

The administration interface for the dwhttpd web server in Solaris AnswerBook2 does not properly authenticate requests to its supporting CGI scripts, which allows remote attackers…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2000-0697

Published Oct 20, 2000

The administration interface for the dwhttpd web server in Solaris AnswerBook2 allows interface users to remotely execute commands via shell metacharacters.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort
Showing 1-6 of 6 CVEsPage 1 of 1