Skip to main content

Vendor/product archive

ultrapop / i-httpd CVEs

Beta · best-effort

4 CVEs tagged to ultrapop / i-httpd0 Critical, 1 High, 3 Medium, 0 Low, 0 Unrated.

CVE-2014-7263

Published Dec 12, 2014

Cross-site scripting (XSS) vulnerability in ULTRAPOP.JP i-HTTPD allows remote attackers to inject arbitrary web script or HTML via a crafted HTTP header, a different vulnerability…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2014-7262

Published Dec 12, 2014

Cross-site scripting (XSS) vulnerability in the Omake BBS component in ULTRAPOP.JP i-HTTPD allows remote attackers to inject arbitrary web script or HTML via a crafted string.

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2014-7261

Published Dec 12, 2014

Cross-site scripting (XSS) vulnerability in ULTRAPOP.JP i-HTTPD allows remote attackers to inject arbitrary web script or HTML via a crafted string that is improperly rendered dur…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2014-7260

Published Dec 12, 2014

The Server Side Includes (SSI) implementation in the File Upload BBS component in ULTRAPOP.JP i-HTTPD allows remote attackers to execute arbitrary commands by uploading files cont…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort
Showing 1-4 of 4 CVEsPage 1 of 1