Vulnerabilities > CVE-2004-1513 - Unspecified vulnerability in Soft3304 04Webserver 1.42

047910
CVSS 0.0 - NONE
Attack vector
UNKNOWN
Attack complexity
UNKNOWN
Privileges required
UNKNOWN
Confidentiality impact
UNKNOWN
Integrity impact
UNKNOWN
Availability impact
UNKNOWN
soft3304
nessus

Summary

04WebServer 1.42 does not adequately filter data that is written to log files, which could allow remote attackers to inject carriage return characters into the log file and spoof log entries.

Vulnerable Configurations

Part Description Count
Application
Soft3304
1

Nessus

NASL familyWeb Servers
NASL id04WEBSERVER.NASL
descriptionThe remote host is running a version of 04WebServer which is older than version 1.5. Such versions are affected by multiple vulnerabilities : - A cross-site scripting vulnerability in the Response_default.html script which could allow an attacker to execute arbitrary code in the user
last seen2020-06-01
modified2020-06-02
plugin id15713
published2004-11-13
reporterThis script is Copyright (C) 2004-2018 Tenable Network Security, Inc.
sourcehttps://www.tenable.com/plugins/nessus/15713
title04WebServer Multiple Vulnerabilities (XSS, DoS, more)