Vulnerabilities > Critical Path

DATE CVE VULNERABILITY TITLE RISK
2002-08-12 CVE-2002-0787 Cross-Site Scripting vulnerability in Critical Path Injoin Directory Server 4.0
Cross-site scripting vulnerabilities in iCon administrative web server for Critical Path inJoin Directory Server 4.0 allow remote attackers to execute script as the administrator via administrator URLs with modified (1) LOCID or (2) OC parameters.
network
low complexity
critical-path
7.5
2002-08-12 CVE-2002-0786 Unspecified vulnerability in Critical Path Injoin Directory Server 4.0
iCon administrative web server for Critical Path inJoin Directory Server 4.0 allows authenticated inJoin administrators to read arbitrary files by specifying the target file in the LOG parameter.
network
low complexity
critical-path
5.0
2001-07-16 CVE-2001-1315 Denial-Of-Service vulnerability in Critical Path Injoin Directory Server and Livecontent Directory
Critical Path (1) InJoin Directory Server or (2) LiveContent Directory allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via malformed BER encodings, as demonstrated by the PROTOS LDAPv3 test suite.
network
low complexity
critical-path
7.5
2001-07-16 CVE-2001-1314 Unspecified vulnerability in Critical Path Injoin Directory Server and Livecontent Directory
Buffer overflows in Critical Path (1) InJoin Directory Server or (2) LiveContent Directory allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code, as demonstrated by the PROTOS LDAPv3 test suite.
network
low complexity
critical-path
7.5