Vulnerabilities > Goahead

DATE CVE VULNERABILITY TITLE RISK
2019-06-11 CVE-2017-18377 Command Injection vulnerability in Goahead Wireless IP Camera Wificam Firmware
An issue was discovered on Wireless IP Camera (P2P) WIFICAM cameras.
network
low complexity
goahead CWE-77
critical
10.0
2011-12-27 CVE-2009-5111 Resource Management Errors vulnerability in Goahead Webserver
GoAhead WebServer allows remote attackers to cause a denial of service (daemon outage) via partial HTTP requests, as demonstrated by Slowloris.
network
low complexity
goahead CWE-399
5.0
2011-11-03 CVE-2011-4273 Cross-Site Scripting vulnerability in Goahead Webserver 2.1.8
Multiple cross-site scripting (XSS) vulnerabilities in GoAhead Webserver 2.18 allow remote attackers to inject arbitrary web script or HTML via (1) the group parameter to goform/AddGroup, related to addgroup.asp; (2) the url parameter to goform/AddAccessLimit, related to addlimit.asp; or the (3) user (aka User ID) or (4) group parameter to goform/AddUser, related to adduser.asp.
network
goahead CWE-79
4.3
2009-02-06 CVE-2003-1569 Improper Input Validation vulnerability in Goahead Webserver
GoAhead WebServer before 2.1.5 on Windows 95, 98, and ME allows remote attackers to cause a denial of service (daemon crash) via an HTTP request with a (1) con, (2) nul, (3) clock$, or (4) config$ device name in a path component, different vectors than CVE-2001-0385.
network
low complexity
goahead microsoft CWE-20
5.0
2009-02-06 CVE-2003-1568 Improper Input Validation vulnerability in multiple products
GoAhead WebServer before 2.1.6 allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via an invalid URL, related to the websSafeUrl function.
network
low complexity
goahead goahead-software CWE-20
5.0
2009-02-06 CVE-2002-2431 Unspecified vulnerability in Goahead Webserver
Unspecified vulnerability in GoAhead WebServer before 2.1.4 allows remote attackers to cause "incorrect behavior" via unknown "malicious code," related to incorrect use of the socketInputBuffered function by sockGen.c.
network
low complexity
goahead
7.5
2009-02-06 CVE-2002-2430 Resource Management Errors vulnerability in Goahead Webserver 2.0/2.1
GoAhead WebServer before 2.1.1 allows remote attackers to cause a denial of service (CPU consumption) by performing a socket disconnect to terminate a request before it has been fully processed by the server.
network
low complexity
goahead CWE-399
5.0
2009-02-06 CVE-2002-2429 Improper Input Validation vulnerability in Goahead Webserver
webs.c in GoAhead WebServer before 2.1.4 allows remote attackers to cause a denial of service (daemon crash) via an HTTP POST request that contains a negative integer in the Content-Length header.
network
low complexity
goahead CWE-20
5.0
2009-02-06 CVE-2002-2428 Improper Input Validation vulnerability in Goahead Webserver
webs.c in GoAhead WebServer before 2.1.4 allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via an HTTP POST request that contains a Content-Length header but no body data.
network
low complexity
goahead CWE-20
5.0
2009-02-06 CVE-2002-2427 Improper Authentication vulnerability in Goahead Webserver 2.0/2.1
The security handler in GoAhead WebServer before 2.1.1 allows remote attackers to bypass authentication and obtain access to protected web content via "an extra slash in a URL," a different vulnerability than CVE-2002-1603.
network
low complexity
goahead CWE-287
5.0