Vulnerabilities > Hughes Technologies

DATE CVE VULNERABILITY TITLE RISK
2008-01-08 CVE-2008-0146 Cross-Site Scripting vulnerability in Hughes Technologies W3-Msql
Cross-site scripting (XSS) vulnerability in the error page in W3-mSQL allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO to the top-level URI.
4.3
2002-12-31 CVE-2002-2400 Buffer Errors vulnerability in Hughes Technologies Libhttpd 1.2
Buffer overflow in the httpdProcessRequest function in LibHTTPD 1.2 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long HTTP POST request.
network
low complexity
hughes-technologies CWE-119
critical
10.0
2001-08-22 CVE-2001-0580 Unspecified vulnerability in Hughes Technologies DSL Vdns 1.0
Hughes Technologies Virtual DNS (VDNS) Server 1.0 allows a remote attacker to create a denial of service by connecting to port 6070, sending some data, and closing the connection.
network
low complexity
hughes-technologies
5.0
1999-09-30 CVE-1999-1469 Unspecified vulnerability in Hughes Technologies W3-Auth
Buffer overflow in w3-auth CGI program in miniSQL package allows remote attackers to execute arbitrary commands via an HTTP request with (1) a long URL, or (2) a long User-Agent MIME header.
network
low complexity
hughes-technologies
7.5