Vulnerabilities > MG Soft

DATE CVE VULNERABILITY TITLE RISK
2008-03-20 CVE-2008-1402 Resource Management Errors vulnerability in Mg-Soft NET Inspector
MG-SOFT Net Inspector 6.5.0.828 and earlier for Windows allows remote attackers to cause a (1) denial of service (exception and crash) via a UDP packet to the SNMP Trap Service (MgWTrap3.exe) or (2) denial of service (device freeze or memory consumption) via a malformed request to the Net Inspector Server (niengine).
7.1
2008-03-20 CVE-2008-1401 USE of Externally-Controlled Format String vulnerability in Mg-Soft NET Inspector
Format string vulnerability in the Net Inspector HTTP server (mghttpd) in MG-SOFT Net Inspector 6.5.0.828 and earlier for Windows allows remote attackers to execute arbitrary code via format string specifiers in the URI, which is recorded in a log file.
network
mg-soft CWE-134
4.3
2008-03-20 CVE-2008-1400 Path Traversal vulnerability in Mg-Soft NET Inspector 6.5.0.828
Directory traversal vulnerability in the Net Inspector HTTP Server (mghttpd) in MG-SOFT Net Inspector 6.5.0.828 and earlier for Windows allows remote attackers to read arbitrary files via a "..\" (dot dot backslash) or "../" (dot dot slash) in the URI.
network
low complexity
mg-soft CWE-22
5.0