Vulnerabilities > Nulllogic

DATE CVE VULNERABILITY TITLE RISK
2009-07-07 CVE-2009-2354 SQL Injection vulnerability in Nulllogic Groupware 1.2.7
SQL injection vulnerability in the auth_checkpass function in the login page in NullLogic Groupware 1.2.7 allows remote attackers to execute arbitrary SQL commands via the username parameter.
network
low complexity
nulllogic CWE-89
7.5
2003-04-02 CVE-2002-1497 Cross-Site Scripting vulnerability in NullLogic Null HTTPd Error Page
Cross-site scripting (XSS) vulnerability in Null HTTP Server 0.5.0 and earlier allows remote attackers to insert arbitrary HTML into a "404 Not Found" response.
network
nulllogic
4.3
2003-04-02 CVE-2002-1496 Remote Heap Overflow vulnerability in Null HTTPd
Heap-based buffer overflow in Null HTTP Server 0.5.0 and earlier allows remote attackers to execute arbitrary code via a negative value in the Content-Length HTTP header.
network
low complexity
nulllogic
7.5