Vulnerabilities > Simm Comm

DATE CVE VULNERABILITY TITLE RISK
2008-03-05 CVE-2008-1169 Path Traversal vulnerability in Simm-Comm SCI Photo Chat
Directory traversal vulnerability in the embedded HTTP server in SCI Photo Chat Server 3.4.9 and earlier allows remote attackers to read arbitrary files via a "..\" (dot dot backslash) or "../" (dot dot forward slash) in the GET command.
network
low complexity
simm-comm CWE-22
7.8
2004-08-06 CVE-2004-0673 Cross-Site Scripting vulnerability in Simm-Comm SCI Photo Chat 3.4.9
Cross-site scripting (XSS) vulnerability in SCI Photo Chat Server 3.4.9 allows remote attackers to execute arbitrary web script as other users via an invalid request that is echoed in the resulting error message.
network
simm-comm
6.8