Vulnerabilities > Wwwisis

DATE CVE VULNERABILITY TITLE RISK
2007-10-16 CVE-2007-5484 Path Traversal vulnerability in Wwwisis 7.1
Directory traversal vulnerability in wxis.exe in WWWISIS 7.1 allows local users to read arbitrary files via a ..
network
low complexity
wwwisis CWE-22
5.0
2007-10-14 CVE-2007-5455 Cross-Site Scripting vulnerability in Wwwisis 5.0
Cross-site scripting (XSS) vulnerability in wxis.exe in WWWISIS 7.1 and earlier allows remote attackers to inject arbitrary web script or HTML via a call to the iah/iah.xis IsisScript code, possibly involving the lang or exprSearch parameter.
network
wwwisis CWE-79
4.3
2002-08-12 CVE-2002-0508 Remote Command Execution vulnerability in Wwwisis 3.3/3.45
wwwisis 3.45 and earlier allows remote attackers to execute arbitrary commands and read files via the parameters (1) prolog or (2) epilog.
network
low complexity
wwwisis
critical
10.0