VendorsAprelium Technologiesabyss_web_server1.0.3
Vulnerabilities

Aprelium Technologies Abyss Web Server 1.0.3

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

3CVEs
CVE-2002-1080
The Administration console for Abyss Web Server 1.0.3 before Patch 2 allows remote attackers to gain privileges and modify server configuration via direct requests to CHL files such as (1) srvstatus.chl, (2) consport.chl, (3) general.chl, (4) srvparam.chl, and (5) advanced.chl.
Published 2002-08-31 · Modified
7.5EPSS 0.018
CVE-2002-1078
Abyss Web Server 1.0.3 allows remote attackers to list directory contents via an HTTP GET request that ends in a large number of / (slash) characters.
Published 2002-08-31 · Modified
5.0EPSS 0.028
CVE-2002-1081
The Administration console for Abyss Web Server 1.0.3 allows remote attackers to read files without providing login credentials via an HTTP request to a target file that ends in a "+" character.
Published 2003-04-02 · Modified
5.0EPSS 0.015