VendorsGNOMEdwarf_http_server1.3.2
Vulnerabilities

GNOME Dwarf HTTP Server 1.3.2

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

2CVEs
CVE-2006-0819
Dwarf HTTP Server 1.3.2 allows remote attackers to obtain the source code of JSP files via (1) dot, (2) space, (3) slash, or (4) NULL characters in the filename extension of an HTTP request.
Published 2006-03-13 · Modified
7.8EPSS 0.023
CVE-2006-0820
Cross-site scripting (XSS) vulnerability in Dwarf HTTP Server 1.3.2 allows remote attackers to inject arbitrary web script or HTML via unspecified error messages.
Published 2006-03-13 · Modified
4.3EPSS 0.014