|
Bugtraq: rPSA-2008-0327-1 httpd mod_ssl
|
|
|
|
CVE-2008-2364 (Apache HTTP Server)
|
|
|
|
Bugtraq: Re: Re: SECURITY ADVISORY - Level Platforms, Inc. Service Center Install Data HTTP Vulnerability
|
|
|
|
FrSIRT - Slackware Security Update Fixes httpd Cross Site Scripting Issues 2008-02-15
|
|
|
|
CVE-2007-6308 (HttpLogger)
|
|
|
|
FrSIRT - Motion "read_client()" HTTP Request Remote Off-By-One Vulnerability 2008-06-11
|
|
|
|
RedHat: Moderate: httpd security and bug fix update Tue, 11 Nov 2008 13:38:00 +0000
|
|
|
|
CCProxy HTTP Proxy "CONNECT" Buffer Overflow Vulnerability
|
|
|
|
rPath update for lighttpd
|
|
|
|
Perforce Web Client HTTP Request Processing Denial of Service
|
|
|
|
Perspectives Extension Improves HTTPS Security Mon, 20 Oct 2008 08:24:13 +0000
|
|
|
|
Vuln: Apache 'mod_proxy_http' Interim Response Denial of Service Vulnerability 2008-11-22
|
|
|
|
BitTorrent Web UI Malformed HTTP "Range" Header Denial of Service
|
|
|
|
Bugtraq: Limited upload directory traversal in HTTP File Server 2.2a / 2.3 beta (build #146)
|
|
|
|
Slackware: httpd Thu, 14 Feb 2008 23:12:00 +0000
|
|
|
|
FrSIRT - RaidenHTTPD Unspecified Data Handling Cross Site Scripting Issue 2008-02-05
|
|
|
|
FrSIRT - Gentoo Security Update Fixes Lighttpd Multiple Remote Vulnerabilities 2008-03-06
|
|
|
|
VU#212984:Mortbay Jetty vulnerable to HTTP response splitting
|
|
|
|
FrSIRT - Chilkat HTTP ActiveX Component File Corruption Vulnerability 2008-04-01
|
|
|
|
FrSIRT - uTorrent Web UI HTTP "Range" Header Denial of Service Issue 2008-06-11
|
|
|
|
Vuln: Oracle mod_wl HTTP POST Request Remote Buffer Overflow Vulnerability 2008-07-18
|
|
|
|
Fedora update for lighttpd
|
|
|
|
CVE-2008-0407 (HTTP File Server)
|
|
|
|
FrSIRT - Mono "Sys.Web" Module HTTP Header Injection Vulnerability 2008-08-28
|
|
|
|
IBM HTTP Server mod_proxy Interim Responses Denial of Service
|
|
|
|
FrSIRT - rPath Security Update Fixes Lighttpd Multiple Remote Vulnerabilities 2008-03-17
|
|
|
|
Bugtraq: HTTPBruteForcer released
|
|
|
|
CVE-2008-0406 (HTTP File Server)
|
|
|
|
CVE-2008-0410 (HTTP File Server)
|
|
|
|
Bugtraq: Novell eDirectory DoS via HTTP headers
|
|
|
|
FrSIRT - Debian Security Update Fixes Lighttpd Source Code Disclosure Issue 2008-03-07
|
|
|
|
Vuln: Apache HTTP Request Smuggling Vulnerability 2008-05-06
|
|
|
|
CVE-2008-0455 (Apache HTTP Server)
|
|
|
|
IE 5.22 on Mac Transmitting HTTP Referer from Secure Page Fri, 18 Jul 2008 10:49:53 +0200
|
|
|
|
Vuln: Apache HTTP Server 2.2.6, 2.0.61 and 1.3.39 'mod_status' Cross-Site Scripting Vulnerability 2008-04-26
|
|
|
|
Chilkat HTTP ActiveX Component ActiveX Controls "SaveLastError()" Insecure Method
|
|
|
|
RaidenHTTPD 2.0.19 ulang cmd exec poc exploit 20-12-2007
|
|
|
|
CVE-2007-6421 (Apache HTTP Server)
|
|
|
|
Vuln: C++ Sockets Library HTTPSocket Class Remote Denial Of Service Vulnerability 2007-11-16
|
|
|
|
Vuln: PHP EXT/Session HTTP Response Header Injection Vulnerability 2008-05-17
|
|
|
|
CVE-2008-1111 (Light httpd)
|
|
|
|
HTTP File Server Multiple Vulnerabilities
|
|
|
|
Bugtraq: rPSA-2008-0328-1 httpd mod_ssl
|
|
|
|
PeerCast "HTTP::getAuthUserPass()" Buffer Overflow Vulnerability
|
|
|
|
Debian update for lighttpd
|
|
|
|
Bugtraq: [SECURITY] [DSA-1645-1] New lighttpd packages fix various problems
|
|
|
|
Debian update for lighttpd
|
|
|
|
FrSIRT - Debian Security Update Fixes Lighttpd Information Disclosure Issue 2008-03-17
|
|
|
|
FrSIRT - rPath Security Update Fixes Httpd Multiple Remote Vulnerabilities 2008-11-24
|
|
|
|
Siemens SpeedStream 6520 HTTP Request Processing Denial of Service
|
|
|
|
CVE-2007-5000 (Apache HTTP Server)
|
|
|
|
Vuln: Apache HTTP Server 403 Error Cross-Site Scripting Vulnerability 2008-05-09
|
|
|
|
CVE-2007-6388 (Apache HTTP Server)
|
|
|
|
PeerCast "handshakeHTTP()" Remote Command Execution Vulnerability 2007-12-18
|
|
|
|
VU#888209:Liferay Portal Forgot Password User-Agent HTTP header XSS
|
|
|
|
CVE-2008-2614 (oracle_http_server_component, Oracle Application Server)
|
|
|
|
Snoopy "_httpsrequest()" Shell Command Execution Vulnerability
|
|
|
|
rPath update for lighttpd
|
|
|
|
Vuln: Rumpus FTP Server HTTP Command Remote Denial of Service Vulnerability 2008-12-01
|
|
|
|
Bugtraq: [SECURITY] [DSA 1609-1] New lighttpd packages fix multiple DOS issues
|
|
|
|
RaidenHTTPD "ulang" Parameter Local File Inclusion Vulnerability 2007-12-18
|
|
|
|
Vuln: Apache Tomcat 'HttpServletResponse.sendError()' Cross Site Scripting Vulnerability 2008-09-08
|
|
|
|
FrSIRT - Debian Security Update Fixes Lighttpd Security Bypass and DoS 2008-10-07
|
|
|
|
Vuln: HFS HTTP File Server Arbitrary File Upload Vulnerability 2007-12-07
|
|
|
|
CVE-2008-1270 (lighttpd)
|
|
|
|
CVE-2008-4359 (lighttpd)
|
|
|
|
GNOME PeerCast "HTTP::getAuthUserPass()" Buffer Overflow Vulnerability
|
|
|
|
FrSIRT - Snoopy " _httpsrequest()" Remote Command Injection Vulnerability 2008-10-23
|
|
|
|
Mono Sys.Web HTTP Header Injection Vulnerability
|
|
|
|
Red Hat update for httpd
|
|
|
|
CVE-2008-0405 (HTTP File Server)
|
|
|
|
uTorrent Web UI HTTP Request "Range" Header Processing Denial of Service
|
|
|
|
CVE-2008-0983 (lighttpd)
|
|
|
|
FrSIRT - rPath Linux Security Update Fixes Lighttpd Denial of Service Vulnerability 2008-03-04
|
|
|
|
FrSIRT - Lighttpd "connection_state_machine()" Denial of Service Vulnerability 2008-04-02
|
|
|
|
Debian: New lighttpd packages fix arbitrary file disclosure Sun, 16 Mar 2008 11:47:00 +0000
|
|
|
|
Bugtraq: Two vulnerabilities in Simple HTTPD 1.38
|
|
|
|
Sun Solaris HTTP server Cross Site Scripting and Denial of Service Issues 2007-12-24
|
|
|
|
Apache HTTP Method Request Entity Too Large Cross-Site Scripting
|
|
|
|
Kaya CGI Framework HTTP Header Injection Vulnerability
|
|
|
|
Vuln: Apple CFNetwork HTTP NULL Pointer Dereference Denial of Service Vulnerability 2007-11-15
|
|
|
|
HFS (HTTP File Server) Template Cross-Site Scripting and Information Disclosure Vulnerabilities 29-1-2008
|
|
|
|
Redhat Security Update Fixes httpd Cross Site Scripting and DoS Issues 2008-01-15
|
|
|
|
Bypassing URL Authentication and Authorization with HTTP Verb Tampering Mon, 02 Jun 2008 08:42:07 +0000
|
|
|
|
CVE-2008-0622 (RaidenHTTPD)
|
|
|
|
Websense "User-Agent" HTTP Header URL Filtering Bypass Vulnerability 2007-12-13
|
|
|
|
Turbolinux Security Update Fixes httpd Cross Site Scripting Issues 2008-01-28
|
|
|
|
IBM HTTP Server Multiple Client-Side Cross Site Scripting Vulnerabilities 2007-12-24
|
|
|
|
CVE-2008-0408 (HTTP File Server)
|
|
|
|
Vuln: Apache HTTP Server Mod_Proxy Denial of Service Vulnerability 2007-12-07
|
|
|
|
IBM WebSphere Application Server for z/OS HTTP Server mod_proxy_ftp Vulnerability
|
|
|
|
CVE-2008-1531 (lighttpd)
|
|
|
|
FrSIRT - Lighttpd "mod_cgi" Remote Source Code Disclosure Vulnerability 2008-03-05
|
|
|
|
Internet Explorer HTTP Request Smuggling/Splitting Vulnerabilities
|
|
|
|
CVE-2008-2168 (Apache HTTP Server)
|
|
|
|
CVE-2007-6422 (Apache HTTP Server)
|
|
|
|
FrSIRT - rPath Security Update Fixes Lighttpd Denial of Service Vulnerability 2008-04-02
|
|
|
|
CVE-2008-3688 (http_antivirus_proxy, havp)
|
|
|
|
Vuln: Ruby Net::HTTP SSL Insecure Certificate Validation Weakness 2008-03-27
|
|
|
|
Bugtraq: Re: HTTPBruteForcer released
|
|
|
|
Apache mod_negotiation Xss and Http Response Splitting 25-1-2008
|
|
|
|
Fedora update for lighttpd
|
|
|
|
CVE-2008-4360 (lighttpd)
|
|
|
|
FrSIRT - Turbolinux Security Update Fixes Httpd Cross Site Scripting Vulnerability 2008-09-19
|
|
|
|
Bugtraq: rPSA-2008-0035-1 httpd mod_ssl
|
|
|
|
EDraw Flowchart ActiveX "HttpDownloadFile()" File Download Vulnerability 2007-11-02
|
|
|
|
MTCMS HTTP Query String SQL Injection Vulnerability
|
|
|
|
BitTorrent Web UI HTTP Request "Range" Header Processing Denial of Service
|
|
|
|
FrSIRT - Turbolinux Security Update Fixes Httpd Multiple Remote Vulnerabilities 2008-06-30
|
|
|
|
XSS on Apache HTTP Server 413 error pages via malformed HTTP method 4-12-2007
|
|
|
|
Stonesoft StoneGate IPS HTTP Unicode Encoding Detection Bypass
|
|
|
|
RaidenHTTPD "ulang" Local File Inclusion Vulnerability
|
|
|
|
PeerCast "handshakeHTTP()" Buffer Overflow Vulnerability
|
|
|
|
CVE-2007-6405 (SHTTPD)
|
|
|
|
Debian: New lighttpd packages fix CGI source disclosure Thu, 06 Mar 2008 13:38:00 +0000
|
|
|
|
CVE-2008-0456 (Apache HTTP Server)
|
|
|
|
CVE-2008-0409 (HTTP File Server)
|
|
|
|
Vuln: fhttpd Basic Authorization Remote Denial Of Service Vulnerability 2008-09-19
|
|
|
|
Two vulnerabilities in Simple HTTPD 1.38 17-12-2007
|
|
|
|
FrSIRT - Citrix XenServer XenAPI HTTP Interfaces Cross Site Scripting Issue 2008-07-16
|
|
|
|
Vuln: Mozilla Firefox and SeaMonkey Windows.Location Property HTTP Referer Header Spoofing Weakness 2007-11-29
|
|
|
|
Cybozu Products Cross-Site Scripting and HTTP Header Injection
|
|
|
|
FrSIRT - Fedora Security Update Fixes Lighttpd Multiple Remote Vulnerabilities 2008-03-11
|
|
|
|
FrSIRT - Lighttpd "mod_userdir" Module Information Disclosure Vulnerability 2008-03-17
|
|
|
|
uTorrent Web UI Malformed HTTP "Range" Header Denial of Service
|
|
|
|
FrSIRT - BitTorrent Web UI HTTP "Range" Header Denial of Service Issue 2008-06-11
|
|
|
|
FrSIRT - MetaGauge HTTP Request Remote Directory Traversal Vulnerability 2008-10-07
|
|
|
|
VU#829876: Microsoft Outlook Web Access may not use the no-store HTTP directive
|
|
|
|
CVE-2007-6453 (RaidenHTTPD)
|
|
|
|
CVE-2008-4298 (lighttpd)
|
|
|
|
FrSIRT - phpMyAdmin HTTP POST Request File Disclosure Vulnerability 2008-04-23
|
|
|
|
VU#158609:IBM Tivoli Provisioning Manager for OS Deployment (TPMfOSD) allows buffer overflow via HTTP request
|
|
|
|
lighttpd File Descriptor Array Denial of Service Vulnerability
|
|
|
|
Do you use Apache? HTTP Server versions get Security Fixes Mon, 21 Jan 2008 15:13:02 +0000
|
|
|
|
HttpLogger Cross-Site Scripting Vulnerability
|
|
|
|
CVE-2007-6326 (Simple HTTPD)
|
|
|
|
FrSIRT - PeerCast "HTTP::getAuthUserPass()" Buffer Overflow Vulnerability 2008-04-30
|
|
|
|
Bugtraq: Re: HTTPBruteForcer released
|
|
|
|
Microsoft Security Advisory (923762): Long URLs to sites using HTTP 1.1 and compression Could Cause Internet Explorer 6 Service Pack 1 to Unexpectedly Exit - 8/24/2006 Thu, 24 Aug 2006 07:00:00 GMT
|
|
|
|
lighttpd OpenSSL Error Queue Denial of Service Vulnerability
|
|
|
|
sISAPILocation HTTP Header Rewrite Security Bypass
|
|
|
|
IE7 allows overwriting of several headers leading toHttp request Splitting and smuggling. 29-3-2008
|
|
|
|
Vuln: Chilkat HTTP 'ChilkatHttp.dll' ActiveX Control Insecure Method Vulnerabilities 2008-04-02
|
|
|
|
CVE-2007-6404 (shttp)
|
|
|
|
VU#326065:Liferay Portal Enterprise Admin User-Agent HTTP header XSS
|
|
|