Vulnerabilities
Vulnerable Software
Geeos Team:  >> Gattaca Server 2003  Security Vulnerabilities
Gattaca Server 2003 1.1.10.0 allows remote attackers to obtain sensitive information via (1) a trailing null byte ("%00") to a URL or (2) an invalid LANGUAGE parameter to web.tmpl, which reveals the full installation path in an error message.
CVSS Score
5.0
EPSS Score
0.062
Published
2004-12-31
Gattaca Server 2003 1.1.10.0 allows remote attackers to cause a denial of service (CPU consumption) via directory specifiers in the LANGUAGE parameter to (1) index.tmpl and (2) web.tmpl, such as (a) slash "/", (b) backslash "\", (c) dot ".",, (d) dot dot "..", and (e) internal slash "lang//en".
CVSS Score
5.0
EPSS Score
0.072
Published
2004-12-31
POP3 protocol in Gattaca Server 2003 1.1.10.0 allows remote authenticated users to cause a denial of service (application crash) via a large numeric value in the (1) LIST, (2) RETR, or (3) UIDL commands.
CVSS Score
4.0
EPSS Score
0.057
Published
2004-12-31
Mail server in Gattaca Server 2003 1.1.10.0 allows remote attackers to perform a denial of service (application crash) via a large number of connections to TCP port (1) 25 (SMTP) or (2) 110 (POP).
CVSS Score
5.0
EPSS Score
0.013
Published
2004-12-31
Cross-site scripting (XSS) vulnerability in web.tmpl in Gattaca Server 2003 1.1.10.0 allows remote attackers to inject arbitrary web script or HTML via the (1) template or (2) language parameter.
CVSS Score
4.3
EPSS Score
0.028
Published
2004-12-31


Contact Us

Shodan ® - All rights reserved