Vulnerabilities
Vulnerable Software
Fraunhofer Fit:  Security Vulnerabilities
config_converters.py in BSCW (Basic Support for Cooperative Work) 3.x and versions before 4.06 allows remote attackers to execute arbitrary commands via shell metacharacters in the file name during filename conversion.
CVSS Score
7.5
EPSS Score
0.012
Published
2002-03-25
The default configuration of BSCW (Basic Support for Cooperative Work) 3.x and possibly version 4 enables user self registration, which could allow remote attackers to upload files and possibly join a user community that was intended to be closed.
CVSS Score
7.5
EPSS Score
0.031
Published
2002-03-25
BSCW groupware system 3.3 through 4.0.2 beta allows remote attackers to read or modify arbitrary files by uploading and extracting a tar file with a symlink into the data-bag space.
CVSS Score
6.4
EPSS Score
0.032
Published
2001-08-31


Contact Us

Shodan ® - All rights reserved