CVE Tools

Cgi-script-center

8 CVEs tracked since 2000. Since Sep 2000, none of them reached CISA KEV.

Cgi-script-center CVEs per month

Sep 2000 to Feb 2001. Point at a month, or focus the strip and use the arrow keys.
Cgi-script-center CVEs per month, with the share now in CISA KEV
MonthCVEsIn CISA KEV
2000-0950
2000-10null or fewer
2000-11null or fewer
2000-12null or fewer
2001-0120
2001-0210

Products

The products that kept showing up in Cgi-script-center's monthly top three, with their CVEs summed over those months.

  1. Auction Weaver52 months
  2. Subscribe Me Lite22 months
  3. Account Manager11 month

Latest CVEs

The 8 most recently published vulnerabilities affecting Cgi-script-center.

  1. CVE-2001-0086CGI Script Center Subscribe Me LITE 2.0 and earlier allows remote attackers to delete arbitrary mailing list users without authentication by directly calling subscribe.pl with the target address as...5.0
  2. CVE-2000-0811Auction Weaver 1.0 through 1.04 allows remote attackers to read arbitrary files via a .. (dot dot) attack on the username or bidfile form fields.5.0
  3. CVE-2000-0810Auction Weaver 1.0 through 1.04 does not properly validate the names of form fields, which allows remote attackers to delete arbitrary files and directories via a .. (dot dot) attack.7.5
  4. CVE-2000-0687Auction Weaver CGI script 1.03 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) attack in the catdir parameter.10.0
  5. CVE-2000-0690Auction Weaver CGI script 1.02 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in the fromfile parameter.10.0
  6. CVE-2000-0689Account Manager LITE does not properly authenticate attempts to change the administrator password, which allows remote attackers to gain privileges for the Account Manager by directly calling the a...7.5
  7. CVE-2000-0686Auction Weaver CGI script 1.03 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) attack in the fromfile parameter.5.0
  8. CVE-2000-0688Subscribe Me LITE does not properly authenticate attempts to change the administrator password, which allows remote attackers to gain privileges for the Account Manager by directly calling the subs...7.5

The record

Peak rank
#1 in Sep 2000
Busiest month shown
Sep 2000, 5 CVEs
Months with a KEV entry
0 since Sep 2000
Monthly snapshots
3 since 2000
Cgi-script-center's full record, month by month

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store