T-hauck
9 CVEs tracked since 2001. Since Jul 2001, none of them reached CISA KEV.
T-hauck CVEs per month
| Month | CVEs | In CISA KEV |
|---|---|---|
| 2001-07 | 1 | 0 |
| 2001-08 | null or fewer | |
| 2001-09 | 2 | 0 |
| 2001-10 | null or fewer | |
| 2001-11 | null or fewer | |
| 2001-12 | null or fewer | |
| 2002-01 | null or fewer | |
| 2002-02 | null or fewer | |
| 2002-03 | null or fewer | |
| 2002-04 | null or fewer | |
| 2002-05 | null or fewer | |
| 2002-06 | null or fewer | |
| 2002-07 | null or fewer | |
| 2002-08 | 6 | 0 |
Products
The products that kept showing up in T-hauck's monthly top three, with their CVEs summed over those months.
Latest CVEs
The 10 most recently published vulnerabilities affecting T-hauck.
- CVE-2002-1065Thomas Hauck Jana Server 2.x through 2.2.1, and 1.4.6 and earlier, does not restrict the number of unsuccessful login attempts, which makes it easier for remote attackers to gain privileges via bru...7.5
- CVE-2002-1066Thomas Hauck Jana Server 1.4.6 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary code via a large message index value in a (1) RETR or (2) DELE command...7.5
- CVE-2002-1062Signedness error in Thomas Hauck Jana Server 2.x through 2.2.1, and 1.4.6 and earlier, allows remote attackers to execute arbitrary code via long (1) Username, (2) Password, or (3) Hostname entries.7.5
- CVE-2002-1061Multiple buffer overflows in Thomas Hauck Jana Server 2.x through 2.2.1, and 1.4.6 and earlier, allow remote attackers to cause a denial of service and possibly execute arbitrary code via (1) an HT...7.5
- CVE-2002-1064Thomas Hauck Jana Server 2.x through 2.2.1, and 1.4.6 and earlier, generates different responses for valid and invalid usernames, which allows remote attackers to identify valid users on the server.5.0
- CVE-2002-1063Thomas Hauck Jana Server 2.x through 2.2.1, and 1.4.6 and earlier, allows remote attackers to cause a denial of service (resource exhaustion) via a large number of FTP PASV requests, which consumes...5.0
- CVE-2001-0558T. Hauck Jana Webserver 2.01 beta 1 and earlier allows a remote attacker to create a denial of service via a URL request which includes a MS-DOS device name (i.e. GET /aux HTTP/1.0).5.0
- CVE-1999-1082Directory traversal vulnerability in Jana proxy web server 1.40 allows remote attackers to ready arbitrary files via a "......" (modified dot dot) attack.5.0
- CVE-1999-1083Directory traversal vulnerability in Jana proxy web server 1.45 allows remote attackers to ready arbitrary files via a .. (dot dot) attack.5.0
- CVE-2001-0557T. Hauck Jana Webserver 1.46 and earlier allows a remote attacker to view arbitrary files via a '..' (dot dot) attack which is URL encoded (%2e%2e).5.0
The record
- Peak rank
- #10 in Aug 2002
- Busiest month shown
- Aug 2002, 6 CVEs
- Months with a KEV entry
- 0 since Jul 2001
- Monthly snapshots
- 3 since 2001