Microsoft / Index Server
9 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-1999-1397 | Index Server 2.0 on IIS 4.0 stores physical path information in the ContentIndex\Catalogs subkey of the AllowedPaths registry key, whose permissions allows loc… | HIGH | 7.5 | Sep 1, 2004 |
| CVE-2001-0500 | Buffer overflow in ISAPI extension (idq.dll) in Index Server 2.0 and Indexing Service 2000 in IIS 6.0 beta and earlier allows remote attackers to execute arbit… | HIGH | 10.0 | Mar 9, 2002 |
| CVE-2001-0986 | SQLQHit.asp sample file in Microsoft Index Server 2.0 allows remote attackers to obtain sensitive information such as the physical path, file attributes, or po… | MEDIUM | 5.0 | Feb 2, 2002 |
| CVE-2001-0245 | Microsoft Index Server 2.0 in Windows NT 4.0, and Indexing Service in Windows 2000, allows remote attackers to read server-side include files via a malformed s… | MEDIUM | 5.0 | Sep 18, 2001 |
| CVE-2001-0244 | Buffer overflow in Microsoft Index Server 2.0 allows remote attackers to execute arbitrary commands via a long search parameter. | HIGH | 7.5 | Sep 18, 2001 |
| CVE-2000-0302 | Microsoft Index Server allows remote attackers to view the source code of ASP files by appending a %20 to the filename in the CiWebHitsFile argument to the nul… | MEDIUM | 5.0 | May 7, 2001 |
| CVE-1999-1011 | The Remote Data Service (RDS) DataFactory component of Microsoft Data Access Components (MDAC) in IIS 3.x and 4.x exposes unsafe methods, which allows remote a… | HIGH | 10.0 | Jun 2, 2000 |
| CVE-2000-0098 | Microsoft Index Server allows remote attackers to determine the real path for a web directory via a request to an Internet Data Query file that does not exist. | MEDIUM | 5.0 | Mar 22, 2000 |
| CVE-2000-0097 | The WebHits ISAPI filter in Microsoft Index Server allows remote attackers to read arbitrary files, aka the "Malformed Hit-Highlighting Argument" vulnerability. | MEDIUM | 5.0 | Mar 22, 2000 |
Showing 1 to 9 of 9 CVEs