Home/Product/easyphp webserver
Product

easyphp webserver

23 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2023-53944
all versions
EasyPHP Webserver 14.1 contains a path traversal vulnerability that allows remote users with low privileges to access files outsid
6.5MEDIUM
CVE-2023-53941
all versions
EasyPHP Webserver 14.1 contains an OS command injection vulnerability that allows unauthenticated attackers to execute arbitrary s
9.8CRITICAL
CVE-2025-3847
all versions
A vulnerability classified as critical has been found in markparticle WebServer up to 1.0. This affects an unknown part of the fil
7.3HIGH
CVE-2025-3846
all versions
A vulnerability was found in markparticle WebServer up to 1.0. It has been rated as critical. Affected by this issue is some unkno
7.3HIGH
CVE-2025-3845
all versions
A vulnerability was found in markparticle WebServer up to 1.0. It has been declared as critical. Affected by this vulnerability is
7.3HIGH
CVE-2024-11215
all versions
Absolute path traversal (incorrect restriction of a path to a restricted directory) vulnerability in the EasyPHP web server, affec
6.5MEDIUM
CVE-2023-3767
all versions
An OS command injection vulnerability has been found on EasyPHP Webserver affecting version 14.1. This vulnerability could allow
9.8CRITICAL
CVE-2022-31805
< 1.1.9.23
In the CODESYS Development System multiple components in multiple versions transmit the passwords for the communication between cl
7.5HIGH
CVE-2021-32964
<= 4.0.40.1014
The AGG Software Web Server version 4.0.40.1014 and prior is vulnerable to a path traversal attack, which may allow an attacker to
6.5MEDIUM
CVE-2021-32962
<= 4.0.40.1014
The AGG Software Web Server version 4.0.40.1014 and prior is vulnerable to cross-site scripting, which may allow an attacker to re
8.2HIGH
CVE-2022-25323
all versions
ZEROF Web Server 2.0 allows /admin.back XSS.
6.1MEDIUM
CVE-2022-25322
all versions
ZEROF Web Server 2.0 allows /HandleEvent SQL Injection.
9.8CRITICAL
CVE-2021-30175
all versions
ZEROF Web Server 1.0 (April 2021) allows SQL Injection via the /HandleEvent endpoint for the login page.
9.8CRITICAL
CVE-2017-6027
<= 2.3
An Arbitrary File Upload issue was discovered in 3S-Smart Software Solutions GmbH CODESYS Web Server. The following versions of CO
9.8CRITICAL
CVE-2017-6025
<= 2.3
A Stack Buffer Overflow issue was discovered in 3S-Smart Software Solutions GmbH CODESYS Web Server. The following versions of COD
9.8CRITICAL
CVE-2007-5810
all versions
Hitachi Web Server 01-00 through 03-00-01, as used by certain Cosminexus products, does not properly validate SSL client certifica
CVE-2007-5809
all versions
Cross-site scripting (XSS) vulnerability in Hitachi Web Server 01-00 through 03-10, as used by certain Cosminexus products, allows
CVE-2007-4530
all versions
Multiple cross-site scripting (XSS) vulnerabilities in TeamSpeak Server 2.0.20.1 allow remote attackers to inject arbitrary web sc
CVE-2007-4529
all versions
The WebAdmin interface in TeamSpeak Server 2.0.20.1 allows remote authenticated users with the ServerAdmin flag to assign Register
CVE-2007-3956
all versions
TeamSpeak WebServer 2.0 for Windows does not validate parameter value lengths and does not expire TCP sessions, which allows remot
CVE-2002-0753
all versions
Buffer overflow in Talentsoft Web+ 5.0 allows remote attackers to execute arbitrary code via an HTTP request with a long cookie.
CVE-2002-0450
all versions
Buffer overflow in Talentsoft Web+ 5.0 and earlier allows remote attackers to execute arbitrary code via a long Web Markup Languag
CVE-2002-0449
all versions
Buffer overflow in webpsvc.exe for Talentsoft Web+ 5.0 and earlier allows remote attackers to execute arbitrary code via a long ar
Vulnerabilities
CISA KEV catalog
CWE weaknesses
CAPEC attack patterns
Package vulnerabilities
Threat intelligence
Threat actors
Tools & malware
ATT&CK techniques
IOCs
Detection & defense
Sigma rules
YARA rules
Atomic Red Team tests
D3FEND countermeasures
Compliance
NIST 800-53
ISO 27001:2022
SOC 2 TSC
PCI-DSS v4.0
CIS Controls v8.1
About
All capabilities
Live statistics
Data sources
Privacy policy
Terms of service
threatengine.sh  ·  Open-source threat intelligence platform  ·  100+ authoritative sources  ·  Every fact traces to its origin