threat
engine
.sh
Back
·
··:··
Home
/
Product
/
easyphp webserver
Product
easyphp webserver
23 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
Sort
Newest first
Oldest first
Highest CVSS
Lowest CVSS
Min CVSS
Any
4.0+
7.0+ (High)
9.0+ (Critical)
Published since
Reset
CVE-2023-53944
all versions
EasyPHP Webserver 14.1 contains a path traversal vulnerability that allows remote users with low privileges to access files outsid
6.5
MEDIUM
CVE-2023-53941
all versions
EasyPHP Webserver 14.1 contains an OS command injection vulnerability that allows unauthenticated attackers to execute arbitrary s
9.8
CRITICAL
CVE-2025-3847
all versions
A vulnerability classified as critical has been found in markparticle WebServer up to 1.0. This affects an unknown part of the fil
7.3
HIGH
CVE-2025-3846
all versions
A vulnerability was found in markparticle WebServer up to 1.0. It has been rated as critical. Affected by this issue is some unkno
7.3
HIGH
CVE-2025-3845
all versions
A vulnerability was found in markparticle WebServer up to 1.0. It has been declared as critical. Affected by this vulnerability is
7.3
HIGH
CVE-2024-11215
all versions
Absolute path traversal (incorrect restriction of a path to a restricted directory) vulnerability in the EasyPHP web server, affec
6.5
MEDIUM
CVE-2023-3767
all versions
An OS command injection vulnerability has been found on EasyPHP Webserver affecting version 14.1. This vulnerability could allow
9.8
CRITICAL
CVE-2022-31805
< 1.1.9.23
In the CODESYS Development System multiple components in multiple versions transmit the passwords for the communication between cl
7.5
HIGH
CVE-2021-32964
<= 4.0.40.1014
The AGG Software Web Server version 4.0.40.1014 and prior is vulnerable to a path traversal attack, which may allow an attacker to
6.5
MEDIUM
CVE-2021-32962
<= 4.0.40.1014
The AGG Software Web Server version 4.0.40.1014 and prior is vulnerable to cross-site scripting, which may allow an attacker to re
8.2
HIGH
CVE-2022-25323
all versions
ZEROF Web Server 2.0 allows /admin.back XSS.
6.1
MEDIUM
CVE-2022-25322
all versions
ZEROF Web Server 2.0 allows /HandleEvent SQL Injection.
9.8
CRITICAL
CVE-2021-30175
all versions
ZEROF Web Server 1.0 (April 2021) allows SQL Injection via the /HandleEvent endpoint for the login page.
9.8
CRITICAL
CVE-2017-6027
<= 2.3
An Arbitrary File Upload issue was discovered in 3S-Smart Software Solutions GmbH CODESYS Web Server. The following versions of CO
9.8
CRITICAL
CVE-2017-6025
<= 2.3
A Stack Buffer Overflow issue was discovered in 3S-Smart Software Solutions GmbH CODESYS Web Server. The following versions of COD
9.8
CRITICAL
CVE-2007-5810
all versions
Hitachi Web Server 01-00 through 03-00-01, as used by certain Cosminexus products, does not properly validate SSL client certifica
CVE-2007-5809
all versions
Cross-site scripting (XSS) vulnerability in Hitachi Web Server 01-00 through 03-10, as used by certain Cosminexus products, allows
CVE-2007-4530
all versions
Multiple cross-site scripting (XSS) vulnerabilities in TeamSpeak Server 2.0.20.1 allow remote attackers to inject arbitrary web sc
CVE-2007-4529
all versions
The WebAdmin interface in TeamSpeak Server 2.0.20.1 allows remote authenticated users with the ServerAdmin flag to assign Register
CVE-2007-3956
all versions
TeamSpeak WebServer 2.0 for Windows does not validate parameter value lengths and does not expire TCP sessions, which allows remot
CVE-2002-0753
all versions
Buffer overflow in Talentsoft Web+ 5.0 allows remote attackers to execute arbitrary code via an HTTP request with a long cookie.
CVE-2002-0450
all versions
Buffer overflow in Talentsoft Web+ 5.0 and earlier allows remote attackers to execute arbitrary code via a long Web Markup Languag
CVE-2002-0449
all versions
Buffer overflow in webpsvc.exe for Talentsoft Web+ 5.0 and earlier allows remote attackers to execute arbitrary code via a long ar
Vulnerabilities
CISA KEV catalog
CWE weaknesses
CAPEC attack patterns
Package vulnerabilities
Threat intelligence
Threat actors
Tools & malware
ATT&CK techniques
IOCs
Detection & defense
Sigma rules
YARA rules
Atomic Red Team tests
D3FEND countermeasures
Compliance
NIST 800-53
ISO 27001:2022
SOC 2 TSC
PCI-DSS v4.0
CIS Controls v8.1
About
All capabilities
Live statistics
Data sources
Privacy policy
Terms of service
threatengine.sh · Open-source threat intelligence platform · 100+ authoritative sources · Every fact traces to its origin