This CPE summary could be partial or incomplete. Please contact us for a detailed listing.

Summary

Detail
Vendor Lars Ellingsen First view 2001-05-03
Product Guestserver Last view 2005-12-14
Version Type Application
Update  
Edition  
Language  
Sofware Edition  
Target Software  
Target Hardware  
Other  

Activity : Overall

COMMON PLATFORM ENUMERATION: Repartition per Version

CPE Name Affected CVE
cpe:2.3:a:lars_ellingsen:guestserver:4:*:*:*:*:*:*:* 2
cpe:2.3:a:lars_ellingsen:guestserver:4.08:*:*:*:*:*:*:* 2
cpe:2.3:a:lars_ellingsen:guestserver:2.07:*:*:*:*:*:*:* 2
cpe:2.3:a:lars_ellingsen:guestserver:2.10:*:*:*:*:*:*:* 2
cpe:2.3:a:lars_ellingsen:guestserver:3.22:*:*:*:*:*:*:* 2
cpe:2.3:a:lars_ellingsen:guestserver:3.30:*:*:*:*:*:*:* 2
cpe:2.3:a:lars_ellingsen:guestserver:3.40:*:*:*:*:*:*:* 2
cpe:2.3:a:lars_ellingsen:guestserver:3.41:*:*:*:*:*:*:* 2
cpe:2.3:a:lars_ellingsen:guestserver:3.48:*:*:*:*:*:*:* 2
cpe:2.3:a:lars_ellingsen:guestserver:3.60:*:*:*:*:*:*:* 2
cpe:2.3:a:lars_ellingsen:guestserver:3.62:*:*:*:*:*:*:* 2
cpe:2.3:a:lars_ellingsen:guestserver:4.07:*:*:*:*:*:*:* 2
cpe:2.3:a:lars_ellingsen:guestserver:4.01:*:*:*:*:*:*:* 2
cpe:2.3:a:lars_ellingsen:guestserver:3.35:*:*:*:*:*:*:* 2
cpe:2.3:a:lars_ellingsen:guestserver:3.36:*:*:*:*:*:*:* 2
cpe:2.3:a:lars_ellingsen:guestserver:3.46:*:*:*:*:*:*:* 2
cpe:2.3:a:lars_ellingsen:guestserver:3.47:*:*:*:*:*:*:* 2
cpe:2.3:a:lars_ellingsen:guestserver:3.82:*:*:*:*:*:*:* 2
cpe:2.3:a:lars_ellingsen:guestserver:3.83:*:*:*:*:*:*:* 2
cpe:2.3:a:lars_ellingsen:guestserver:4.09:*:*:*:*:*:*:* 2
cpe:2.3:a:lars_ellingsen:guestserver:4.10:*:*:*:*:*:*:* 2
cpe:2.3:a:lars_ellingsen:guestserver:4.06:*:*:*:*:*:*:* 2
cpe:2.3:a:lars_ellingsen:guestserver:3.01:*:*:*:*:*:*:* 2
cpe:2.3:a:lars_ellingsen:guestserver:3.02:*:*:*:*:*:*:* 2
cpe:2.3:a:lars_ellingsen:guestserver:3.31:*:*:*:*:*:*:* 2
cpe:2.3:a:lars_ellingsen:guestserver:3.32:*:*:*:*:*:*:* 2
cpe:2.3:a:lars_ellingsen:guestserver:3.42:*:*:*:*:*:*:* 2
cpe:2.3:a:lars_ellingsen:guestserver:3.43:*:*:*:*:*:*:* 2
cpe:2.3:a:lars_ellingsen:guestserver:3.65:*:*:*:*:*:*:* 2
cpe:2.3:a:lars_ellingsen:guestserver:3.66:*:*:*:*:*:*:* 2
cpe:2.3:a:lars_ellingsen:guestserver:4.05:*:*:*:*:*:*:* 2
cpe:2.3:a:lars_ellingsen:guestserver:2.90:*:*:*:*:*:*:* 2
cpe:2.3:a:lars_ellingsen:guestserver:3.20:*:*:*:*:*:*:* 2
cpe:2.3:a:lars_ellingsen:guestserver:3.21:*:*:*:*:*:*:* 2
cpe:2.3:a:lars_ellingsen:guestserver:3.03:*:*:*:*:*:*:* 2
cpe:2.3:a:lars_ellingsen:guestserver:3.10:*:*:*:*:*:*:* 2
cpe:2.3:a:lars_ellingsen:guestserver:3.33:*:*:*:*:*:*:* 2
cpe:2.3:a:lars_ellingsen:guestserver:3.34:*:*:*:*:*:*:* 2
cpe:2.3:a:lars_ellingsen:guestserver:3.44:*:*:*:*:*:*:* 2
cpe:2.3:a:lars_ellingsen:guestserver:3.45:*:*:*:*:*:*:* 2
cpe:2.3:a:lars_ellingsen:guestserver:3.80:*:*:*:*:*:*:* 2
cpe:2.3:a:lars_ellingsen:guestserver:3.81:*:*:*:*:*:*:* 2
cpe:2.3:a:lars_ellingsen:guestserver:4.13:*:*:*:*:*:*:* 1

Related : CVE

  Date Alert Description
4.3 2005-12-14 CVE-2005-4222

Multiple cross-site scripting (XSS) vulnerabilities in guestbook.cgi in Lars Ellingsen Guestserver 4.13 and earlier allow remote attackers to inject arbitrary web script or HTML via unspecified message fields.

10 2001-05-03 CVE-2001-0180

Lars Ellingsen guestserver.cgi allows remote attackers to execute arbitrary commands via shell metacharacters in the "email" parameter.

Open Source Vulnerability Database (OSVDB)

id Description
13125 Lars Ellingsen guestserver.cgi email Parameter Arbitrary Command Execution
12847 Guestserver guestserver.cgi Path Disclosure
12846 Guestserver Message Field XSS

OpenVAS Exploits

id Description
2005-11-03 Name : Various dangerous cgi scripts
File : nvt/dangerous_cgis.nasl

Snort® IPS/IDS

Date Description
2014-01-10 Lars Ellingsen guestserver.cgi access
RuleID : 2211-community - Type : SERVER-WEBAPP - Revision : 17
2014-01-10 Lars Ellingsen guestserver.cgi access
RuleID : 2211 - Type : SERVER-WEBAPP - Revision : 17

Nessus® Vulnerability Scanner

id Description
2003-06-17 Name: The remote web server may contain some dangerous CGI scripts.
File: dangerous_cgis.nasl - Type: ACT_ATTACK