← Back

Httpdx

httpdx

Vendor: Jasper • 5 CVEs

CVEs (5)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Jasper
1Httpdx
Apr 29, 2026
Apr 20, 2010
N/A· v4
N/A· v3
7.5 HIGH· v2
The FTP server component in httpdx 1.4, 1.4.5, 1.4.6, 1.4.6b, and 1.5 has a default password of pass123 for the moderator account, which makes it easier for remote attackers to obtain privileged access.
1Jasper
1Httpdx
Apr 29, 2026
Apr 20, 2010
N/A· v4
N/A· v3
9.3 HIGH· v2
Multiple format string vulnerabilities in the tolog function in httpdx 1.4, 1.4.5, 1.4.6, 1.4.6b, and 1.5 allow (1) remote attackers to execute arbitrary code via format string specifiers in a GET request to the HTTP ser...Show more
Multiple format string vulnerabilities in the tolog function in httpdx 1.4, 1.4.5, 1.4.6, 1.4.6b, and 1.5 allow (1) remote attackers to execute arbitrary code via format string specifiers in a GET request to the HTTP server component when logging is enabled, and allow (2) remote authenticated users to execute arbitrary code via format string specifiers in a PWD command to the FTP server component.Show less
1Jasper
1Httpdx
Apr 23, 2026
Dec 31, 2009
N/A· v4
N/A· v3
5.0 MEDIUM· v2
httpdx 1.4.4 and earlier allows remote attackers to obtain the source code for a web page by appending a . (dot) character to the URI.
1Jasper
1Httpdx
Apr 23, 2026
Oct 16, 2009
N/A· v4
N/A· v3
10.0 HIGH· v2
Stack-based buffer overflow in the h_handlepeer function in http.cpp in httpdx 1.4, and possibly 1.4.3, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long HTTP GET...Show more
Stack-based buffer overflow in the h_handlepeer function in http.cpp in httpdx 1.4, and possibly 1.4.3, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long HTTP GET request.Show less
1Jasper
1Httpdx
Apr 23, 2026
Oct 11, 2009
N/A· v4
N/A· v3
10.0 HIGH· v2
Format string vulnerability in the h_readrequest function in http.c in httpdx Web Server 1.4 allows remote attackers to cause a denial of service (crash) or execute arbitrary code via format string specifiers in the Host...Show more
Format string vulnerability in the h_readrequest function in http.c in httpdx Web Server 1.4 allows remote attackers to cause a denial of service (crash) or execute arbitrary code via format string specifiers in the Host header.Show less