This page aggregates publicly disclosed CVE and security risk information related to desiderata_software, with CVSS, EPSS, publication dates, and vulnerability intelligence data to help assess potential risk and remediation priority.
| CVE | 概要 | ソース | CVSS 最大値 | EPSS(%) | 公開 | 更新 |
|---|---|---|---|---|---|---|
| CVE-2006-1483 | Blazix Web Server before 1.2.6, when running on Windows, allows remote attackers to obtain the source code of JSP files via (1) . (dot), (2) space, and (3) slash characters in the extension of a URL. | [email protected] | 5.0 | 0.86% | 2006-03-29 | 2026-04-16 |
| CVE-2002-1451 | Blazix before 1.2.2 allows remote attackers to read source code of JSP scripts or list restricted web directories via an HTTP request that ends in a (1) "+" or (2) "\" (backslash) character. | [email protected] | 5.0 | 5.78% | 2002-08-24 | 2026-04-16 |