This page aggregates publicly disclosed CVE and security risk information related to excite, with CVSS, EPSS, publication dates, and vulnerability intelligence data to help assess potential risk and remediation priority.
| CVE | 概要 | ソース | CVSS 最大値 | EPSS(%) | 公開 | 更新 |
|---|---|---|---|---|---|---|
| CVE-1999-1073 | Excite for Web Servers (EWS) 1.1 records the first two characters of a plaintext password in the beginning of the encrypted password, which makes it easier for an attacker to guess passwords via a brute force or dictionary attack. | [email protected] | 7.2 | 0.37% | 1998-11-30 | 2026-04-16 |
| CVE-1999-1072 | Excite for Web Servers (EWS) 1.1 allows local users to gain privileges by obtaining the encrypted password from the world-readable Architext.conf authentication file and replaying the encrypted password in an HTTP request to AT-generated.cgi or AT-admin.cgi. | [email protected] | 7.2 | 0.42% | 1998-11-30 | 2026-04-16 |
| CVE-1999-1071 | Excite for Web Servers (EWS) 1.1 installs the Architext.conf authentication file with world-writeable permissions, which allows local users to gain access to Excite accounts by modifying the file. | [email protected] | 7.2 | 0.35% | 1998-11-30 | 2026-04-16 |
| CVE-1999-0279 | Excite for Web Servers (EWS) allows remote command execution via shell metacharacters. | [email protected] | 7.5 | 3.92% | 1998-01-01 | 2026-04-16 |