This page aggregates publicly disclosed CVE and security risk information related to roxen, with CVSS, EPSS, publication dates, and vulnerability intelligence data to help assess potential risk and remediation priority.
| CVE | Summary | Source | Max CVSS | EPSS % | Published | Updated |
|---|---|---|---|---|---|---|
| CVE-2001-1118 | A module in Roxen 2.0 before 2.0.92, and 2.1 before 2.1.264, does not properly decode UTF-8, Mac and ISO-2202 encoded URLs, which could allow a remote attacker to execute arbitrary commands or view arbitrary files via an encoded URL. | [email protected] | 7.5 | 1.51% | 2001-08-02 | 2026-04-16 |
| CVE-2000-0671 | Roxen web server earlier than 2.0.69 allows allows remote attackers to bypass access restrictions, list directory contents, and read source code by inserting a null character (%00) to the URL. | [email protected] | 5.0 | 5.10% | 2000-07-21 | 2026-04-16 |
| CVE-1999-1522 | Vulnerability in htmlparse.pike in Roxen Web Server 1.3.11 and earlier, possibly related to recursive parsing and referer tags in RXML. | [email protected] | 5.0 | 0.56% | 1999-10-07 | 2026-04-16 |