This page aggregates publicly disclosed CVE and security risk information related to savant, with CVSS, EPSS, publication dates, and vulnerability intelligence data to help assess potential risk and remediation priority.
| CVE | Summary | Source | Max CVSS | EPSS % | Published | Updated |
|---|---|---|---|---|---|---|
| CVE-2005-2859 | Savant Web Server stores user credentials in plaintext in the Savant\Users registry key, which allows local users to gain privileges. | [email protected] | 4.6 | 0.05% | 2005-09-08 | 2026-04-16 |
| CVE-2005-0338 | Buffer overflow in Savant Web Server 3.1 allows remote attackers to execute arbitrary code via a long HTTP request. | [email protected] | 7.5 | 10.48% | 2005-05-02 | 2026-04-16 |
| CVE-2002-2146 | cgitest.exe in Savant Web Server 3.1 and earlier allows remote attackers to cause a denial of service (crash) via a long HTTP request. | [email protected] | 7.5 | 0.76% | 2002-12-31 | 2026-04-16 |
| CVE-2002-2145 | Savant Web Server 3.1 and earlier allows remote attackers to bypass authentication for password protected user folders via a URL with a hex encoded space (%20) and a '.' (%2e) at the end of the filename. | [email protected] | 7.5 | 3.25% | 2002-12-31 | 2026-04-16 |
| CVE-2002-1828 | Savant Webserver 3.1 allows remote attackers to cause a denial of service (crash) via an HTTP GET request with a negative Content-Length value. | [email protected] | 5.0 | 4.19% | 2002-12-31 | 2026-04-16 |
| CVE-2002-1120 | Buffer overflow in Savant Web Server 3.1 and earlier allows remote attackers to execute arbitrary code via a long HTTP GET request. | [email protected] | 7.5 | 69.11% | 2002-09-24 | 2026-04-16 |