Pass Magnoware DataTrack System Information Disclosure CVE-2010-2079 11 Jun 2010 5 (v2) Medium Pass Oracle Secure Backup Administration Server login.php Authentication Bypass CVE-2010-0904 16 Jul 2010 9.7 (v2) High Pass PCS Daemon (pcsd) Cookie Signing Multiple Vulnerabilities CVE-2015-1848 CVE-2015-3983 19 Jun 2015 6.8 (v2) Medium Pass Microsoft SharePoint Services Help.aspx 'cid0' Parameter XSS CVE-2010-0817 01 Jul 2010 4.3 (v2) Medium Pass OpenX Open Flash Chart ofc_upload_image.php File Upload Arbitrary Code Execution CVE-2009-4140 17 Sep 2010 7.5 (v2) High Pass MS10-054: Vulnerabilities in SMB Server Could Allow Remote Code Execution (982214) (remote check) CVE-2010-2550 CVE-2010-2551 CVE-2010-2552 23 Aug 2010 10 (v2) Critical Pass Apple iTunes < 10.0 Multiple Vulnerabilities (uncredentialed check) CVE-2010-1780 CVE-2010-1782 CVE-2010-1783 CVE-2010-1784 CVE-2010-1785 CVE-2010-1786 CVE-2010-1787 CVE-2010-1788 CVE-2010-1789 CVE-2010-1790 CVE-2010-1791 CVE-2010-1792 CVE-2010-179302 Sep 2010 9.3 (v2) High Pass Wing FTP Server < 3.5.1 XSS CVE-2010-2428 09 Jul 2010 3.5 (v2) Low Pass WinComLPD LPD Monitoring Server Authentication Bypass CVE-2008-5158 06 Feb 2008 7.5 (v2) High Pass Mambo MOStlyCE Mambot Arbitrary File Rename CVE-2008-7215 28 Jan 2008 5.8 (v2) Medium Pass Sun Java Web Console < 3.0.5 Remote File Enumeration CVE-2008-1286 13 Mar 2008 5 (v2) Medium Pass Apache < 2.0.63 Multiple XSS Vulnerabilities CVE-2007-5000 CVE-2007-6203 CVE-2007-6388 CVE-2008-0005 07 Mar 2008 5.3 (v3) Medium Pass ListManager < 9.3b / 9.2c / 8.95d Multiple Vulnerabilities CVE-2007-6319 22 Feb 2008 6.8 (v2) Medium Pass Novell eDirectory < 8.8.2 FTF2 / 8.7.3 SP10b Multiple Remote Overflows CVE-2008-1809 CVE-2008-3159 07 Jul 2008 10 (v2) Critical Pass HP OpenView Network Node Manager OpenView5.exe Action Parameter Traversal Arbitrary File Access CVE-2008-0068 15 Apr 2008 5 (v2) Medium Pass SAP Internet Graphics Server (IGS) Directory Traversal Vulnerability CVE-2005-1691 25 Jul 2005 5 (v2) Medium Pass CGI Generic Path Traversal (quick test) 05 Nov 2010 5 (v2) Medium Pass ViewVC Direct Request CVSROOT Information Disclosure CVE-2008-1291 19 May 2008 5 (v2) Medium Pass Coppermine Photo Gallery include/functions.inc.php _data Cookie lang Parameter Traversal Local File InclusionCVE-2008-3486 01 Aug 2008 6.8 (v2) Medium Pass MailWatch for MailScanner mailscanner/docs.php doc Parameter Traversal Local File Inclusion CVE-2008-5991 26 Sep 2008 6.8 (v2) Medium Pass Security Center < 3.4.2.1 Directory Traversal Arbitrary File Access CVE-2008-4367 17 Oct 2008 4 (v2) Medium Pass IBM WebSphere Application Server 6.1 < Fix Pack 19 Multiple Flaws CVE-2008-4111 CVE-2009-0432 CVE-2009-0433 16 Sep 2008 7.5 (v2) High Pass Eaton Network Shutdown Module < 3.20 Authentication Bypass / Command Execution CVE-2008-6816 28 Oct 2008 10 (v2) Critical Pass MDaemon WorldClient < 10.0.2 Email Handling XSS CVE-2008-6967 21 Nov 2008 4.3 (v2) Medium Pass Oracle Secure Backup Administration Server login.php Arbitrary Command Injection CVE-2008-4006 CVE-2008-5448 14 Jan 2009 10 (v2) Critical Pass Sitecore CMS < 5.3.2 rev. 090212 Web Service Security Database Information Disclosure CVE-2009-1055 26 Mar 2009 5 (v2) Medium Pass Xerox WorkCentre Web Server Unspecified Command Injection (XRX09-002) CVE-2009-1656 15 May 2009 10 (v2) Critical Pass Novell eDirectory < 8.8 SP5 Multiple Vulnerabilities CVE-2009-0192 CVE-2009-2456 CVE-2009-2457 15 Jul 2009 5 (v2) Medium Pass OpenSSL 1.0.1 < 1.0.1p Multiple Vulnerabilities CVE-2015-1793 CVE-2015-3196 09 Jul 2015 6.5 (v3) Medium Pass Sawmill File Access Information Disclosure CVE-2000-0588 27 Jun 2000 5 (v2) Medium Pass AN-HTTPd Multiple Test CGIs Arbitrary Command Execution CVE-1999-0947 02 Nov 1999 7.5 (v2) High Pass Finger Recursive Request Arbitrary Site Redirection CVE-1999-0105 CVE-1999-0106 22 Jun 1999 5 (v2) Medium Pass MDaemon SMTP HELO Command Remote Overflow DoS CVE-1999-0284 22 Jun 1999 7.5 (v2) High Pass Sendmail DEBUG/WIZ Remote Command Execution CVE-1999-0095 CVE-1999-0145 22 Aug 1999 9.8 (v3) Critical Pass SGI InfoSearch infosrch.cgi fname Parameter Arbitrary Command Execution CVE-2000-0207 03 Mar 2000 7.5 (v2) High Pass Sendmail decode Alias Arbitrary File Overwrite CVE-1999-0096 30 Aug 1999 5.3 (v3) Medium Pass Sendmail mail from/rcpt to Pipe Arbitrary Command Execution CVE-1999-0163 22 Aug 1999 10 (v2) Critical Pass MySQL Unpassworded Account Check CVE-2002-1809 CVE-2004-1532 27 Jul 2000 7.3 (v3) High Pass CodeMeter Runtime Predictable Encryption Key CVE-2020-14517 06 May 2021 9.8 (v3) Critical Pass Shiva Integrator Default Password CVE-1999-0508 31 Aug 2000 7.5 (v2) High Pass Cart32 Backdoor Password Arbitrary Command Execution CVE-2000-0429 09 May 2000 7.5 (v2) High Pass ProFTPD Multiple Remote Overflows (palmetto) CVE-1999-0368 15 Jul 2000 10 (v2) Critical Pass Samba enum_csc_policy Data Structure Termination Remote Overflow CVE-2002-2196 29 Aug 2002 7.5 (v2) High Pass Microsoft IIS WebDAV SEARCH Method Arbitrary Directory Forced Listing CVE-2000-0951 05 Oct 2000 5 (v2) Medium Pass Trinity v3 Trojan Detection CVE-2000-0138 05 Sep 2000 10 (v2) Critical Pass SSH CRC-32 Compensation Attack Remote Overflow CVE-2001-0144 09 Feb 2001 10 (v2) Critical Pass UoW imapd (UW-IMAP) Multiple Command Remote Overflows CVE-2000-0284 01 Mar 2001 7.5 (v2) High Pass Kerberos Server Spoofed Packet Amplification DoS (PingPong) CVE-2002-2443 25 Mar 2001 7.8 (v2) High Pass cfingerd < 1.4.4 Multiple Vulnerabilities CVE-1999-0243 CVE-1999-0708 CVE-2001-0609 16 Apr 2001 10 (v2) Critical Pass BSD Based telnetd telrcv Function Remote Command Execution CVE-2001-0554 24 Jul 2001 10 (v2) Critical Pass Cisco Multiple Devices Unpassworded Account CVE-1999-0508 07 Sep 2001 10 (v2) Critical Pass HPE Edgeline Infrastructure Manager Authentication Bypass (HPESBGN04124) CVE-2021-29203 04 Jun 2021 9.8 (v3) Critical Pass Tarantella Enterprise ttawebtop.cgi pg Parameter Traversal Arbitrary File Access CVE-2001-0805 20 Jun 2001 7.8 (v2) High Pass Textor Webmasters Ltd listrec.pl TEMPLATE Parameter Arbitrary Command Execution CVE-2001-0997 26 Sep 2001 7.5 (v2) High Pass Network Solutions Rwhoisd -soa Command Remote Format String CVE-2001-0838 25 Oct 2001 7.5 (v2) High Pass RealServer /admin/includes/ Remote Memory Content Disclosure CVE-2000-1181 20 Nov 2000 5 (v2) Medium Pass Savant Web Server Malformed Content-Length DoS CVE-2002-1828 27 Nov 2002 5 (v2) Medium Pass Apache-SSL < 1.3.23+1.46 i2d_SSL_SESSION Function SSL Client Certificate Overflow CVE-2002-0082 19 Mar 2002 7.3 (v3) High Pass mod_python < 2.7.8 Module Importing Privilege Function Execution CVE-2002-0185 02 May 2002 7.5 (v2) High Pass OpenSSH < 3.1 Channel Code Off by One Remote Privilege Escalation CVE-2002-0083 07 Mar 2002 10 (v2) Critical Pass Multiple Web Server on Windows MS/DOS Device Request Remote DOS CVE-2001-0386 CVE-2001-0493 CVE-2001-0391 CVE-2001-0558 CVE-2002-0200 CVE-2000-0168 CVE-2003-0016 CVE-2001-0602 29 Mar 2002 5 (v2) Medium Pass ServletExec 4.1 ISAPI com.newatlanta.servletexec.JSP10Servlet Traversal Arbitrary File Access CVE-2002-0893 22 May 2002 5 (v2) Medium Pass Apache < 1.3.27 Multiple Vulnerabilities (DoS, XSS) CVE-2002-0839 CVE-2002-0840 CVE-2002-0843 04 Oct 2002 7.3 (v3) High Pass Bugbear Worm Detection CVE-2001-0154 03 Oct 2002 10 (v2) Critical Pass MRTG mrtg.cgi cfg Parameter Traversal Arbitrary Files Access CVE-2002-0232 05 Jun 2002 5 (v2) Medium Pass Microsoft Site Server Multiple Script Information Disclosure CVE-2002-1769 08 Jun 2002 5 (v2) Medium Pass Ipswitch WhatsUp Gold Default Admin Account CVE-1999-0508 05 Jun 2002 7.5 (v2) High Pass Enhydra Multiserver Default Password CVE-1999-0508 22 Jan 2003 7.5 (v2) High Pass Sendmail < 8.10.0 mail.local Newline Handling Remote DoS CVE-2000-0319 11 Mar 2003 5.3 (v3) Medium Pass SSH ssh-keygen with Secure-RPC SUN-DES-1 Phrase Recovery CVE-2001-0259 10 Mar 2003 2.6 (v2) Low Pass Solaris sendmail .forward Local Privilege Escalation CVE-2003-1076 12 Mar 2003 7.2 (v2) High Pass rsync I/O Functions Multiple Signedness Errors RCE CVE-2002-0048 14 Mar 2003 10 (v2) Critical Pass Ipswitch IMail Web Interface URI Referer Session Token Disclosure CVE-2001-1286 25 Feb 2003 5 (v2) Medium Pass Apple iTunes < 10.6.3 Multiple Vulnerabilities (uncredentialed check) CVE-2012-0672 CVE-2012-0677 14 Jun 2012 9.3 (v2) High Pass Sendmail < 8.12.9 NOCHAR Control Value prescan Overflow CVE-2003-0161 29 Mar 2003 9.8 (v3) Critical Pass Kerberos 4 Realm Principle Impersonation CVE-2003-0138 03 Apr 2003 7.5 (v2) High Pass Monkey HTTP Daemon (monkeyd) PostMethod() Function Remote Overflow CVE-2003-0218 22 Apr 2003 7.6 (v2) High Pass Poster version.two index.php Account Manipulation Privilege Escalation CVE-2003-0307 14 May 2003 6.4 (v2) Medium Pass Polycom ViaVideo Web Server Incomplete HTTP Connection Saturation Remote DoS CVE-2002-1906 01 Sep 2003 5 (v2) Medium Pass Magic Winmail Server PASS Command Remote Format String CVE-2003-0391 17 Jun 2003 7.5 (v2) High Pass OpenTSDB yrange RCE (direct check) CVE-2020-35476 09 Jul 2021 9.8 (v3) Critical Pass SHOUTcast Server admin.cgi Long Argument Overflow CVE-2002-0199 11 Jun 2003 7.5 (v2) High Pass Exim < 4.22 smtp_in.c HELO/EHLO Remote Overflow CVE-2003-0743 02 Sep 2003 7.5 (v2) High Pass OpenSSH < 3.7.1p2 Multiple Remote Vulnerabilities CVE-2003-0786 CVE-2003-0787 23 Sep 2003 9.3 (v2) High Pass ISC BIND < 8.3.7 / 8.4.3 Negative Record Cache Poisoning CVE-2003-0914 27 Nov 2003 7.8 (v2) High Pass Apache Double Slash GET Request Forced Directory Listing CVE-2003-1138 27 Oct 2003 5.3 (v3) Medium Pass EasyDynamicPages Multiple Script edp_relative_path Parameter Remote File Inclusion CVE-2004-0073 02 Jan 2004 8.3 (v3) High Pass SGDynamo sgdynamo.exe HTNAME XSS CVE-2002-0375 18 Dec 2003 4.3 (v2) Medium Pass Exchange XEXCH50 Remote Buffer Overflow CVE-2003-0714 16 Oct 2003 7.5 (v2) High Pass smallftpd 1.0.3 Multiple DoS CVE-2004-0299 22 Feb 2004 5.3 (v3) Medium Pass Xlight FTP Server Multiple Remote Overflows CVE-2004-0255 CVE-2004-0287 16 Feb 2004 5 (v2) Medium Pass Apache < 1.3.31 / 2.0.49 Socket Connection Blocking Race Condition DoS CVE-2004-0174 16 Jun 2004 5 (v2) Medium Pass vHost < 3.10r1 Unspecified XSS CVE-2004-2278 14 Mar 2004 4.3 (v2) Medium Pass Emumail WebMail Multiple Remote Vulnerabilities (XSS, Disc) CVE-2004-2334 CVE-2004-2385 14 Mar 2004 4.3 (v2) Medium Pass Nuked-Klan index.php user_langue Parameter Traversal Arbitrary File Access CVE-2004-1937 13 Apr 2004 7.5 (v2) High Pass Default Password (12345678) for 'root' Account on MacOS X Server CVE-1999-0502 07 Jul 2004 9.8 (v3) Critical Pass BlackJumboDog FTP Server Multiple Command Overflow CVE-2004-1439 11 Aug 2004 7.5 (v2) High Pass EasyWeb FileManager pathtext Traversal Arbitrary File/Directory Access CVE-2004-2047 26 Jul 2004 4 (v2) Medium Pass Comersus Cart Multiple Input Validation Vulnerabilities (SQLi, XSS) CVE-2004-0681 CVE-2004-0682 02 Aug 2004 7.5 (v2) High Pass Nucleus CMS action.php itemid Parameter SQL Injection CVE-2004-2056 03 Aug 2004 7.5 (v2) High Pass Samba smbd FindNextPrintChangeNotify() Request Remote DoS CVE-2004-0829 26 Aug 2004 5 (v2) Medium Pass Intellipeer POP3 Server User Account Enumeration CVE-2004-2150 27 Sep 2004 5 (v2) Medium Pass XOOPS <= 1.0 Dictionary Module Multiple Scripts XSS CVE-2004-1640 01 Sep 2004 4.3 (v2) Medium Pass DasBlog Activity / Event Viewer Multiple HTTP Header XSS CVE-2004-1657 02 Sep 2004 4.3 (v2) Medium Pass OpenCA Client System Browser Form Input Field XSS CVE-2004-0787 09 Sep 2004 4.3 (v2) Medium Pass CuteNews index.php mod Parameter XSS CVE-2004-1659 06 Sep 2004 4.3 (v2) Medium Pass Icecast Encoded Traversal Arbitrary File Access CVE-2001-0784 01 Oct 2004 5 (v2) Medium Pass Icecast / libshout Multiple Remote Overflows CVE-2001-1229 01 Oct 2004 7.5 (v2) High Pass Icecast HTTP Header Processing Remote Overflow CVE-2004-1561 28 Sep 2004 7.5 (v2) High Pass MoniWiki < 1.0.9 wiki.php XSS CVE-2004-1632 25 Oct 2004 4.3 (v2) Medium Pass 04WebServer Multiple Vulnerabilities (XSS, DoS, more) CVE-2004-1512 CVE-2004-1513 CVE-2004-1514 13 Nov 2004 5 (v2) Medium Pass Apache mod_proxy Content-Length Overflow CVE-2004-0492 25 Oct 2004 10 (v2) Critical 20
RELAYTO Penetration Test Results Page 19 Page 21