ACI maintains a narrowly scoped vulnerability footprint centered on its 4D WebServer product. The observed disclosures are classified under general weakness categories in available security data; current severity, exploitation, and exposure details are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Aci over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2002-0966HIGH Buffer overflow in 4D web server 6.7.3 allow remote attackers to cause a denial of service and possibly execute arbitrary code via a long HTTP request. | Oct 4, 2002 | 7.5 | 20 | NO | NO |
CVE-2002-0578HIGH Buffer overflow in 4D WebServer 6.7.3 allows remote attackers to cause a denial of service and possibly execute arbitrary code via an HTTP request with Basic Authentication contain | Jun 18, 2002 | 7.5 | 20 | NO | NO |
CVE-2001-0971MEDIUM Directory traversal vulnerability in ACI 4d webserver allows remote attackers to read arbitrary files via a .. (dot dot) or drive letter (e.g., C:) in an HTTP request. | Aug 31, 2001 | 5.0 | 15 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Aci.
Media articles that mention a CVE ID that affects a product developed by Aci — matched by CVE ID, not by vendor name.