Summit Computer Networks maintains a narrowly scoped product line centered on the lil_http_server and lil_http offerings, which are lightweight web-server implementations. The vendor's disclosed vulnerabilities cluster around classification as other/unspecified weakness types, reflecting the need for more granular analysis of the specific input-handling or protocol issues affecting these components. Current exploitation activity, severity breakdown, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Summit Computer Networks over time
Signals from CVEs in this vendor scope (4 CVEs).
4 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2002-1008HIGH Cross-site scripting vulnerability in PowerBASIC urlcount.cgi, as included in Lil' HTTP web server, allows remote attackers to execute arbitrary web script in other web browsers vi | Oct 4, 2002 | 7.5 | 37 | NO | YES |
CVE-2002-1009HIGH Cross-site scripting vulnerability in PowerBASIC pbcgi.cgi, as included in Lil' HTTP web server, allows remote attackers to execute arbitrary web script in other web browsers via t | Oct 4, 2002 | 7.5 | 31 | NO | YES |
CVE-2002-2076MEDIUM Directory traversal vulnerability in Lil' HTTP server 2.1 and 2.2 allows remote attackers to read arbitrary files via a .. (dot dot) in an HTTP GET request. | Dec 31, 2002 | 5.0 | 15 | NO | NO |
CVE-2002-0304MEDIUM Lil HTTP Server 2.1 allows remote attackers to read password-protected files via a /./ in the HTTP request. | May 31, 2002 | 5.0 | 15 | NO | NO |
Signals from CVEs in this vendor scope (4 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Summit Computer Networks.
Media articles that mention a CVE ID that affects a product developed by Summit Computer Networks — matched by CVE ID, not by vendor name.