Show filters
118 Total Results
Displaying 1-10 of 118
Sort by:
Attacker Value
Unknown

CVE-2019-15690

Disclosure Date: January 24, 2025 (last updated January 25, 2025)
LibVNCServer 0.9.12 release and earlier contains heap buffer overflow vulnerability within the HandleCursorShape() function in libvncclient/cursor.c. An attacker sends cursor shapes with specially crafted dimensions, which can result in remote code execution.
0
Attacker Value
Unknown

CVE-2024-2459

Disclosure Date: March 20, 2024 (last updated January 05, 2025)
The UX Flat plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'button' shortcode in all versions up to, and including, 4.1 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers with contributor-level and above permissions to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.
0
Attacker Value
Unknown

CVE-2024-0409

Disclosure Date: January 18, 2024 (last updated February 26, 2025)
A flaw was found in the X.Org server. The cursor code in both Xephyr and Xwayland uses the wrong type of private at creation. It uses the cursor bits type with the cursor as private, and when initiating the cursor, that overwrites the XSELINUX context.
Attacker Value
Unknown

CVE-2024-0408

Disclosure Date: January 18, 2024 (last updated February 26, 2025)
A flaw was found in the X.Org server. The GLX PBuffer code does not call the XACE hook when creating the buffer, leaving it unlabeled. When the client issues another request to access that resource (as with a GetGeometry) or when it creates another resource that needs to access that buffer, such as a GC, the XSELINUX code will try to use an object that was never labeled and crash because the SID is NULL.
Attacker Value
Unknown

CVE-2023-6478

Disclosure Date: December 13, 2023 (last updated February 25, 2025)
A flaw was found in xorg-server. A specially crafted request to RRChangeProviderProperty or RRChangeOutputProperty can trigger an integer overflow which may lead to a disclosure of sensitive information.
Attacker Value
Unknown

CVE-2023-6377

Disclosure Date: December 13, 2023 (last updated February 25, 2025)
A flaw was found in xorg-server. Querying or changing XKB button actions such as moving from a touchpad to a mouse can result in out-of-bounds memory reads and writes. This may allow local privilege escalation or possible remote code execution in cases where X11 forwarding is involved.
Attacker Value
Unknown

CVE-2023-27830

Disclosure Date: April 12, 2023 (last updated February 24, 2025)
TightVNC before v2.8.75 allows attackers to escalate privileges on the host operating system via replacing legitimate files with crafted files when executing a file transfer. This is due to the fact that TightVNC runs in the backend as a high-privileges account.
Attacker Value
Unknown

CVE-2022-41975

Disclosure Date: September 30, 2022 (last updated October 08, 2023)
RealVNC VNC Server before 6.11.0 and VNC Viewer before 6.22.826 on Windows allow local privilege escalation via MSI installer Repair mode.
Attacker Value
Unknown

CVE-2020-29260

Disclosure Date: September 02, 2022 (last updated February 24, 2025)
libvncclient v0.9.13 was discovered to contain a memory leak via the function rfbClientCleanup().
Attacker Value
Unknown

CVE-2022-27502

Disclosure Date: June 10, 2022 (last updated October 07, 2023)
RealVNC VNC Server 6.9.0 through 5.1.0 for Windows allows local privilege escalation because an installer repair operation executes %TEMP% files as SYSTEM.