Show filters
61 Total Results
Displaying 11-20 of 61
Sort by:
Attacker Value
Unknown

CVE-2022-28882

Disclosure Date: August 23, 2022 (last updated October 08, 2023)
A Denial-of-Service (DoS) vulnerability was discovered in F-Secure & WithSecure products whereby the aegen.dll will go into an infinite loop when unpacking PE files. This eventually leads to scanning engine crash. The exploit can be triggered remotely by an attacker.
Attacker Value
Unknown

CVE-2022-28881

Disclosure Date: August 10, 2022 (last updated October 08, 2023)
A Denial-of-Service (DoS) vulnerability was discovered in F-Secure Atlant whereby the aerdl.dll component used in certain WithSecure products unpacker function crashes which leads to scanning engine crash. The exploit can be triggered remotely by an attacker.
Attacker Value
Unknown

CVE-2022-28880

Disclosure Date: August 05, 2022 (last updated October 08, 2023)
A Denial-of-Service vulnerability was discovered in the F-Secure Atlant and in certain WithSecure products while scanning fuzzed PE32-bit files it is possible that can crash the scanning engine. The exploit can be triggered remotely by an attacker.
Attacker Value
Unknown

CVE-2022-28879

Disclosure Date: July 22, 2022 (last updated October 07, 2023)
A Denial-of-Service (DoS) vulnerability was discovered in F-Secure Atlant and in certain WithSecure products whereby the scanning the aepack.dll component can crash the scanning engine.
Attacker Value
Unknown

CVE-2022-28878

Disclosure Date: July 22, 2022 (last updated October 07, 2023)
A Denial-of-Service vulnerability was discovered in the F-Secure Atlant and in certain WithSecure products while scanning fuzzed APK file it is possible that can crash the scanning engine.
Attacker Value
Unknown

CVE-2022-28876

Disclosure Date: July 14, 2022 (last updated October 07, 2023)
A Denial-of-Service (DoS) vulnerability was discovered in F-Secure Atlant and in certain WithSecure products whereby the scanning the aeheur.dll component can crash the scanning engine. The exploit can be triggered remotely by an attacker.
Attacker Value
Unknown

CVE-2022-28875

Disclosure Date: May 25, 2022 (last updated October 07, 2023)
A Denial-of-Service (DoS) vulnerability was discovered in F-Secure Atlant and in certain WithSecure products whereby the scanning the aemobile component can crash the scanning engine. The exploit can be triggered remotely by an attacker.
Attacker Value
Unknown

CVE-2022-28874

Disclosure Date: May 23, 2022 (last updated October 07, 2023)
Multiple Denial-of-Service vulnerabilities was discovered in the F-Secure Atlant and in certain WithSecure products while scanning fuzzed PE32-bit files cause memory corruption and heap buffer overflow which eventually can crash the scanning engine. The exploit can be triggered remotely by an attacker.
Attacker Value
Unknown

CVE-2020-36518

Disclosure Date: March 11, 2022 (last updated November 29, 2024)
jackson-databind before 2.13.0 allows a Java StackOverflow exception and denial of service via a large depth of nested objects.
Attacker Value
Unknown

CVE-2022-22946

Disclosure Date: March 04, 2022 (last updated October 07, 2023)
In spring cloud gateway versions prior to 3.1.1+ , applications that are configured to enable HTTP2 and no key store or trusted certificates are set will be configured to use an insecure TrustManager. This makes the gateway able to connect to remote services with invalid or custom certificates.