Show filters
21 Total Results
Displaying 11-20 of 21
Sort by:
Attacker Value
Unknown
CVE-2023-33863
Disclosure Date: June 07, 2023 (last updated October 08, 2023)
SerialiseValue in RenderDoc before 1.27 allows an Integer Overflow with a resultant Buffer Overflow. 0xffffffff is sign-extended to 0xffffffffffffffff (SIZE_MAX) and then there is an attempt to add 1.
0
Attacker Value
Unknown
CVE-2022-31526
Disclosure Date: July 11, 2022 (last updated October 07, 2023)
The ThundeRatz/ThunderDocs repository through 2020-05-01 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
0
Attacker Value
Unknown
CVE-2021-32568
Disclosure Date: September 06, 2021 (last updated February 23, 2025)
mrdoc is vulnerable to Deserialization of Untrusted Data
0
Attacker Value
Unknown
CVE-2019-16142
Disclosure Date: September 09, 2019 (last updated November 27, 2024)
An issue was discovered in the renderdoc crate before 0.5.0 for Rust. Multiple exposed methods take self by immutable reference, which is incompatible with a multi-threaded application.
0
Attacker Value
Unknown
CVE-2019-13131
Disclosure Date: July 01, 2019 (last updated November 27, 2024)
Super Micro SuperDoctor 5, when restrictions are not implemented in agent.cfg, allows remote attackers to execute arbitrary commands via NRPE.
0
Attacker Value
Unknown
CVE-2014-5919
Disclosure Date: September 18, 2014 (last updated October 05, 2023)
The SurDoc - 100GB+ FREE storage (aka com.jd.surdoc) application 1.3.4.0 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.
0
Attacker Value
Unknown
CVE-2013-0256
Disclosure Date: March 01, 2013 (last updated October 05, 2023)
darkfish.js in RDoc 2.3.0 through 3.12 and 4.x before 4.0.0.preview2.1, as used in Ruby, does not properly generate documents, which allows remote attackers to conduct cross-site scripting (XSS) attacks via a crafted URL.
0
Attacker Value
Unknown
CVE-2006-6545
Disclosure Date: December 14, 2006 (last updated October 04, 2023)
PHP remote file inclusion vulnerability in includes/common.php in the ErrorDocs 1.0.0 and earlier module for mxBB (mx_errordocs) allows remote attackers to execute arbitrary PHP code via a URL in the module_root_path parameter.
0
Attacker Value
Unknown
CVE-2003-1100
Disclosure Date: December 31, 2003 (last updated February 22, 2025)
Multiple cross-site scripting (XSS) vulnerabilities in Hummingbird CyberDOCS 3.5.1, 3.9, and 4.0 allow remote attackers to inject arbitrary web script or HTML via certain vectors.
0
Attacker Value
Unknown
CVE-2003-1101
Disclosure Date: December 31, 2003 (last updated February 22, 2025)
Hummingbird CyberDOCS 3.5.1, 3.9, and 4.0 allows remote attackers to obtain the full path of the DM Web Server via invalid login credentials, which reveals the path in an error message.
0