Show filters
112 Total Results
Displaying 101-110 of 112
Sort by:
Attacker Value
Unknown

CVE-2007-4939

Disclosure Date: September 18, 2007 (last updated October 04, 2023)
Heap-based buffer overflow in mplayerc.exe in Media Player Classic (MPC) 6.4.9.0 and earlier, as used standalone and in mympc (aka CD-Storm) 1.0.0.1, StormPlayer 1.0.4, and possibly other products, allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a .avi file with an "indx truck size" of 0xffffffff, and certain wLongsPerEntry and nEntriesInuse values.
0
Attacker Value
Unknown

CVE-2007-4940

Disclosure Date: September 18, 2007 (last updated October 04, 2023)
Multiple integer overflows in Media Player Classic (MPC) 6.4.9.0 and earlier, as used standalone and in mympc (aka CD-Storm) 1.0.0.1, StormPlayer 1.0.4, and possibly other products, allow remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a .avi file with certain large "indx truck size" and nEntriesInuse values.
0
Attacker Value
Unknown

CVE-2007-4884

Disclosure Date: September 14, 2007 (last updated October 04, 2023)
Media Player Classic (MPC) allows user-assisted remote attackers to cause a denial of service (application crash) via a malformed .au file that triggers a divide-by-zero error.
0
Attacker Value
Unknown

CVE-2006-7222

Disclosure Date: August 28, 2007 (last updated October 04, 2023)
Buffer overflow in the CFLICStream::_deltachunk function in FLICSource.cpp in Media Player Classic (MPC) 6.4.9.0 allows user-assisted remote attackers to execute arbitrary code via a crafted FLI file.
0
Attacker Value
Unknown

CVE-2007-4483

Disclosure Date: August 22, 2007 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in index.php in the WordPress Classic 1.5 theme in WordPress before 2.1.3 allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO (PHP_SELF).
0
Attacker Value
Unknown

CVE-2007-3662

Disclosure Date: July 10, 2007 (last updated October 04, 2023)
Media Player Classic (MPC) 6.4.9.0 allows user-assisted remote attackers to cause a denial of service or possibly execute arbitrary code via a crafted FLV file.
0
Attacker Value
Unknown

CVE-2007-3663

Disclosure Date: July 10, 2007 (last updated October 04, 2023)
Divide-by-zero error in Media Player Classic (MPC) 6.4.9.0 allows user-assisted remote attackers to cause a denial of service or possibly execute arbitrary code via a crafted MPA file.
0
Attacker Value
Unknown

CVE-2007-2723

Disclosure Date: May 16, 2007 (last updated February 02, 2024)
Media Player Classic 6.4.9.0 allows user-assisted remote attackers to cause a denial of service (web browser crash) via an "empty" .MPA file, which triggers a divide-by-zero error.
Attacker Value
Unknown

CVE-2006-5036

Disclosure Date: September 27, 2006 (last updated November 08, 2023)
MySource Matrix 3.8 and earlier, and MySource 2.x, allow remote attackers to use the application as an HTTP proxy server via the sq_remote_page_url parameter to access arbitrary sites with the server's IP address and conduct cross-site scripting (XSS) attacks. NOTE: the researcher reports that "The vendor does not consider this a vulnerability.
0
Attacker Value
Unknown

CVE-2006-4635

Disclosure Date: September 08, 2006 (last updated October 04, 2023)
Unspecified vulnerability in MySource Classic 2.14.6, and possibly earlier, allows remote authenticated users, with superuser privileges, to inject arbitrary PHP code via unspecified vectors related to the Equation attribute in Web_Extensions - Notitia (I/II). NOTE: due to lack of details, it is not clear whether this issue is file inclusion, static code injection, or another type of issue.
0