Show filters
321 Total Results
Displaying 181-190 of 321
Sort by:
Attacker Value
Unknown
CVE-2018-11578
Disclosure Date: May 31, 2018 (last updated November 26, 2024)
GifIndexToTrueColor in ngiflib.c in MiniUPnP ngiflib 0.4 has a Segmentation fault.
0
Attacker Value
Unknown
CVE-2018-11576
Disclosure Date: May 31, 2018 (last updated November 26, 2024)
ngiflib.c in MiniUPnP ngiflib 0.4 has a heap-based buffer over-read in GifIndexToTrueColor.
0
Attacker Value
Unknown
CVE-2018-11575
Disclosure Date: May 31, 2018 (last updated November 26, 2024)
ngiflib.c in MiniUPnP ngiflib 0.4 has a stack-based buffer overflow in DecodeGifImg.
0
Attacker Value
Unknown
CVE-2018-10717
Disclosure Date: May 03, 2018 (last updated November 26, 2024)
The DecodeGifImg function in ngiflib.c in MiniUPnP ngiflib 0.4 does not consider the bounds of the pixels data structure, which allows remote attackers to cause a denial of service (WritePixels heap-based buffer overflow and application crash) or possibly have unspecified other impact via a crafted GIF file, a different vulnerability than CVE-2018-10677.
0
Attacker Value
Unknown
CVE-2018-10677
Disclosure Date: May 02, 2018 (last updated November 26, 2024)
The DecodeGifImg function in ngiflib.c in MiniUPnP ngiflib 0.4 lacks certain checks against width and height, which allows remote attackers to cause a denial of service (WritePixels heap-based buffer overflow and application crash) or possibly have unspecified other impact via a crafted GIF file.
0
Attacker Value
Unknown
CVE-2018-7316
Disclosure Date: February 22, 2018 (last updated November 26, 2024)
Arbitrary File Upload exists in the Proclaim 9.1.1 component for Joomla! via a mediafileform action.
0
Attacker Value
Unknown
CVE-2018-7317
Disclosure Date: February 22, 2018 (last updated November 26, 2024)
Backup Download exists in the Proclaim 9.1.1 component for Joomla! via a direct request for a .sql file under backup/.
0
Attacker Value
Unknown
CVE-2018-6506
Disclosure Date: February 12, 2018 (last updated November 26, 2024)
Cross-Site Scripting (XSS) exists in the Add Forum feature in the Administrative Panel in miniBB 3.2.2 via crafted use of an onload attribute of an SVG element in the supertitle field.
0
Attacker Value
Unknown
CVE-2014-9485
Disclosure Date: January 16, 2018 (last updated January 25, 2024)
Directory traversal vulnerability in the do_extract_currentfile function in miniunz.c in miniunzip in minizip before 1.1-5 might allow remote attackers to write to arbitrary files via a crafted entry in a ZIP archive.
0
Attacker Value
Unknown
CVE-2017-1000494
Disclosure Date: January 03, 2018 (last updated November 26, 2024)
Uninitialized stack variable vulnerability in NameValueParserEndElt (upnpreplyparse.c) in miniupnpd < 2.0 allows an attacker to cause Denial of Service (Segmentation fault and Memory Corruption) or possibly have unspecified other impact
0