Show filters
31 Total Results
Displaying 21-30 of 31
Sort by:
Attacker Value
Unknown

CVE-2021-24827

Disclosure Date: November 08, 2021 (last updated February 23, 2025)
The Asgaros Forum WordPress plugin before 1.15.13 does not validate and escape user input when subscribing to a topic before using it in a SQL statement, leading to an unauthenticated SQL injection issue
Attacker Value
Unknown

CVE-2021-30502

Disclosure Date: April 25, 2021 (last updated November 28, 2024)
The unofficial vscode-ghc-simple (aka Simple Glasgow Haskell Compiler) extension before 0.2.3 for Visual Studio Code allows remote code execution via a crafted workspace configuration with replCommand.
Attacker Value
Unknown

CVE-2018-3976

Disclosure Date: February 06, 2019 (last updated November 27, 2024)
An exploitable out-of-bounds write exists in the CALS Raster file format-parsing functionality of Canvas Draw version 5.0.0.28. A specially crafted CAL image processed via the application can lead to an out-of-bounds write, overwriting arbitrary data. An attacker can deliver a CAL image to trigger this vulnerability and gain code execution.
Attacker Value
Unknown

CVE-2018-3980

Disclosure Date: February 06, 2019 (last updated November 27, 2024)
An exploitable out-of-bounds write exists in the TIFF-parsing functionality of Canvas Draw version 5.0.0. A specially crafted TIFF image processed via the application can lead to an out-of-bounds write, overwriting arbitrary data. An attacker can deliver a TIFF image to trigger this vulnerability and gain code execution.
Attacker Value
Unknown

CVE-2018-3973

Disclosure Date: February 06, 2019 (last updated November 27, 2024)
An exploitable out of bounds write exists in the CAL parsing functionality of Canvas Draw version 5.0.0. A specially crafted CAL image processed via the application can lead to an out of bounds write overwriting arbitrary data. An attacker can deliver a PCX image to trigger this vulnerability and gain code execution.
Attacker Value
Unknown

CVE-2018-3981

Disclosure Date: October 01, 2018 (last updated November 27, 2024)
An exploitable out-of-bounds write exists in the TIFF-parsing functionality of Canvas Draw version 5.0.0. An attacker can deliver a TIFF image to trigger this vulnerability and gain code execution.
Attacker Value
Unknown

CVE-2009-4829

Disclosure Date: April 27, 2010 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in the Automated Logout module 6.x-1.x before 6.x-1.7 and 6.x-2.x before 6.x-2.3 for Drupal allows remote authenticated users with administer autologout privileges to inject arbitrary web script or HTML via unspecified vectors.
0
Attacker Value
Unknown

CVE-2008-1321

Disclosure Date: March 13, 2008 (last updated October 04, 2023)
The FxIAList service in ASG-Sentry Network Manager 7.0.0 and earlier does require authentication, which allows remote attackers to cause a denial of service (service termination) via the exit command to TCP port 6162, or have other impacts via other commands.
0
Attacker Value
Unknown

CVE-2008-1320

Disclosure Date: March 13, 2008 (last updated October 04, 2023)
Multiple buffer overflows in ASG-Sentry Network Manager 7.0.0 and earlier allow remote attackers to execute arbitrary code or cause a denial of service (crash) via (1) a long request to FxIAList on TCP port 6162, or (2) an SNMP request with a long community string to FxAgent on UDP port 6161.
0
Attacker Value
Unknown

CVE-2008-1322

Disclosure Date: March 13, 2008 (last updated October 04, 2023)
The File Check Utility (fcheck.exe) in ASG-Sentry Network Manager 7.0.0 and earlier allows remote attackers to cause a denial of service (CPU consumption) or overwrite arbitrary files via a query string that specifies the -b option, probably due to an argument injection vulnerability.
0