Show filters
39 Total Results
Displaying 31-39 of 39
Sort by:
Attacker Value
Unknown

CVE-2018-16769

Disclosure Date: September 10, 2018 (last updated November 27, 2024)
In WAVM through 2018-07-26, a crafted file sent to the WebAssembly Virtual Machine may cause a denial of service (application crash) or possibly have unspecified other impact because libRuntime.so!llvm::InstructionCombiningPass::runOnFunction is mishandled.
0
Attacker Value
Unknown

CVE-2018-16764

Disclosure Date: September 10, 2018 (last updated November 27, 2024)
In WAVM through 2018-07-26, a crafted file sent to the WebAssembly Virtual Machine may cause a denial of service (application crash) or possibly have unspecified other impact because of an IR::FunctionValidationContext::catch_all heap-based buffer over-read.
0
Attacker Value
Unknown

CVE-2018-16766

Disclosure Date: September 10, 2018 (last updated November 27, 2024)
In WAVM through 2018-07-26, a crafted file sent to the WebAssembly Virtual Machine may cause a denial of service (application crash) or possibly have unspecified other impact because Errors::unreachable() is reached.
0
Attacker Value
Unknown

CVE-2016-7972

Disclosure Date: March 03, 2017 (last updated November 08, 2023)
The check_allocations function in libass/ass_shaper.c in libass before 0.13.4 allows remote attackers to cause a denial of service (memory allocation failure) via unspecified vectors.
0
Attacker Value
Unknown

CVE-2016-7970

Disclosure Date: March 03, 2017 (last updated November 08, 2023)
Buffer overflow in the calc_coeff function in libass/ass_blur.c in libass before 0.13.4 allows remote attackers to cause a denial of service via unspecified vectors.
0
Attacker Value
Unknown

CVE-2016-7969

Disclosure Date: March 03, 2017 (last updated November 08, 2023)
The wrap_lines_smart function in ass_render.c in libass before 0.13.4 allows remote attackers to cause a denial of service (out-of-bounds read) via unspecified vectors, related to "0/3 line wrapping equalization."
Attacker Value
Unknown

CVE-2014-7205

Disclosure Date: October 08, 2014 (last updated October 05, 2023)
Eval injection vulnerability in the internals.batch function in lib/batch.js in the bassmaster plugin before 1.5.2 for the hapi server framework for Node.js allows remote attackers to execute arbitrary Javascript code via unspecified vectors.
0
Attacker Value
Unknown

CVE-2013-3577

Disclosure Date: July 15, 2013 (last updated October 05, 2023)
SQL injection vulnerability in the Help Desk application in Wave EMBASSY Remote Administration Server (ERAS) allows remote attackers to execute arbitrary SQL commands via the ct100$4MainController$TextBoxSearchValue parameter (aka the search field).
0
Attacker Value
Unknown

CVE-2013-3578

Disclosure Date: July 15, 2013 (last updated October 05, 2023)
SQL injection vulnerability in the Help Desk application in Wave EMBASSY Remote Administration Server (ERAS) allows remote authenticated users to execute arbitrary SQL commands via the ct100$4MainController$TextBoxSearchValue parameter (aka the search field), leading to execution of operating-system commands.
0