Show filters
39 Total Results
Displaying 31-39 of 39
Sort by:
Attacker Value
Unknown
CVE-2018-16769
Disclosure Date: September 10, 2018 (last updated November 27, 2024)
In WAVM through 2018-07-26, a crafted file sent to the WebAssembly Virtual Machine may cause a denial of service (application crash) or possibly have unspecified other impact because libRuntime.so!llvm::InstructionCombiningPass::runOnFunction is mishandled.
0
Attacker Value
Unknown
CVE-2018-16764
Disclosure Date: September 10, 2018 (last updated November 27, 2024)
In WAVM through 2018-07-26, a crafted file sent to the WebAssembly Virtual Machine may cause a denial of service (application crash) or possibly have unspecified other impact because of an IR::FunctionValidationContext::catch_all heap-based buffer over-read.
0
Attacker Value
Unknown
CVE-2018-16766
Disclosure Date: September 10, 2018 (last updated November 27, 2024)
In WAVM through 2018-07-26, a crafted file sent to the WebAssembly Virtual Machine may cause a denial of service (application crash) or possibly have unspecified other impact because Errors::unreachable() is reached.
0
Attacker Value
Unknown
CVE-2016-7972
Disclosure Date: March 03, 2017 (last updated November 08, 2023)
The check_allocations function in libass/ass_shaper.c in libass before 0.13.4 allows remote attackers to cause a denial of service (memory allocation failure) via unspecified vectors.
0
Attacker Value
Unknown
CVE-2016-7970
Disclosure Date: March 03, 2017 (last updated November 08, 2023)
Buffer overflow in the calc_coeff function in libass/ass_blur.c in libass before 0.13.4 allows remote attackers to cause a denial of service via unspecified vectors.
0
Attacker Value
Unknown
CVE-2016-7969
Disclosure Date: March 03, 2017 (last updated November 08, 2023)
The wrap_lines_smart function in ass_render.c in libass before 0.13.4 allows remote attackers to cause a denial of service (out-of-bounds read) via unspecified vectors, related to "0/3 line wrapping equalization."
0
Attacker Value
Unknown
CVE-2014-7205
Disclosure Date: October 08, 2014 (last updated October 05, 2023)
Eval injection vulnerability in the internals.batch function in lib/batch.js in the bassmaster plugin before 1.5.2 for the hapi server framework for Node.js allows remote attackers to execute arbitrary Javascript code via unspecified vectors.
0
Attacker Value
Unknown
CVE-2013-3577
Disclosure Date: July 15, 2013 (last updated October 05, 2023)
SQL injection vulnerability in the Help Desk application in Wave EMBASSY Remote Administration Server (ERAS) allows remote attackers to execute arbitrary SQL commands via the ct100$4MainController$TextBoxSearchValue parameter (aka the search field).
0
Attacker Value
Unknown
CVE-2013-3578
Disclosure Date: July 15, 2013 (last updated October 05, 2023)
SQL injection vulnerability in the Help Desk application in Wave EMBASSY Remote Administration Server (ERAS) allows remote authenticated users to execute arbitrary SQL commands via the ct100$4MainController$TextBoxSearchValue parameter (aka the search field), leading to execution of operating-system commands.
0