Show filters
53 Total Results
Displaying 31-40 of 53
Sort by:
Attacker Value
Unknown

CVE-2019-25009

Disclosure Date: December 31, 2020 (last updated February 22, 2025)
An issue was discovered in the http crate before 0.1.20 for Rust. The HeaderMap::Drain API can use a raw pointer, defeating soundness.
Attacker Value
Unknown

CVE-2020-25574

Disclosure Date: September 14, 2020 (last updated February 22, 2025)
An issue was discovered in the http crate before 0.1.20 for Rust. An integer overflow in HeaderMap::reserve() could result in denial of service (e.g., an infinite loop).
Attacker Value
Unknown

CVE-2017-18587

Disclosure Date: August 26, 2019 (last updated November 27, 2024)
An issue was discovered in the hyper crate before 0.9.18 for Rust. It mishandles newlines in headers.
0
Attacker Value
Unknown

CVE-2016-10932

Disclosure Date: August 26, 2019 (last updated November 27, 2024)
An issue was discovered in the hyper crate before 0.9.4 for Rust on Windows. There is an HTTPS man-in-the-middle vulnerability because hostname verification was omitted.
0
Attacker Value
Unknown

CVE-2018-3756

Disclosure Date: June 01, 2018 (last updated November 26, 2024)
Hyperledger Iroha versions v1.0_beta and v1.0.0_beta-1 are vulnerable to transaction and block signature verification bypass in the transaction and block validator allowing a single node to sign a transaction and/or block multiple times, each with a random nonce, and have other validating nodes accept them as separate valid signatures.
0
Attacker Value
Unknown

CVE-2018-10205

Disclosure Date: April 19, 2018 (last updated November 26, 2024)
hyperstart 1.0.0 in HyperHQ Hyper has memory leaks in the container_setup_modules and hyper_rescan_scsi functions in container.c, related to runV 1.0.0 for Docker.
0
Attacker Value
Unknown

CVE-2018-9862

Disclosure Date: April 09, 2018 (last updated November 26, 2024)
util.c in runV 1.0.0 for Docker mishandles a numeric username, which allows attackers to obtain root access by leveraging the presence of an initial numeric value on an /etc/passwd line, and then issuing a "docker exec" command with that value in the -u argument, a similar issue to CVE-2016-3697.
0
Attacker Value
Unknown

CVE-2012-2924

Disclosure Date: May 21, 2012 (last updated October 04, 2023)
PHP remote file inclusion vulnerability in admin/setup.inc.php in Hypermethod eLearning Server 4G allows remote attackers to execute arbitrary PHP code via a URL in the path parameter.
0
Attacker Value
Unknown

CVE-2012-2923

Disclosure Date: May 21, 2012 (last updated October 04, 2023)
SQL injection vulnerability in news.php4 in Hypermethod eLearning Server 4G allows remote attackers to execute arbitrary SQL commands via the nid parameter.
0
Attacker Value
Unknown

CVE-2010-4339

Disclosure Date: January 14, 2011 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in Hypermail 2.2.0 allows remote attackers to inject arbitrary web script or HTML via a crafted From address, which is not properly handled when indexing messages.
0