Show filters
50 Total Results
Displaying 31-40 of 50
Sort by:
Attacker Value
Unknown
CVE-2018-10196
Disclosure Date: May 30, 2018 (last updated November 08, 2023)
NULL pointer dereference vulnerability in the rebuild_vlists function in lib/dotgen/conc.c in the dotgen library in Graphviz 2.40.1 allows remote attackers to cause a denial of service (application crash) via a crafted file.
0
Attacker Value
Unknown
CVE-2014-1235
Disclosure Date: August 07, 2017 (last updated November 26, 2024)
Stack-based buffer overflow in the "yyerror" function in Graphviz 2.34.0 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted file. NOTE: This vulnerability exists due to an incomplete fix for CVE-2014-0978.
0
Attacker Value
Unknown
CVE-2014-9157
Disclosure Date: December 03, 2014 (last updated July 20, 2024)
Format string vulnerability in the yyerror function in lib/cgraph/scan.l in Graphviz allows remote attackers to have unspecified impact via format string specifiers in unknown vectors, which are not properly handled in an error string.
0
Attacker Value
Unknown
CVE-2014-6654
Disclosure Date: September 23, 2014 (last updated October 05, 2023)
The wTrootrooTvIzle (aka com.wTrootrooTvIzle) application 0.1 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.
0
Attacker Value
Unknown
CVE-2014-5886
Disclosure Date: September 12, 2014 (last updated October 05, 2023)
The iVysilani ceske televize (aka cz.motion.ivysilani) application 1.6 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.
0
Attacker Value
Unknown
CVE-2014-0978
Disclosure Date: January 10, 2014 (last updated October 05, 2023)
Stack-based buffer overflow in the yyerror function in lib/cgraph/scan.l in Graphviz 2.34.0 allows remote attackers to have unspecified impact via a long line in a dot file.
0
Attacker Value
Unknown
CVE-2014-1236
Disclosure Date: January 10, 2014 (last updated October 05, 2023)
Stack-based buffer overflow in the chkNum function in lib/cgraph/scan.l in Graphviz 2.34.0 allows remote attackers to have unspecified impact via vectors related to a "badly formed number" and a "long digit list."
0
Attacker Value
Unknown
CVE-2008-5198
Disclosure Date: November 21, 2008 (last updated October 04, 2023)
SQL injection vulnerability in memberlist.php in Acmlmboard 1.A2 allows remote attackers to execute arbitrary SQL commands via the pow parameter.
0
Attacker Value
Unknown
CVE-2008-4555
Disclosure Date: October 14, 2008 (last updated October 04, 2023)
Stack-based buffer overflow in the push_subg function in parser.y (lib/graph/parser.c) in Graphviz 2.20.2, and possibly earlier versions, allows user-assisted remote attackers to cause a denial of service (memory corruption) or execute arbitrary code via a DOT file with a large number of Agraph_t elements.
0
Attacker Value
Unknown
CVE-2008-3129
Disclosure Date: July 10, 2008 (last updated October 04, 2023)
Multiple SQL injection vulnerabilities in index.php in Catviz 0.4 beta 1 allow remote attackers to execute arbitrary SQL commands via the (1) foreign_key_value parameter in the news page and (2) webpage parameter in the webpage_multi_edit form.
0