Show filters
100 Total Results
Displaying 31-40 of 100
Sort by:
Attacker Value
Unknown
CVE-2021-3630
Disclosure Date: June 30, 2021 (last updated February 22, 2025)
An out-of-bounds write vulnerability was found in DjVuLibre in DJVU::DjVuTXT::decode() in DjVuText.cpp via a crafted djvu file which may lead to crash and segmentation fault. This flaw affects DjVuLibre versions prior to 3.5.28.
0
Attacker Value
Unknown
CVE-2021-3500
Disclosure Date: June 24, 2021 (last updated February 22, 2025)
A flaw was found in djvulibre-3.5.28 and earlier. A Stack overflow in function DJVU::DjVuDocument::get_djvu_file() via crafted djvu file may lead to application crash and other consequences.
0
Attacker Value
Unknown
CVE-2021-32492
Disclosure Date: June 24, 2021 (last updated February 22, 2025)
A flaw was found in djvulibre-3.5.28 and earlier. An out of bounds read in function DJVU::DataPool::has_data() via crafted djvu file may lead to application crash and other consequences.
0
Attacker Value
Unknown
CVE-2021-32493
Disclosure Date: June 24, 2021 (last updated February 22, 2025)
A flaw was found in djvulibre-3.5.28 and earlier. A heap buffer overflow in function DJVU::GBitmap::decode() via crafted djvu file may lead to application crash and other consequences.
0
Attacker Value
Unknown
CVE-2021-32490
Disclosure Date: June 24, 2021 (last updated February 22, 2025)
A flaw was found in djvulibre-3.5.28 and earlier. An out of bounds write in function DJVU::filter_bv() via crafted djvu file may lead to application crash and other consequences.
0
Attacker Value
Unknown
CVE-2021-32491
Disclosure Date: June 24, 2021 (last updated February 22, 2025)
A flaw was found in djvulibre-3.5.28 and earlier. An integer overflow in function render() in tools/ddjvu via crafted djvu file may lead to application crash and other consequences.
0
Attacker Value
Unknown
CVE-2020-26869
Disclosure Date: October 12, 2020 (last updated February 22, 2025)
ARC Informatique PcVue prior to version 12.0.17 is vulnerable to information exposure, allowing unauthorized users to access session data of legitimate users. This issue also affects third-party systems based on the Web Services Toolkit.
0
Attacker Value
Unknown
CVE-2020-26868
Disclosure Date: October 12, 2020 (last updated February 22, 2025)
ARC Informatique PcVue prior to version 12.0.17 is vulnerable to a denial-of-service attack due to the ability of an unauthorized user to modify information used to validate messages sent by legitimate web clients. This issue also affects third-party systems based on the Web Services Toolkit.
0
Attacker Value
Unknown
CVE-2020-26867
Disclosure Date: October 12, 2020 (last updated February 22, 2025)
ARC Informatique PcVue prior to version 12.0.17 is vulnerable due to the deserialization of untrusted data, which may allow an attacker to remotely execute arbitrary code on the web and mobile back-end server.
0
Attacker Value
Unknown
CVE-2020-10788
Disclosure Date: March 25, 2020 (last updated February 21, 2025)
openITCOCKPIT before 3.7.3 uses the 1fea123e07f730f76e661bced33a94152378611e API key rather than generating a random API Key for WebSocket connections.
0