Show filters
100 Total Results
Displaying 71-80 of 100
Sort by:
Attacker Value
Unknown

CVE-2017-12445

Disclosure Date: August 17, 2017 (last updated November 26, 2024)
The JB2BitmapCoder::code_row_by_refinement function in jb2/bmpcoder.cpp in minidjvu 0.8 can cause a denial of service (invalid memory read and application crash) via a crafted djvu file.
0
Attacker Value
Unknown

CVE-2017-12441

Disclosure Date: August 17, 2017 (last updated November 26, 2024)
The row_is_empty function in base/4bitmap.c:274 in minidjvu 0.8 can cause a denial of service (invalid memory read and application crash) via a crafted djvu file.
0
Attacker Value
Unknown

CVE-2015-5372

Disclosure Date: September 28, 2015 (last updated October 05, 2023)
The SAML 2.0 implementation in AdNovum nevisAuth 4.13.0.0 before 4.18.3.1, when using SAML POST-Binding, does not match all attributes of the X.509 certificate embedded in the assertion against the certificate from the identity provider (IdP), which allows remote attackers to inject arbitrary SAML assertions via a crafted certificate.
0
Attacker Value
Unknown

CVE-2012-6535

Disclosure Date: December 02, 2013 (last updated October 05, 2023)
DjVuLibre before 3.5.25.3, as used in Evince, Sumatra PDF Reader, VuDroid, and other products, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted DjVu (aka .djv) file.
0
Attacker Value
Unknown

CVE-2010-2338

Disclosure Date: June 18, 2010 (last updated October 04, 2023)
Multiple SQL injection vulnerabilities in redir.asp in VU Web Visitor Analyst allow remote attackers to execute arbitrary SQL commands via the (1) username or (2) password parameter. NOTE: some of these details are obtained from third party information.
0
Attacker Value
Unknown

CVE-2008-6587

Disclosure Date: April 03, 2009 (last updated October 04, 2023)
Cross-site request forgery (CSRF) vulnerability in index.tmpl in Vuze (formerly Azureus HTML WebUI), probably 0.7.6, allows remote attackers to hijack the authentication of users for requests that force the download of arbitrary torrent files via the upurl parameter.
0
Attacker Value
Unknown

CVE-2009-0182

Disclosure Date: January 20, 2009 (last updated October 04, 2023)
Buffer overflow in VUPlayer 2.49 and earlier allows user-assisted attackers to execute arbitrary code via a long URL in a File line in a .pls file, as demonstrated by an http URL on a File1 line.
Attacker Value
Unknown

CVE-2009-0181

Disclosure Date: January 20, 2009 (last updated October 04, 2023)
Buffer overflow in VUPlayer allows user-assisted attackers to have an unknown impact via a long file, as demonstrated by a file composed entirely of 'A' characters.
0
Attacker Value
Unknown

CVE-2009-0174

Disclosure Date: January 20, 2009 (last updated October 04, 2023)
Stack-based buffer overflow in VUPlayer 2.49 allows remote attackers to execute arbitrary code via a long .asf URI in the HREF attribute of a REF element in a .asx file.
0
Attacker Value
Unknown

CVE-2008-4922

Disclosure Date: November 04, 2008 (last updated October 04, 2023)
Buffer overflow in the DjVu ActiveX Control 3.0 for Microsoft Office (DjVu_ActiveX_MSOffice.dll) allows remote attackers to execute arbitrary code via a long (1) ImageURL property, and possibly the (2) Mode, (3) Page, or (4) Zoom properties.
0