Show filters
247 Total Results
Displaying 91-100 of 247
Sort by:
Attacker Value
Unknown

CVE-2019-8269

Disclosure Date: March 08, 2019 (last updated November 27, 2024)
UltraVNC revision 1206 has stack-based Buffer overflow vulnerability in VNC client code inside FileTransfer module, which leads to a denial of service (DoS) condition. This attack appear to be exploitable via network connectivity. This vulnerability has been fixed in revision 1207.
Attacker Value
Unknown

CVE-2019-8275

Disclosure Date: March 08, 2019 (last updated November 27, 2024)
UltraVNC revision 1211 has multiple improper null termination vulnerabilities in VNC server code, which result in out-of-bound data being accessed by remote users. This attack appears to be exploitable via network connectivity. These vulnerabilities have been fixed in revision 1212.
Attacker Value
Unknown

CVE-2013-7468

Disclosure Date: March 07, 2019 (last updated November 27, 2024)
Simple Machines Forum (SMF) 2.0.4 allows PHP Code Injection via the index.php?action=admin;area=languages;sa=editlang dictionary parameter.
0
Attacker Value
Unknown

CVE-2013-7467

Disclosure Date: March 07, 2019 (last updated November 27, 2024)
Simple Machines Forum (SMF) 2.0.4 allows XSS via the index.php?action=pm;sa=settings;save sa parameter.
0
Attacker Value
Unknown

CVE-2013-7466

Disclosure Date: March 07, 2019 (last updated November 27, 2024)
Simple Machines Forum (SMF) 2.0.4 allows local file inclusion, with resultant remote code execution, in install.php via ../ directory traversal in the db_type parameter if install.php remains present after installation.
0
Attacker Value
Unknown

CVE-2019-8259

Disclosure Date: March 05, 2019 (last updated November 27, 2024)
UltraVNC revision 1198 contains multiple memory leaks (CWE-655) in VNC client code, which allow an attacker to read stack memory and can be abused for information disclosure. Combined with another vulnerability, it can be used to leak stack memory and bypass ASLR. This attack appears to be exploitable via network connectivity. These vulnerabilities have been fixed in revision 1199.
Attacker Value
Unknown

CVE-2019-8263

Disclosure Date: March 05, 2019 (last updated November 27, 2024)
UltraVNC revision 1205 has stack-based buffer overflow vulnerability in VNC client code inside ShowConnInfo routine, which leads to a denial of service (DoS) condition. This attack appear to be exploitable via network connectivity. User interaction is required to trigger this vulnerability. This vulnerability has been fixed in revision 1206.
Attacker Value
Unknown

CVE-2019-8262

Disclosure Date: March 05, 2019 (last updated November 27, 2024)
UltraVNC revision 1203 has multiple heap buffer overflow vulnerabilities in VNC client code inside Ultra decoder, which results in code execution. This attack appears to be exploitable via network connectivity. These vulnerabilities have been fixed in revision 1204.
Attacker Value
Unknown

CVE-2019-8258

Disclosure Date: March 05, 2019 (last updated November 27, 2024)
UltraVNC revision 1198 has a heap buffer overflow vulnerability in VNC client code which results code execution. This attack appears to be exploitable via network connectivity. This vulnerability has been fixed in revision 1199.
Attacker Value
Unknown

CVE-2019-6545

Disclosure Date: February 13, 2019 (last updated November 27, 2024)
AVEVA Software, LLC InduSoft Web Studio prior to Version 8.1 SP3 and InTouch Edge HMI (formerly InTouch Machine Edition) prior to Version 2017 Update. An unauthenticated remote user could use a specially crafted database connection configuration file to execute an arbitrary process on the server machine.