Show filters
5 Total Results
Displaying 1-5 of 5
Sort by:
Attacker Value
Unknown
CVE-2023-35037
Disclosure Date: December 13, 2024 (last updated December 18, 2024)
Missing Authorization vulnerability in Surfer Surfer allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Surfer: from n/a through 1.3.2.357.
0
Attacker Value
Unknown
CVE-2024-49299
Disclosure Date: October 17, 2024 (last updated October 18, 2024)
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Surfer allows SQL Injection.This issue affects Surfer: from n/a through 1.5.0.502.
0
Attacker Value
Unknown
CVE-2020-7826
Disclosure Date: July 15, 2020 (last updated February 21, 2025)
EyeSurfer BflyInstallerX.ocx v1.0.0.16 and earlier versions contain a vulnerability that could allow remote files to be download by setting the arguments to the vulnerable method. This can be leveraged for code execution. When the vulnerable method is called, they fail to properly check the parameters that are passed to it.
0
Attacker Value
Unknown
CVE-2004-2087
Disclosure Date: February 08, 2004 (last updated February 22, 2025)
Unknown vulnerability in SandSurfer before 1.7.0 allows remote attackers to gain access as a logged-in user.
0
Attacker Value
Unknown
CVE-2002-1889
Disclosure Date: December 31, 2002 (last updated February 22, 2025)
Off-by-one buffer overflow in the context_action function in context.c of Logsurfer 1.41 through 1.5a allows remote attackers to cause a denial of service (crash) via a malformed log entry.
0