Show filters
5 Total Results
Displaying 1-5 of 5
Sort by:
Attacker Value
Unknown

CVE-2023-35037

Disclosure Date: December 13, 2024 (last updated December 18, 2024)
Missing Authorization vulnerability in Surfer Surfer allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Surfer: from n/a through 1.3.2.357.
0
Attacker Value
Unknown

CVE-2024-49299

Disclosure Date: October 17, 2024 (last updated October 18, 2024)
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Surfer allows SQL Injection.This issue affects Surfer: from n/a through 1.5.0.502.
0
Attacker Value
Unknown

CVE-2020-7826

Disclosure Date: July 15, 2020 (last updated February 21, 2025)
EyeSurfer BflyInstallerX.ocx v1.0.0.16 and earlier versions contain a vulnerability that could allow remote files to be download by setting the arguments to the vulnerable method. This can be leveraged for code execution. When the vulnerable method is called, they fail to properly check the parameters that are passed to it.
Attacker Value
Unknown

CVE-2004-2087

Disclosure Date: February 08, 2004 (last updated February 22, 2025)
Unknown vulnerability in SandSurfer before 1.7.0 allows remote attackers to gain access as a logged-in user.
0
Attacker Value
Unknown

CVE-2002-1889

Disclosure Date: December 31, 2002 (last updated February 22, 2025)
Off-by-one buffer overflow in the context_action function in context.c of Logsurfer 1.41 through 1.5a allows remote attackers to cause a denial of service (crash) via a malformed log entry.
0