Show filters
125 Total Results
Displaying 1-10 of 125
Sort by:
Attacker Value
Unknown
CVE-2025-0696
Disclosure Date: January 27, 2025 (last updated January 27, 2025)
A NULL Pointer Dereference vulnerability in Cesanta Frozen versions less than 1.7 allows an attacker to induce a crash of the component embedding the library by supplying a maliciously crafted JSON as input.
0
Attacker Value
Unknown
CVE-2025-0695
Disclosure Date: January 27, 2025 (last updated January 27, 2025)
An Allocation of Resources Without Limits or Throttling vulnerability in Cesanta Frozen versions less than 1.7 allows an attacker to induce a crash of the component embedding the library by supplying a maliciously crafted JSON as input.
0
Attacker Value
Unknown
CVE-2024-42392
Disclosure Date: November 18, 2024 (last updated November 20, 2024)
Improper Neutralization of Delimiters vulnerability in Cesanta Mongoose Web Server v7.14 allows to trigger an infinite loop bug if the input string contains unexpected characters.
0
Attacker Value
Unknown
CVE-2024-42391
Disclosure Date: November 18, 2024 (last updated November 20, 2024)
Use of Out-of-range Pointer Offset vulnerability in Cesanta Mongoose Web Server v7.14 allows an attacker to send an unexpected TLS packet and force the application to read unintended heap memory space.
0
Attacker Value
Unknown
CVE-2024-42390
Disclosure Date: November 18, 2024 (last updated November 20, 2024)
Use of Out-of-range Pointer Offset vulnerability in Cesanta Mongoose Web Server v7.14 allows an attacker to send an unexpected TLS packet and force the application to read unintended heap memory space.
0
Attacker Value
Unknown
CVE-2024-42389
Disclosure Date: November 18, 2024 (last updated November 20, 2024)
Use of Out-of-range Pointer Offset vulnerability in Cesanta Mongoose Web Server v7.14 allows an attacker to send an unexpected TLS packet and force the application to read unintended heap memory space.
0
Attacker Value
Unknown
CVE-2024-42388
Disclosure Date: November 18, 2024 (last updated November 20, 2024)
Use of Out-of-range Pointer Offset vulnerability in Cesanta Mongoose Web Server v7.14 allows an attacker to send an unexpected TLS packet and force the application to read unintended heap memory space.
0
Attacker Value
Unknown
CVE-2024-42387
Disclosure Date: November 18, 2024 (last updated November 20, 2024)
Use of Out-of-range Pointer Offset vulnerability in Cesanta Mongoose Web Server v7.14 allows an attacker to send an unexpected TLS packet and force the application to read unintended heap memory space.
0
Attacker Value
Unknown
CVE-2024-42386
Disclosure Date: November 18, 2024 (last updated November 20, 2024)
Use of Out-of-range Pointer Offset vulnerability in Cesanta Mongoose Web Server v7.14 allows an attacker to send an unexpected TLS packet and produce a segmentation fault on the application.
0
Attacker Value
Unknown
CVE-2024-42385
Disclosure Date: November 18, 2024 (last updated November 20, 2024)
Improper Neutralization of Delimiters vulnerability in Cesanta Mongoose Web Server v7.14 allows to trigger an out-of-bound memory write if the PEM certificate contains unexpected characters.
0