Show filters
10 Total Results
Displaying 1-10 of 10
Sort by:
Attacker Value
Unknown
CVE-2016-0869
Disclosure Date: January 26, 2016 (last updated November 25, 2024)
Heap-based buffer overflow in MICROSYS PROMOTIC before 8.3.11 allows remote authenticated users to cause a denial of service via a malformed HTML document.
0
Attacker Value
Unknown
CVE-2014-9205
Disclosure Date: March 29, 2015 (last updated October 05, 2023)
Stack-based buffer overflow in the PmBase64Decode function in an unspecified demonstration application in MICROSYS PROMOTIC stable before 8.2.19 and PROMOTIC development before 8.3.2 allows remote attackers to execute arbitrary code by providing a large amount of data.
0
Attacker Value
Unknown
CVE-2011-4520
Disclosure Date: May 23, 2013 (last updated October 05, 2023)
Heap-based buffer overflow in an ActiveX component in MICROSYS PROMOTIC before 8.1.5 allows remote attackers to cause a denial of service via a crafted web page.
0
Attacker Value
Unknown
CVE-2011-4518
Disclosure Date: May 23, 2013 (last updated October 05, 2023)
Directory traversal vulnerability in the PmWebDir object in the web server in MICROSYS PROMOTIC before 8.1.5 allows remote attackers to read arbitrary files via unspecified vectors.
0
Attacker Value
Unknown
CVE-2011-4519
Disclosure Date: May 23, 2013 (last updated October 05, 2023)
Stack-based buffer overflow in an ActiveX component in MICROSYS PROMOTIC before 8.1.5 allows remote attackers to cause a denial of service via a crafted web page.
0
Attacker Value
Unknown
CVE-2011-4874
Disclosure Date: April 13, 2012 (last updated October 04, 2023)
Use-after-free vulnerability in MICROSYS PROMOTIC before 8.1.7 allows user-assisted remote attackers to execute arbitrary code or cause a denial of service (data corruption and application crash) via a crafted project (aka .pra) file.
0
Attacker Value
Unknown
CVE-2010-0189
Disclosure Date: February 23, 2010 (last updated October 04, 2023)
A certain ActiveX control in NOS Microsystems getPlus Download Manager (aka DLM or Downloader) 1.5.2.35, as used in Adobe Download Manager, improperly validates requests involving web sites that are not in subdomains, which allows remote attackers to force the download and installation of arbitrary programs via a crafted name for a download site.
0
Attacker Value
Unknown
CVE-2009-2564
Disclosure Date: July 21, 2009 (last updated October 04, 2023)
NOS Microsystems getPlus Download Manager, as used in Adobe Reader 1.6.2.36 and possibly other versions, Corel getPlus Download Manager before 1.5.0.48, and possibly other products, installs NOS\bin\getPlus_HelperSvc.exe with insecure permissions (Everyone:Full Control), which allows local users to gain SYSTEM privileges by replacing getPlus_HelperSvc.exe with a Trojan horse program, as demonstrated by use of getPlus Download Manager within Adobe Reader. NOTE: within Adobe Reader, the scope of this issue is limited because the program is deleted and the associated service is not automatically launched after a successful installation and reboot.
0
Attacker Value
Unknown
CVE-2008-5364
Disclosure Date: December 08, 2008 (last updated October 04, 2023)
Stack-based buffer overflow in the getPlus ActiveX control in gp.ocx 1.2.2.50 in NOS Microsystems getPlus Download Manager, as used for the Adobe Reader 8.1 installation process and other downloads, allows remote attackers to execute arbitrary code via unspecified vectors, a different issue than CVE-2008-4817.
0
Attacker Value
Unknown
CVE-2000-1173
Disclosure Date: January 09, 2001 (last updated February 22, 2025)
Microsys CyberPatrol uses weak encryption (trivial encoding) for credit card numbers and uses no encryption for the remainder of the information during registration, which could allow attackers to sniff network traffic and obtain this sensitive information.
0