Show filters
6 Total Results
Displaying 1-6 of 6
Sort by:
Attacker Value
Unknown

CVE-2012-0844

Disclosure Date: February 21, 2020 (last updated February 21, 2025)
Information-disclosure vulnerability in Netsurf through 2.8 due to a world-readable cookie jar.
Attacker Value
Unknown

CVE-2015-7507

Disclosure Date: February 18, 2020 (last updated February 21, 2025)
libnsbmp.c in Libnsbmp 0.1.2 allows context-dependent attackers to cause a denial of service (out-of-bounds read) via a crafted color table to the (1) bmp_decode_rgb or (2) bmp_decode_rle function.
Attacker Value
Unknown

CVE-2015-7505

Disclosure Date: February 18, 2020 (last updated February 21, 2025)
Stack-based buffer overflow in the gif_next_LZW function in libnsgif.c in Libnsgif 0.1.2 allows context-dependent attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted LZW stream in a GIF file.
Attacker Value
Unknown

CVE-2015-7506

Disclosure Date: February 18, 2020 (last updated February 21, 2025)
The gif_next_LZW function in libnsgif.c in Libnsgif 0.1.2 allows context-dependent attackers to cause a denial of service (out-of-bounds read and application crash) via a crafted LZW stream in a GIF file.
Attacker Value
Unknown

CVE-2015-7508

Disclosure Date: February 12, 2020 (last updated February 21, 2025)
Heap-based buffer overflow in the bmp_decode_rle function in libnsbmp.c in Libnsbmp 0.1.2 allows context-dependent attackers to cause a denial of service (application crash) or possibly execute arbitrary code via the last row of RLE data in a crafted BMP file.
Attacker Value
Unknown

CVE-2001-0972

Disclosure Date: August 31, 2001 (last updated February 22, 2025)
Surf-Net ASP Forum before 2.30 uses easily guessable cookies based on the UserID, which allows remote attackers to gain administrative privileges by calculating the value of the admin cookie (UserID 1), i.e. "0888888."
0