Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
multiple vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2006-1101
The (1) sgetstr and (2) getint functions in Sauerbraten 2006_02_28, as derived from the Cube engine, allow remote malicious users to cause a denial of service (segmentation fault) via long streams of input data that trigger an out-of-bounds read, as demonstrated using SV_EXT tag ...
Sauerbraten Sauerbraten 2006-02-28
Sauerbraten Cube 2005-08-09
2 EDB exploits
NA
CVE-2010-1299
Multiple PHP remote file inclusion vulnerabilities in DynPG CMS 4.1.0, and possibly earlier, when magic_quotes_gpc is disabled and register_globals is enabled, allow remote malicious users to execute arbitrary PHP code via a URL in the (1) DefineRootToTool parameter to counter.ph...
Dynpg Dynpg
2 EDB exploits
NA
CVE-2015-1203
Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none
7.8
CVSSv3
CVE-2023-35004
An integer overflow vulnerability exists in the VZT longest_len value allocation functionality of GTKWave 3.3.115. A specially crafted .vzt file can lead to arbitrary code execution. A victim would need to open a malicious file to trigger this vulnerability.
Tonybybell Gtkwave 3.3.115
7.8
CVSSv3
CVE-2023-35057
An integer overflow vulnerability exists in the LXT2 lxt2_rd_trace value elements allocation functionality of GTKWave 3.3.115. A specially crafted .lxt2 file can lead to memory corruption. A victim would need to open a malicious file to trigger this vulnerability.
Tonybybell Gtkwave 3.3.115
7.8
CVSSv3
CVE-2023-35128
An integer overflow vulnerability exists in the fstReaderIterBlocks2 time_table tsec_nitems functionality of GTKWave 3.3.115. A specially crafted .fst file can lead to memory corruption. A victim would need to open a malicious file to trigger this vulnerability.
Tonybybell Gtkwave 3.3.115
6.5
CVSSv3
CVE-2014-5011
DOMPDF prior to 0.6.2 allows Information Disclosure.
Dompdf Project Dompdf
6.5
CVSSv3
CVE-2014-5012
DOMPDF prior to 0.6.2 allows denial of service.
Dompdf Project Dompdf
NA
CVE-2010-1823
Use-after-free vulnerability in WebKit before r65958, as used in Google Chrome prior to 6.0.472.59, allows remote malicious users to cause a denial of service or possibly have unspecified other impact via vectors that trigger use of document APIs such as document.close during par...
Google Chrome
Apple Itunes
Apple Safari
NA
CVE-2010-2264
The Cascading Style Sheets (CSS) implementation in WebKit in Apple Safari prior to 5.0 on Mac OS X 10.5 up to and including 10.6 and Windows, and prior to 4.1 on Mac OS X 10.4, does not properly handle the :visited pseudo-class, which allows remote malicious users to obtain sensi...
Apple Safari
Apple Safari 4.0
Apple Safari 4.0.0b
Apple Safari 4.0.1
Apple Safari 4.0.2
Apple Safari 4.0.3
Apple Safari 4.0.4
Apple Webkit
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
buffer overflow
type confusion
server-side request forgery
CVE-2024-38440
CVE-2024-27801
CVE-2024-5868
CVE-2024-0582
CVE-2024-37643
CVE-2024-3105
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
4
5
6
7
8
9
10
NEXT »