Aggregator
NightSpire
11 months ago
cohenido
NightSpire
11 months ago
cohenido
CVE-2007-4652 | PHP up to 4.4.5 Session Extension link following (EDB-10557 / Nessus ID 26038)
11 months ago
A vulnerability classified as problematic was found in PHP up to 4.4.5. This vulnerability affects unknown code of the component Session Extension. The manipulation leads to link following.
This vulnerability was named CVE-2007-4652. The attack needs to be approached locally. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-28575 | FreeImage 3.19.0 r1909 J2K Image opj_j2k_read_mct buffer overflow
11 months ago
A vulnerability has been found in FreeImage 3.19.0 r1909 and classified as critical. This vulnerability affects the function opj_j2k_read_mct of the component J2K Image Handler. The manipulation leads to buffer overflow.
This vulnerability was named CVE-2024-28575. The attack can be initiated remotely. There is no exploit available.
vuldb.com
CVE-2024-28576 | FreeImage 3.19.0 r1909 J2K Image opj_j2k_tcp_destroy buffer overflow
11 months ago
A vulnerability was found in FreeImage 3.19.0 r1909 and classified as critical. This issue affects the function opj_j2k_tcp_destroy of the component J2K Image Handler. The manipulation leads to buffer overflow.
The identification of this vulnerability is CVE-2024-28576. The attack may be initiated remotely. There is no exploit available.
vuldb.com
CVE-2024-28577 | FreeImage 3.19.0 r1909 JPEG Image jpeg_read_exif_profile_raw null pointer dereference
11 months ago
A vulnerability was found in FreeImage 3.19.0 r1909. It has been classified as problematic. Affected is the function jpeg_read_exif_profile_raw of the component JPEG Image Handler. The manipulation leads to null pointer dereference.
This vulnerability is traded as CVE-2024-28577. It is possible to launch the attack remotely. There is no exploit available.
vuldb.com
CVE-2024-28579 | FreeImage 3.19.0 r1909 HDR Image FreeImage_Unload buffer overflow
11 months ago
A vulnerability was found in FreeImage 3.19.0 r1909. It has been declared as critical. Affected by this vulnerability is the function FreeImage_Unload of the component HDR Image Handler. The manipulation leads to buffer overflow.
This vulnerability is known as CVE-2024-28579. The attack can be launched remotely. There is no exploit available.
vuldb.com
CVE-2024-28578 | FreeImage 3.19.0 r1909 RAS Image Load buffer overflow
11 months ago
A vulnerability classified as critical has been found in FreeImage 3.19.0 r1909. This affects the function Load of the component RAS Image Handler. The manipulation leads to buffer overflow.
This vulnerability is uniquely identified as CVE-2024-28578. It is possible to initiate the attack remotely. There is no exploit available.
vuldb.com
CVE-2024-28582 | FreeImage 3.19.0 r1909 HDR Image rgbe_RGBEToFloat buffer overflow
11 months ago
A vulnerability, which was classified as critical, has been found in FreeImage 3.19.0 r1909. This issue affects the function rgbe_RGBEToFloat of the component HDR Image Handler. The manipulation leads to buffer overflow.
The identification of this vulnerability is CVE-2024-28582. The attack may be initiated remotely. There is no exploit available.
vuldb.com
CVE-2024-28583 | FreeImage 3.19.0 r1909 XPM Image readLine buffer overflow
11 months ago
A vulnerability, which was classified as critical, was found in FreeImage 3.19.0 r1909. Affected is the function readLine of the component XPM Image Handler. The manipulation leads to buffer overflow.
This vulnerability is traded as CVE-2024-28583. It is possible to launch the attack remotely. There is no exploit available.
vuldb.com
CVE-2024-2129 | wpbits WPBITS Addons for Elementor Page Builder Plugin up to 1.3.4.2 on WordPress Heading Widget cross site scripting
11 months ago
A vulnerability was found in wpbits WPBITS Addons for Elementor Page Builder Plugin up to 1.3.4.2 on WordPress. It has been declared as problematic. This vulnerability affects unknown code of the component Heading Widget. The manipulation leads to cross site scripting.
This vulnerability was named CVE-2024-2129. The attack can be initiated remotely. There is no exploit available.
vuldb.com
CVE-2024-2459 | wpvncom UX Flat Plugin up to 4.1 on WordPress cross site scripting
11 months ago
A vulnerability was found in wpvncom UX Flat Plugin up to 4.1 on WordPress. It has been rated as problematic. This issue affects some unknown processing. The manipulation leads to cross site scripting.
The identification of this vulnerability is CVE-2024-2459. The attack may be initiated remotely. There is no exploit available.
vuldb.com
CVE-2008-2507 | Brown Bear Software Calcium 3.10/4.0.4 calcium40.pl CalendarName cross site scripting (EDB-31858 / XFDB-42704)
11 months ago
A vulnerability, which was classified as problematic, has been found in Brown Bear Software Calcium 3.10/4.0.4. This issue affects some unknown processing of the file calcium40.pl. The manipulation of the argument CalendarName leads to cross site scripting.
The identification of this vulnerability is CVE-2008-2507. The attack may be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2016-10079 | SAP GUI up to 7.40 on Windows SAPlpd input validation (EDB-41030)
11 months ago
A vulnerability has been found in SAP GUI up to 7.40 on Windows and classified as problematic. This vulnerability affects unknown code of the component SAPlpd. The manipulation leads to improper input validation.
This vulnerability was named CVE-2016-10079. The attack can be initiated remotely. Furthermore, there is an exploit available.
It is recommended to apply restrictive firewalling.
vuldb.com
CVE-2009-1542 | Microsoft Virtual Server 2005 access control (Nessus ID 39795 / ID 116509)
11 months ago
A vulnerability was found in Microsoft Virtual Server 2005. It has been classified as critical. This affects an unknown part. The manipulation leads to improper access controls.
This vulnerability is uniquely identified as CVE-2009-1542. It is possible to initiate the attack remotely. There is no exploit available.
vuldb.com
CVE-2009-1544 | Microsoft Windows Workstation Service resource management (MS09-041 / Nessus ID 40560)
11 months ago
A vulnerability classified as critical has been found in Microsoft Windows. Affected is an unknown function of the component Workstation Service. The manipulation leads to improper resource management.
This vulnerability is traded as CVE-2009-1544. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2009-1546 | Microsoft Windows Avifil32.dll numeric error (Nessus ID 40557 / ID 90517)
11 months ago
A vulnerability was found in Microsoft Windows. It has been rated as critical. This issue affects some unknown processing in the library Avifil32.dll. The manipulation leads to numeric error.
The identification of this vulnerability is CVE-2009-1546. The attack may be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2009-2531 | Microsoft Internet Explorer 6/6 SP1/7/8 Data Stream Header code injection (MS09-054 / EDB-9893)
11 months ago
A vulnerability has been found in Microsoft Internet Explorer 6/6 SP1/7/8 and classified as critical. Affected by this vulnerability is an unknown functionality of the component Data Stream Header Handler. The manipulation leads to code injection.
This vulnerability is known as CVE-2009-2531. The attack can be launched remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2009-2530 | Microsoft Windows code injection (EDB-9893 / Nessus ID 42110)
11 months ago
A vulnerability, which was classified as very critical, was found in Microsoft Windows. Affected is an unknown function. The manipulation leads to code injection.
This vulnerability is traded as CVE-2009-2530. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com