|
313421
|
6.5 |
MEDIUM
Network
|
xmlsoft
|
libxml2
|
libxml2, possibly before 2.5.0, does not properly detect recursion during entity expansion, which allows context-dependent attackers to cause a denial of service (memory and CPU consumption) via a cr…
|
CWE-776
XML Entity Expansion
|
CVE-2003-1564
|
2024-02-2 23:10 |
2003-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313422
|
7.8 |
HIGH
Local
|
apache
|
http_server
|
Buffer overflow in Apache 2.0.50 and earlier allows local users to gain apache privileges via a .htaccess file that causes the overflow during expansion of environment variables.
|
CWE-131
Incorrect Calculation of Buffer Size
|
CVE-2004-0747
|
2024-02-2 23:03 |
2004-10-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313423
|
9.8 |
CRITICAL
Network
|
oracle
|
database_server application_server e-business_suite enterprise_manager enterprise_manager_grid_control enterprise_manager_database_control collaboration_suite
|
Buffer overflow in extproc in Oracle 10g allows remote attackers to execute arbitrary code via environment variables in the library name, which are expanded after the length check is performed.
|
CWE-131
Incorrect Calculation of Buffer Size
|
CVE-2004-1363
|
2024-02-2 23:01 |
2004-08-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313424
|
9.8 |
CRITICAL
Network
|
invisible-island debian
|
lynx debian_linux
|
Stack-based buffer overflow in the HTrjis function in Lynx 2.8.6 and earlier allows remote NNTP servers to execute arbitrary code via certain article headers containing Asian characters that cause Ly…
|
CWE-131
Incorrect Calculation of Buffer Size
|
CVE-2005-3120
|
2024-02-2 23:00 |
2005-10-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313425
|
- |
|
-
|
-
|
Rejected reason: ** REJECT ** DO NOT USE THIS CVE ID. ConsultIDs: none. Reason: This CVE ID is unused by its CNA. Notes: none.
|
-
|
CVE-2024-25001
|
2024-02-2 18:15 |
2024-02-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313426
|
- |
|
joomla
|
joomla\!
|
Joomla! 1.03 does not restrict the number of "Search" Mambots, which allows remote attackers to cause a denial of service (resource consumption) via a large number of Search Mambots.
|
CWE-770
Allocation of Resources Without Limits or Throttling
|
CVE-2005-4650
|
2024-02-2 12:07 |
2005-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313427
|
7.5 |
HIGH
Network
|
microsoft
|
internet_information_server
|
FTP service in IIS 5.0 and earlier allows remote attackers to cause a denial of service via a wildcard sequence that generates a long string when it is expanded.
|
CWE-131
Incorrect Calculation of Buffer Size
|
CVE-2001-0334
|
2024-02-2 12:06 |
2001-06-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313428
|
9.8 |
CRITICAL
Network
|
sgi hp
|
irix hp-ux
|
Buffer overflow in FTP server in HPUX 11 allows remote attackers to execute arbitrary commands by creating a long pathname and calling the STAT command, which uses glob to generate long strings.
|
CWE-131
Incorrect Calculation of Buffer Size
|
CVE-2001-0248
|
2024-02-2 12:06 |
2001-06-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313429
|
9.8 |
CRITICAL
Network
|
hp oracle sgi
|
hp-ux solaris irix
|
Heap overflow in FTP daemon in Solaris 8 allows remote attackers to execute arbitrary commands by creating a long pathname and calling the LIST command, which uses glob to generate long strings.
|
CWE-131
Incorrect Calculation of Buffer Size
|
CVE-2001-0249
|
2024-02-2 12:06 |
2001-06-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313430
|
8.8 |
HIGH
Network
|
haxx
|
curl libcurl
|
Multiple stack-based buffer overflows in libcURL and cURL 7.12.1, and possibly other versions, allow remote malicious web servers to execute arbitrary code via base64 encoded replies that exceed the …
|
CWE-131
Incorrect Calculation of Buffer Size
|
CVE-2005-0490
|
2024-02-2 12:05 |
2005-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|