Vulnerabilities (CVE)

Filtered by CWE-123
Total 23 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2018-12036 1 Owasp 1 Dependency-check 2024-02-04 6.8 MEDIUM 7.8 HIGH
OWASP Dependency-Check before 3.2.0 allows attackers to write to arbitrary files via a crafted archive that holds directory traversal filenames.
CVE-2017-10994 1 Foxitsoftware 2 Foxit Reader, Phantompdf 2024-02-04 9.3 HIGH 7.3 HIGH
Foxit Reader before 8.3.1 and PhantomPDF before 8.3.1 have an Arbitrary Write vulnerability, which allows remote attackers to execute arbitrary code via a crafted document.
CVE-2015-8271 1 Rtmpdump Project 1 Rtmpdump 2024-02-04 7.5 HIGH 9.8 CRITICAL
The AMF3CD_AddProp function in amf.c in RTMPDump 2.4 allows remote RTMP Media servers to execute arbitrary code.