flowpaper kayıtları
flowpaper üreticisine ait 23 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 1
- Düzeltme kaydı olan
- %4,3
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-125 Out-of-bounds Read4
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')3
- CWE-476 NULL Pointer Dereference3
- CWE-787 Out-of-bounds Write3
- CWE-416 Use After Free2
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer2
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
23 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
55Planlayın | CVE-2018-11686Kavram kanıtı | The Publish Service in FlexPaper (later renamed FlowPaper) 2.3.6 allows remote code execution via setup.php and change_config.php.flowpaper · flexpaper · CWE-20 | Kritik9,8 | — | %52,5 | 3 Tem 2019 |
40Planlayın | CVE-2020-23878İstismar yok | pdf2json v0.71 was discovered to contain a stack buffer overflow in the component XRef::fetch.flowpaper · pdf2json · CWE-787 | Kritik9,8 | — | %1,8 | 10 Kas 2021 |
35İzleyin | CVE-2018-14947İstismar yok | An issue has been found in PDF2JSON 0.69.flowpaper · pdf2json · CWE-119 | Yüksek8,8 | — | %1,6 | 5 Ağu 2018 |
35İzleyin | CVE-2018-14946İstismar yok | An issue has been found in PDF2JSON 0.69.flowpaper · pdf2json · CWE-119 | Yüksek8,8 | — | %1,6 | 5 Ağu 2018 |
31İzleyin | CVE-2020-18750İstismar yok | Buffer overflow in pdf2json 0.69 allows local users to execute arbitrary code by converting a crafted PDF file.flowpaper · pdf2json · CWE-120 | Yüksek7,8 | — | %0,5 | 5 Şub 2021 |
30İzleyin | CVE-2020-23879İstismar yok | pdf2json v0.71 was discovered to contain a NULL pointer dereference in the component ObjectStream::getObject.flowpaper · pdf2json · CWE-476 | Yüksek7,5 | — | %1,4 | 10 Kas 2021 |
24İzleyin | CVE-2014-9677İstismar yok | Cross-site scripting (XSS) vulnerability in FlexPaperViewer.swf in Flexpaper before 2.3.1 allows remote attackers to inject arbitrary web scflowpaper · flexpaper · CWE-79 | Orta6,1 | — | %1,2 | 17 Eki 2017 |
24İzleyin | CVE-2014-9678İstismar yok | FlexPaperViewer.swf in Flexpaper before 2.3.1 allows remote attackers to conduct content-spoofing attacks via the Swfile parameter.flowpaper · flexpaper · CWE-20 | Orta6,1 | — | %1,0 | 17 Eki 2017 |
22İzleyin | CVE-2020-19463İstismar yok | An issue has been found in function vfprintf in PDF2JSON 0.70 that allows attackers to cause a Denial of Service due to a stack overflow.flowpaper · pdf2json · CWE-770 | Orta5,5 | — | %0,7 | 21 Tem 2021 |
22İzleyin | CVE-2020-19464İstismar yok | An issue has been found in function XRef::fetch in PDF2JSON 0.70 that allows attackers to cause a Denial of Service due to a stack overflow flowpaper · pdf2json · CWE-770 | Orta5,5 | — | %0,7 | 21 Tem 2021 |
22İzleyin | CVE-2020-19474İstismar yok | An issue has been found in function Gfx::doShowText in PDF2JSON 0.70 that allows attackers to cause a Denial of Service due to an Use After flowpaper · pdf2json · CWE-416 | Orta5,5 | — | %0,7 | 21 Tem 2021 |
22İzleyin | CVE-2020-19467İstismar yok | An issue has been found in function DCTStream::transformDataUnit in PDF2JSON 0.70 that allows attackers to cause a Denial of Service due to flowpaper · pdf2json · CWE-416 | Orta5,5 | — | %0,7 | 21 Tem 2021 |
22İzleyin | CVE-2020-19469İstismar yok | An issue has been found in function DCTStream::reset in PDF2JSON 0.70 that allows attackers to cause a Denial of Service due to an invalid wflowpaper · pdf2json · CWE-787 | Orta5,5 | — | %0,6 | 21 Tem 2021 |
22İzleyin | CVE-2020-19470İstismar yok | An issue has been found in function DCTStream::getChar in PDF2JSON 0.70 that allows attackers to cause a Denial of Service due to a NULL poiflowpaper · pdf2json · CWE-476 | Orta5,5 | — | %0,6 | 21 Tem 2021 |
22İzleyin | CVE-2020-19471İstismar yok | An issue has been found in function DCTStream::decodeImage in PDF2JSON 0.70 that allows attackers to cause a Denial of Service due to an invflowpaper · pdf2json · CWE-125 | Orta5,5 | — | %0,6 | 21 Tem 2021 |
22İzleyin | CVE-2020-19472İstismar yok | An issue has been found in function DCTStream::readHuffSym in PDF2JSON 0.70 that allows attackers to cause a Denial of Service due to an invflowpaper · pdf2json · CWE-125 | Orta5,5 | — | %0,6 | 21 Tem 2021 |
22İzleyin | CVE-2020-19473İstismar yok | An issue has been found in function DCTStream::decodeImage in PDF2JSON 0.70 that allows attackers to cause a Denial of Service due to an uncflowpaper · pdf2json · CWE-755 | Orta5,5 | — | %0,6 | 21 Tem 2021 |
22İzleyin | CVE-2020-19475İstismar yok | An issue has been found in function CCITTFaxStream::lookChar in PDF2JSON 0.70 that allows attackers to cause a Denial of Service due to an iflowpaper · pdf2json · CWE-787 | Orta5,5 | — | %0,6 | 21 Tem 2021 |
22İzleyin | CVE-2020-19468İstismar yok | An issue has been found in function EmbedStream::getChar in PDF2JSON 0.70 that allows attackers to cause a Denial of Service due to a null pflowpaper · pdf2json · CWE-476 | Orta5,5 | — | %0,6 | 21 Tem 2021 |
22İzleyin | CVE-2020-19465İstismar yok | An issue has been found in function ObjectStream::getObject in PDF2JSON 0.70 that allows attackers to cause a Denial of Service due to an inflowpaper · pdf2json · CWE-125 | Orta5,5 | — | %0,6 | 21 Tem 2021 |
22İzleyin | CVE-2020-19466İstismar yok | An issue has been found in function DCTStream::transformDataUnit in PDF2JSON 0.70 that allows attackers to cause a Denial of Service due to flowpaper · pdf2json · CWE-125 | Orta5,5 | — | %0,6 | 21 Tem 2021 |
21İzleyin | CVE-2023-5200İstismar yok | flowpaper <= 2.0.3 - Authenticated (Contributor+) Stored Cross-Site Scripting via Shortcodeflowpaper · flowpaper · CWE-79 | Orta5,4 | — | %0,5 | 20 Eki 2023 |
21İzleyin | CVE-2023-40197İstismar yok | WordPress flowpaper Plugin <= 1.9.9 is vulnerable to Cross Site Scripting (XSS)flowpaper · flowpaper · CWE-79 | Orta5,4 | — | %0,4 | 4 Eyl 2023 |
- CVE-2018-1168655Planlayın
The Publish Service in FlexPaper (later renamed FlowPaper) 2.3.6 allows remote code execution via setup.php and change_config.php.
KritikCVSS 9,8Kavram kanıtıEPSS %53flowpaper · flexpaper3 Tem 2019
- CVE-2020-2387840Planlayın
pdf2json v0.71 was discovered to contain a stack buffer overflow in the component XRef::fetch.
KritikCVSS 9,8İstismar yokEPSS %2flowpaper · pdf2json10 Kas 2021
- CVE-2018-1494735İzleyin
An issue has been found in PDF2JSON 0.69.
YüksekCVSS 8,8İstismar yokEPSS %2flowpaper · pdf2json5 Ağu 2018
- CVE-2018-1494635İzleyin
An issue has been found in PDF2JSON 0.69.
YüksekCVSS 8,8İstismar yokEPSS %2flowpaper · pdf2json5 Ağu 2018
- CVE-2020-1875031İzleyin
Buffer overflow in pdf2json 0.69 allows local users to execute arbitrary code by converting a crafted PDF file.
YüksekCVSS 7,8İstismar yokEPSS %1flowpaper · pdf2json5 Şub 2021
- CVE-2020-2387930İzleyin
pdf2json v0.71 was discovered to contain a NULL pointer dereference in the component ObjectStream::getObject.
YüksekCVSS 7,5İstismar yokEPSS %1flowpaper · pdf2json10 Kas 2021
- CVE-2014-967724İzleyin
Cross-site scripting (XSS) vulnerability in FlexPaperViewer.swf in Flexpaper before 2.3.1 allows remote attackers to inject arbitrary web sc
OrtaCVSS 6,1İstismar yokEPSS %1flowpaper · flexpaper17 Eki 2017
- CVE-2014-967824İzleyin
FlexPaperViewer.swf in Flexpaper before 2.3.1 allows remote attackers to conduct content-spoofing attacks via the Swfile parameter.
OrtaCVSS 6,1İstismar yokEPSS %1flowpaper · flexpaper17 Eki 2017
- CVE-2020-1946322İzleyin
An issue has been found in function vfprintf in PDF2JSON 0.70 that allows attackers to cause a Denial of Service due to a stack overflow.
OrtaCVSS 5,5İstismar yokEPSS %1flowpaper · pdf2json21 Tem 2021
- CVE-2020-1946422İzleyin
An issue has been found in function XRef::fetch in PDF2JSON 0.70 that allows attackers to cause a Denial of Service due to a stack overflow
OrtaCVSS 5,5İstismar yokEPSS %1flowpaper · pdf2json21 Tem 2021
- CVE-2020-1947422İzleyin
An issue has been found in function Gfx::doShowText in PDF2JSON 0.70 that allows attackers to cause a Denial of Service due to an Use After
OrtaCVSS 5,5İstismar yokEPSS %1flowpaper · pdf2json21 Tem 2021
- CVE-2020-1946722İzleyin
An issue has been found in function DCTStream::transformDataUnit in PDF2JSON 0.70 that allows attackers to cause a Denial of Service due to
OrtaCVSS 5,5İstismar yokEPSS %1flowpaper · pdf2json21 Tem 2021
- CVE-2020-1946922İzleyin
An issue has been found in function DCTStream::reset in PDF2JSON 0.70 that allows attackers to cause a Denial of Service due to an invalid w
OrtaCVSS 5,5İstismar yokEPSS %1flowpaper · pdf2json21 Tem 2021
- CVE-2020-1947022İzleyin
An issue has been found in function DCTStream::getChar in PDF2JSON 0.70 that allows attackers to cause a Denial of Service due to a NULL poi
OrtaCVSS 5,5İstismar yokEPSS %1flowpaper · pdf2json21 Tem 2021
- CVE-2020-1947122İzleyin
An issue has been found in function DCTStream::decodeImage in PDF2JSON 0.70 that allows attackers to cause a Denial of Service due to an inv
OrtaCVSS 5,5İstismar yokEPSS %1flowpaper · pdf2json21 Tem 2021
- CVE-2020-1947222İzleyin
An issue has been found in function DCTStream::readHuffSym in PDF2JSON 0.70 that allows attackers to cause a Denial of Service due to an inv
OrtaCVSS 5,5İstismar yokEPSS %1flowpaper · pdf2json21 Tem 2021
- CVE-2020-1947322İzleyin
An issue has been found in function DCTStream::decodeImage in PDF2JSON 0.70 that allows attackers to cause a Denial of Service due to an unc
OrtaCVSS 5,5İstismar yokEPSS %1flowpaper · pdf2json21 Tem 2021
- CVE-2020-1947522İzleyin
An issue has been found in function CCITTFaxStream::lookChar in PDF2JSON 0.70 that allows attackers to cause a Denial of Service due to an i
OrtaCVSS 5,5İstismar yokEPSS %1flowpaper · pdf2json21 Tem 2021
- CVE-2020-1946822İzleyin
An issue has been found in function EmbedStream::getChar in PDF2JSON 0.70 that allows attackers to cause a Denial of Service due to a null p
OrtaCVSS 5,5İstismar yokEPSS %1flowpaper · pdf2json21 Tem 2021
- CVE-2020-1946522İzleyin
An issue has been found in function ObjectStream::getObject in PDF2JSON 0.70 that allows attackers to cause a Denial of Service due to an in
OrtaCVSS 5,5İstismar yokEPSS %1flowpaper · pdf2json21 Tem 2021
- CVE-2020-1946622İzleyin
An issue has been found in function DCTStream::transformDataUnit in PDF2JSON 0.70 that allows attackers to cause a Denial of Service due to
OrtaCVSS 5,5İstismar yokEPSS %1flowpaper · pdf2json21 Tem 2021
- CVE-2023-520021İzleyin
flowpaper <= 2.0.3 - Authenticated (Contributor+) Stored Cross-Site Scripting via Shortcode
OrtaCVSS 5,4İstismar yokEPSS %1flowpaper · flowpaper20 Eki 2023
- CVE-2023-4019721İzleyin
WordPress flowpaper Plugin <= 1.9.9 is vulnerable to Cross Site Scripting (XSS)
OrtaCVSS 5,4İstismar yokEPSS %0flowpaper · flowpaper4 Eyl 2023