abisource records
4 published records for vendor abisource.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 3
- With a fix record
- 75%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer1
- CWE-74 Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')1
The weakness classes this vendor ships most often: where to look.
CWEAttack profile
All records
4 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
43Plan | CVE-2004-0645No exploit | Buffer overflow in the wvHandleDateTimePicture function in wv library (wvWare) 0.7.4 through 0.7.6 and 1.0.0 allows remote attackers to execwvware · wvware | Critical10.0 | — | 8.4% | Aug 6, 2004 |
35Monitor | CVE-2017-17529No exploit | af/util/xp/ut_go_file.cpp in AbiWord 3.0.2-2 does not validate strings before launching the program specified by the BROWSER environment varabisource · abiword · CWE-74 | High8.8 | — | 1.2% | Dec 14, 2017 |
31Monitor | CVE-2005-2964No exploit | Stack-based buffer overflow in AbiWord before 2.2.10 allows attackers to execute arbitrary code via the RTF import mechanism.abisource · community abiword | High7.5 | — | 4.6% | Sep 28, 2005 |
21Monitor | CVE-2005-2972No exploit | Multiple stack-based buffer overflows in the RTF import feature in AbiWord before 2.2.11 allow user-assisted attackers to execute arbitrary abisource · community abiword · CWE-119 | Medium5.1 | — | 4.1% | Oct 23, 2005 |
- CVE-2004-064543Plan
Buffer overflow in the wvHandleDateTimePicture function in wv library (wvWare) 0.7.4 through 0.7.6 and 1.0.0 allows remote attackers to exec
CriticalCVSS 10.0No exploitEPSS 8%wvware · wvwareAug 6, 2004
- CVE-2017-1752935Monitor
af/util/xp/ut_go_file.cpp in AbiWord 3.0.2-2 does not validate strings before launching the program specified by the BROWSER environment var
HighCVSS 8.8No exploitEPSS 1%abisource · abiwordDec 14, 2017
- CVE-2005-296431Monitor
Stack-based buffer overflow in AbiWord before 2.2.10 allows attackers to execute arbitrary code via the RTF import mechanism.
HighCVSS 7.5No exploitEPSS 5%abisource · community abiwordSep 28, 2005
- CVE-2005-297221Monitor
Multiple stack-based buffer overflows in the RTF import feature in AbiWord before 2.2.11 allow user-assisted attackers to execute arbitrary
MediumCVSS 5.1No exploitEPSS 4%abisource · community abiwordOct 23, 2005