Skip to content
Noroxi

wvware records

9 published records for vendor wvware.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
5
With a fix record
100%
Median publish → KEV
No record has entered KEV

Records by year

  1. 17

Bar: total · dark part: CISA KEV.

Recurring classes

The weakness classes this vendor ships most often: where to look.

CWE

All records

9 records
  • Buffer overflow in the wvHandleDateTimePicture function in wv library (wvWare) 0.7.4 through 0.7.6 and 1.0.0 allows remote attackers to exec

    CriticalCVSS 10.0No exploitEPSS 8%

    wvware · wvwareAug 6, 2004

  • CVE-2006-3376
    32Monitor

    Integer overflow in player.c in libwmf 0.2.8.4, as used in multiple products including (1) wv, (2) abiword, (3) freetype, (4) gimp, (5) libg

    HighCVSS 7.5No exploitEPSS 8%

    wvware · libwmfJul 6, 2006

  • CVE-2015-4588
    30Monitor

    Heap-based buffer overflow in the DecodeImage function in libwmf 0.2.8.4 allows remote attackers to cause a denial of service (crash) or pos

    MediumCVSS 6.8No exploitEPSS 9%

    opensuse · opensuseJul 1, 2015

  • CVE-2015-0848
    30Monitor

    Heap-based buffer overflow in libwmf 0.2.8.4 allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code

    MediumCVSS 6.8No exploitEPSS 9%

    wvware · libwmfJul 1, 2015

  • CVE-2006-2197
    27Monitor

    Integer overflow in wv2 before 0.2.3 might allow context-dependent attackers to execute arbitrary code via a crafted Microsoft Word document

    MediumCVSS 6.5No exploitEPSS 3%

    wvware · wv2Jun 15, 2006

  • CVE-2016-9011
    23Monitor

    The wmf_malloc function in api.c in libwmf 0.2.8.4 allows remote attackers to cause a denial of service (application crash) via a crafted wm

    MediumCVSS 5.5No exploitEPSS 3%

    wvware · libwmfMar 23, 2017

  • CVE-2015-4695
    22Monitor

    meta.h in libwmf 0.2.8.4 allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted WMF file.

    MediumCVSS 5.0No exploitEPSS 7%

    wvware · libwmfJul 1, 2015

  • CVE-2006-4513
    21Monitor

    Multiple integer overflows in the WV library in wvWare (formerly mswordview) before 1.2.3, as used by AbiWord, KWord, and possibly other pro

    MediumCVSS 5.1No exploitEPSS 4%

    wvware · wvwareOct 27, 2006

  • CVE-2015-4696
    19Monitor

    Use-after-free vulnerability in libwmf 0.2.8.4 allows remote attackers to cause a denial of service (crash) via a crafted WMF file to the (1

    MediumCVSS 4.3No exploitEPSS 6%

    wvware · libwmfJul 1, 2015