wvware records
9 published records for vendor wvware.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 5
- With a fix record
- 100%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer4
- CWE-189 Numeric Errors1
The weakness classes this vendor ships most often: where to look.
CWEAttack profile
All records
9 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
43Plan | CVE-2004-0645No exploit | Buffer overflow in the wvHandleDateTimePicture function in wv library (wvWare) 0.7.4 through 0.7.6 and 1.0.0 allows remote attackers to execwvware · wvware | Critical10.0 | — | 8.4% | Aug 6, 2004 |
32Monitor | CVE-2006-3376No exploit | Integer overflow in player.c in libwmf 0.2.8.4, as used in multiple products including (1) wv, (2) abiword, (3) freetype, (4) gimp, (5) libgwvware · libwmf | High7.5 | — | 7.7% | Jul 6, 2006 |
30Monitor | CVE-2015-4588No exploit | Heap-based buffer overflow in the DecodeImage function in libwmf 0.2.8.4 allows remote attackers to cause a denial of service (crash) or posopensuse · opensuse · CWE-119 | Medium6.8 | — | 9.2% | Jul 1, 2015 |
30Monitor | CVE-2015-0848No exploit | Heap-based buffer overflow in libwmf 0.2.8.4 allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary codewvware · libwmf · CWE-119 | Medium6.8 | — | 8.5% | Jul 1, 2015 |
27Monitor | CVE-2006-2197No exploit | Integer overflow in wv2 before 0.2.3 might allow context-dependent attackers to execute arbitrary code via a crafted Microsoft Word documentwvware · wv2 · CWE-189 | Medium6.5 | — | 2.6% | Jun 15, 2006 |
23Monitor | CVE-2016-9011No exploit | The wmf_malloc function in api.c in libwmf 0.2.8.4 allows remote attackers to cause a denial of service (application crash) via a crafted wmwvware · libwmf · CWE-119 | Medium5.5 | — | 2.6% | Mar 23, 2017 |
22Monitor | CVE-2015-4695No exploit | meta.h in libwmf 0.2.8.4 allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted WMF file.wvware · libwmf · CWE-119 | Medium5.0 | — | 6.6% | Jul 1, 2015 |
21Monitor | CVE-2006-4513No exploit | Multiple integer overflows in the WV library in wvWare (formerly mswordview) before 1.2.3, as used by AbiWord, KWord, and possibly other prowvware · wvware | Medium5.1 | — | 3.7% | Oct 27, 2006 |
19Monitor | CVE-2015-4696No exploit | Use-after-free vulnerability in libwmf 0.2.8.4 allows remote attackers to cause a denial of service (crash) via a crafted WMF file to the (1wvware · libwmf | Medium4.3 | — | 6.0% | Jul 1, 2015 |
- CVE-2004-064543Plan
Buffer overflow in the wvHandleDateTimePicture function in wv library (wvWare) 0.7.4 through 0.7.6 and 1.0.0 allows remote attackers to exec
CriticalCVSS 10.0No exploitEPSS 8%wvware · wvwareAug 6, 2004
- CVE-2006-337632Monitor
Integer overflow in player.c in libwmf 0.2.8.4, as used in multiple products including (1) wv, (2) abiword, (3) freetype, (4) gimp, (5) libg
HighCVSS 7.5No exploitEPSS 8%wvware · libwmfJul 6, 2006
- CVE-2015-458830Monitor
Heap-based buffer overflow in the DecodeImage function in libwmf 0.2.8.4 allows remote attackers to cause a denial of service (crash) or pos
MediumCVSS 6.8No exploitEPSS 9%opensuse · opensuseJul 1, 2015
- CVE-2015-084830Monitor
Heap-based buffer overflow in libwmf 0.2.8.4 allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code
MediumCVSS 6.8No exploitEPSS 9%wvware · libwmfJul 1, 2015
- CVE-2006-219727Monitor
Integer overflow in wv2 before 0.2.3 might allow context-dependent attackers to execute arbitrary code via a crafted Microsoft Word document
MediumCVSS 6.5No exploitEPSS 3%wvware · wv2Jun 15, 2006
- CVE-2016-901123Monitor
The wmf_malloc function in api.c in libwmf 0.2.8.4 allows remote attackers to cause a denial of service (application crash) via a crafted wm
MediumCVSS 5.5No exploitEPSS 3%wvware · libwmfMar 23, 2017
- CVE-2015-469522Monitor
meta.h in libwmf 0.2.8.4 allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted WMF file.
MediumCVSS 5.0No exploitEPSS 7%wvware · libwmfJul 1, 2015
- CVE-2006-451321Monitor
Multiple integer overflows in the WV library in wvWare (formerly mswordview) before 1.2.3, as used by AbiWord, KWord, and possibly other pro
MediumCVSS 5.1No exploitEPSS 4%wvware · wvwareOct 27, 2006
- CVE-2015-469619Monitor
Use-after-free vulnerability in libwmf 0.2.8.4 allows remote attackers to cause a denial of service (crash) via a crafted WMF file to the (1
MediumCVSS 4.3No exploitEPSS 6%wvware · libwmfJul 1, 2015