6.9

CVSS4.0

CVE-2018-25278 - PicaJet FX 2.6.5 Denial of Service via Registration Fields

PicaJet FX 2.6.5 contains a denial of service vulnerability that allows local attackers to crash the application by submitting oversized input to registration fields. Attackers can paste a 6000-byte buffer into the Registration Name and Registration Key fields via the Help menu's Register PicaJet d…

πŸ“… Published: April 26, 2026, 1:19 p.m. πŸ”„ Last Modified: April 26, 2026, 1:19 p.m.

6.9

CVSS4.0

CVE-2018-25277 - PixGPS 1.1.8 Buffer Overflow Denial of Service

PixGPS 1.1.8 contains a buffer overflow vulnerability that allows local attackers to crash the application by supplying an oversized string to the folder path input field. Attackers can craft a payload exceeding 6000 bytes and paste it into the 'Folder with picture files' field to trigger a denial …

πŸ“… Published: April 26, 2026, 1:19 p.m. πŸ”„ Last Modified: April 26, 2026, 1:19 p.m.

6.8

CVSS4.0

CVE-2018-25276 - RoboImport 1.2.0.72 Denial of Service via Registration Fields

RoboImport 1.2.0.72 contains a denial of service vulnerability that allows local attackers to crash the application by submitting oversized input to registration fields. Attackers can paste a 6000-byte buffer into the Registration Name and Registration Key fields and click Register to trigger an ap…

πŸ“… Published: April 26, 2026, 1:19 p.m. πŸ”„ Last Modified: April 26, 2026, 1:19 p.m.

6.9

CVSS4.0

CVE-2018-25275 - Faleemi Plus 1.0.2 Denial of Service via Buffer Overflow

Faleemi Plus 1.0.2 contains a buffer overflow vulnerability that allows local attackers to crash the application by supplying oversized input strings. Attackers can paste a 2000-byte payload into the Camera name and DID number fields during camera addition to trigger an application crash.

πŸ“… Published: April 26, 2026, 1:19 p.m. πŸ”„ Last Modified: April 26, 2026, 1:19 p.m.

6.9

CVSS4.0

CVE-2018-25274 - InfraRecorder 0.53 Denial of Service via txt File Import

InfraRecorder 0.53 contains a denial of service vulnerability that allows local attackers to crash the application by importing a maliciously crafted text file. Attackers can create a text file containing 6000 bytes of data and import it through the Edit menu's Import function to trigger an applica…

πŸ“… Published: April 26, 2026, 1:19 p.m. πŸ”„ Last Modified: April 26, 2026, 1:19 p.m.

6.9

CVSS4.0

CVE-2018-25273 - CrossFont 7.5 Denial of Service via License Key Field

CrossFont 7.5 contains a buffer overflow vulnerability that allows local attackers to crash the application by submitting an oversized payload in the License Key field. Attackers can generate a malicious file containing 4000 bytes of data, paste it into the License Key input field, and trigger an a…

πŸ“… Published: April 26, 2026, 1:19 p.m. πŸ”„ Last Modified: April 26, 2026, 1:19 p.m.

6.9

CVSS4.0

CVE-2018-25264 - TransMac 12.2 Denial of Service via License Key Field

TransMac 12.2 contains a buffer overflow vulnerability in the license key input field that allows local attackers to crash the application by submitting an oversized string. Attackers can generate a payload file containing 4000 bytes of data, paste it into the License Key field, and trigger a denia…

πŸ“… Published: April 26, 2026, 1:19 p.m. πŸ”„ Last Modified: April 26, 2026, 1:19 p.m.

8.6

CVSS4.0

CVE-2018-25263 - Faleemi Desktop Software 1.8.2 Local Buffer Overflow SEH

Faleemi Desktop Software 1.8.2 contains a local buffer overflow vulnerability in the Device alias field that allows local attackers to trigger a structured exception handler (SEH) overwrite. Attackers can craft a malicious payload and paste it into the Device alias field within the Managing Log int…

πŸ“… Published: April 26, 2026, 1:19 p.m. πŸ”„ Last Modified: April 26, 2026, 1:19 p.m.

5.3

CVSS4.0

CVE-2026-7043 - GreenCMS index.php pluginAddLocal unrestricted upload

A vulnerability has been found in GreenCMS up to 2.3. This impacts the function pluginAddLocal of the file /index.php?m=admin&c=custom&a=pluginadd. The manipulation leads to unrestricted upload. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. This…

πŸ“… Published: April 26, 2026, 1:15 p.m. πŸ”„ Last Modified: April 26, 2026, 1:15 p.m.

6.9

CVSS4.0

CVE-2026-7042 - 666ghj MiroFish REST API Endpoint __init__.py create_app missing authentication

A flaw has been found in 666ghj MiroFish up to 0.1.2. This affects the function create_app of the file backend/app/__init__.py of the component REST API Endpoint. Executing a manipulation can lead to missing authentication. It is possible to launch the attack remotely. The exploit has been publishe…

πŸ“… Published: April 26, 2026, 1 p.m. πŸ”„ Last Modified: April 26, 2026, 1 p.m.
Total resulsts: 348434
Page 183 of 34,844
Β« previous page Β» next page
Filters