6.9

CVSS4.0

CVE-2026-4997 - Sinaptik AI PandasAI sql_sanitizer.py is_sql_query_safe path traversal

A security flaw has been discovered in Sinaptik AI PandasAI up to 3.0.0. This affects the function is_sql_query_safe of the file pandasai/helpers/sql_sanitizer.py. Performing a manipulation results in path traversal. The attack may be initiated remotely. The exploit has been released to the public …

📅 Published: March 28, 2026, 12:23 p.m. 🔄 Last Modified: March 28, 2026, 12:29 p.m.

8.6

CVSS4.0

CVE-2017-20228 - Flat Assembler 1.71.21 Stack-Based Buffer Overflow ROP

Flat Assembler 1.71.21 contains a stack-based buffer overflow vulnerability that allows local attackers to execute arbitrary code by supplying oversized input to the application. Attackers can craft malicious assembly input exceeding 5895 bytes to overwrite the instruction pointer and execute retur…

📅 Published: March 28, 2026, noon 🔄 Last Modified: March 28, 2026, noon

8.6

CVSS4.0

CVE-2018-25225 - SIPP 3.3 Stack-Based Buffer Overflow via Configuration File

SIPP 3.3 contains a stack-based buffer overflow vulnerability that allows local unauthenticated attackers to execute arbitrary code by supplying malicious input in the configuration file. Attackers can craft a configuration file with oversized values that overflow a stack buffer, overwriting the re…

📅 Published: March 28, 2026, 11:58 a.m. 🔄 Last Modified: March 28, 2026, 11:58 a.m.

8.6

CVSS4.0

CVE-2018-25224 - PMS 0.42 Stack-Based Buffer Overflow via Configuration File

PMS 0.42 contains a stack-based buffer overflow vulnerability that allows local unauthenticated attackers to execute arbitrary code by supplying malicious values in the configuration file. Attackers can craft configuration files with oversized input that overflows the stack buffer and execute shell…

📅 Published: March 28, 2026, 11:58 a.m. 🔄 Last Modified: March 28, 2026, 11:58 a.m.

9.3

CVSS4.0

CVE-2018-25223 - Crashmail 1.6 Stack-based Buffer Overflow Remote Code Execution

Crashmail 1.6 contains a stack-based buffer overflow vulnerability that allows remote attackers to execute arbitrary code by sending malicious input to the application. Attackers can craft payloads with ROP chains to achieve code execution in the application context, with failed attempts potentiall…

📅 Published: March 28, 2026, 11:58 a.m. 🔄 Last Modified: March 28, 2026, 11:58 a.m.

8.6

CVSS4.0

CVE-2018-25222 - SC v7.16 Stack-Based Buffer Overflow Remote Code Execution

SC v7.16 contains a stack-based buffer overflow vulnerability that allows local attackers to execute arbitrary code by supplying oversized input that exceeds buffer boundaries. Attackers can craft malicious input strings exceeding 1052 bytes to overwrite the instruction pointer and execute shellcod…

📅 Published: March 28, 2026, 11:58 a.m. 🔄 Last Modified: March 28, 2026, 11:58 a.m.

9.3

CVSS4.0

CVE-2018-25221 - EChat Server 3.1 Buffer Overflow via chat.ghp username Parameter

EChat Server 3.1 contains a buffer overflow vulnerability in the chat.ghp endpoint that allows remote attackers to execute arbitrary code by supplying an oversized username parameter. Attackers can send a GET request to chat.ghp with a malicious username value containing shellcode and ROP gadgets t…

📅 Published: March 28, 2026, 11:58 a.m. 🔄 Last Modified: March 28, 2026, 11:58 a.m.

9.3

CVSS4.0

CVE-2018-25220 - Bochs 2.6-5 Buffer Overflow Remote Code Execution

Bochs 2.6-5 contains a stack-based buffer overflow vulnerability that allows attackers to execute arbitrary code by supplying an oversized input string to the application. Attackers can craft a malicious payload with 1200 bytes of padding followed by a return-oriented programming chain to overwrite…

📅 Published: March 28, 2026, 11:58 a.m. 🔄 Last Modified: March 28, 2026, 11:58 a.m.

9.3

CVSS4.0

CVE-2017-20229 - MAWK 1.3.3-17 Stack-Based Buffer Overflow

MAWK 1.3.3-17 and prior contains a stack-based buffer overflow vulnerability that allows attackers to execute arbitrary code by exploiting inadequate boundary checks on user-supplied input. Attackers can craft malicious input that overflows the stack buffer and execute a return-oriented programming…

📅 Published: March 28, 2026, 11:58 a.m. 🔄 Last Modified: March 28, 2026, 11:58 a.m.

9.3

CVSS4.0

CVE-2017-20227 - JAD 1.5.8e-1kali1 Stack-Based Buffer Overflow

JAD Java Decompiler 1.5.8e-1kali1 and prior contains a stack-based buffer overflow vulnerability that allows attackers to execute arbitrary code by supplying overly long input that exceeds buffer boundaries. Attackers can craft malicious input passed to the jad command to overflow the stack and exe…

📅 Published: March 28, 2026, 11:58 a.m. 🔄 Last Modified: March 28, 2026, 11:58 a.m.
Total resulsts: 340999
Page 1 of 34,100
» next page
Filters