Vulnerabilities (CVE)

Filtered by CWE-123
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-38441 1 Eclipse 1 Cyclonedds 2022-05-13 7.5 HIGH 9.8 CRITICAL
Eclipse CycloneDDS versions prior to 0.8.0 are vulnerable to a write-what-where condition, which may allow an attacker to write arbitrary values in the XML parser.
CVE-2021-38449 1 Auvesy 1 Versiondog 2021-10-27 7.5 HIGH 9.8 CRITICAL
Some API functions permit by-design writing or copying data into a given buffer. Since the client controls these parameters, an attacker could rewrite the memory in any location of the affected product.
CVE-2015-8271 1 Rtmpdump Project 1 Rtmpdump 2017-11-04 7.5 HIGH 9.8 CRITICAL
The AMF3CD_AddProp function in amf.c in RTMPDump 2.4 allows remote RTMP Media servers to execute arbitrary code.