Cybersecurity & Regolamentazione UE

News & Sicurezza

Aggiornamenti da ENISA, NVD e le principali fonti di cybersecurity europee. Tutto quello che un Responsabile Tecnico deve sapere.

18203 risultati

VulnerabilitàCritica
CVE-2017-20229 (CVSS 9.8)

MAWK 1.3.3-17 and prior contains a stack-based buffer overflow vulnerability that allows attackers to execute arbitrary code by exploiting inadequate boundary checks on user-supplied input. Attackers can craft malicious input that overflows the stack buffer and execute a return-oriented programming chain to spawn a shell with application privileges.

NVD (NIST)28 mar 2026
VulnerabilitàAlta
CVE-2017-20228 (CVSS 8.4)

Flat Assembler 1.71.21 contains a stack-based buffer overflow vulnerability that allows local attackers to execute arbitrary code by supplying oversized input to the application. Attackers can craft malicious assembly input exceeding 5895 bytes to overwrite the instruction pointer and execute return-oriented programming chains for shell command execution.

NVD (NIST)28 mar 2026
VulnerabilitàAlta
CVE-2018-25222 - SC v7.16 Stack-Based Buffer Overflow Remote Code Execution

CVE ID :CVE-2018-25222 Published : March 28, 2026, 12:16 p.m. | 9 hours, 37 minutes ago Description :SC v7.16 contains a stack-based buffer overflow vulnerability that allows local attackers to execute arbitrary code by supplying oversized input that exceeds buffer boundaries. Attackers can craft malicious input strings exceeding 1052 bytes to overwrite the instruction pointer and execute shellcode in the application context. Severity: 8.6 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE28 mar 2026
VulnerabilitàAlta
CVE-2017-20228 - Flat Assembler 1.71.21 Stack-Based Buffer Overflow ROP

CVE ID :CVE-2017-20228 Published : March 28, 2026, 12:16 p.m. | 7 hours, 37 minutes ago Description :Flat Assembler 1.71.21 contains a stack-based buffer overflow vulnerability that allows local attackers to execute arbitrary code by supplying oversized input to the application. Attackers can craft malicious assembly input exceeding 5895 bytes to overwrite the instruction pointer and execute return-oriented programming chains for shell command execution. Severity: 8.6 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE28 mar 2026
VulnerabilitàAlta
CVE-2017-20229 - MAWK 1.3.3-17 Stack-Based Buffer Overflow

CVE ID :CVE-2017-20229 Published : March 28, 2026, 12:16 p.m. | 9 hours, 37 minutes ago Description :MAWK 1.3.3-17 and prior contains a stack-based buffer overflow vulnerability that allows attackers to execute arbitrary code by exploiting inadequate boundary checks on user-supplied input. Attackers can craft malicious input that overflows the stack buffer and execute a return-oriented programming chain to spawn a shell with application privileges. Severity: 9.8 | CRITICAL Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE28 mar 2026
VulnerabilitàAlta
CVE-2018-25221 - EChat Server 3.1 Buffer Overflow via chat.ghp username Parameter

CVE ID :CVE-2018-25221 Published : March 28, 2026, 12:16 p.m. | 9 hours, 37 minutes ago Description :EChat Server 3.1 contains a buffer overflow vulnerability in the chat.ghp endpoint that allows remote attackers to execute arbitrary code by supplying an oversized username parameter. Attackers can send a GET request to chat.ghp with a malicious username value containing shellcode and ROP gadgets to achieve code execution in the application context. Severity: 9.8 | CRITICAL Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE28 mar 2026
VulnerabilitàAlta
CVE-2018-25220 - Bochs 2.6-5 Buffer Overflow Remote Code Execution

CVE ID :CVE-2018-25220 Published : March 28, 2026, 12:16 p.m. | 9 hours, 37 minutes ago Description :Bochs 2.6-5 contains a stack-based buffer overflow vulnerability that allows attackers to execute arbitrary code by supplying an oversized input string to the application. Attackers can craft a malicious payload with 1200 bytes of padding followed by a return-oriented programming chain to overwrite the instruction pointer and execute shell commands with application privileges. Severity: 9.8 | CRITICAL Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE28 mar 2026
VulnerabilitàCritica
CVE-2017-20227 (CVSS 9.8)

JAD Java Decompiler 1.5.8e-1kali1 and prior contains a stack-based buffer overflow vulnerability that allows attackers to execute arbitrary code by supplying overly long input that exceeds buffer boundaries. Attackers can craft malicious input passed to the jad command to overflow the stack and execute a return-oriented programming chain that spawns a shell.

NVD (NIST)28 mar 2026
VulnerabilitàAlta
CVE-2017-20226 (CVSS 8.4)

Mapscrn 2.0.3 contains a stack-based buffer overflow vulnerability that allows local attackers to execute arbitrary code by supplying an oversized input buffer. Attackers can craft a malicious buffer with junk data, return address, NOP instructions, and shellcode to overflow the stack and achieve code execution or denial of service.

NVD (NIST)28 mar 2026
VulnerabilitàCritica
CVE-2017-20225 (CVSS 9.8)

TiEmu 2.08 and prior contains a stack-based buffer overflow vulnerability that allows attackers to execute arbitrary code by exploiting inadequate boundary checks on user-supplied input. Attackers can trigger the overflow through command-line arguments passed to the application, leveraging ROP gadgets to bypass protections and execute shellcode in the application context.

NVD (NIST)28 mar 2026
VulnerabilitàCritica
CVE-2016-20049 (CVSS 9.8)

JAD 1.5.8e-1kali1 and prior contains a stack-based buffer overflow vulnerability that allows attackers to execute arbitrary code by supplying oversized input that exceeds buffer boundaries. Attackers can craft malicious input strings exceeding 8150 bytes to overflow the stack, overwrite return addresses, and execute shellcode in the application context.

NVD (NIST)28 mar 2026
VulnerabilitàAlta
CVE-2016-20048 (CVSS 8.4)

iSelect 1.4.0-2+b1 contains a local buffer overflow vulnerability that allows local attackers to execute arbitrary code by supplying an oversized value to the -k/--key parameter. Attackers can craft a malicious argument containing a NOP sled, shellcode, and return address to overflow a 1024-byte stack buffer and gain code execution with user privileges.

NVD (NIST)28 mar 2026

Pagina 830 di 1517

Resta aggiornato sulla cybersecurity

Iscriviti a CodersRegistry per ricevere gli aggiornamenti più importanti su regolamentazione EU e vulnerabilità critiche.