Vulnerability index

Browse CVEs

46 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Geoserver HIGH 7.2
CVE-2022-24847

GeoServer is an open source software server written in Java that allows users to share and edit geospatial data. The GeoServer security mechanism can…

Fix: 2.19.6 / 2.20.4+
Fix from $1,950 2022-04-13
Gdal HIGH 7.8
CVE-2019-25050

netCDF in GDAL 2.4.2 through 3.0.4 has a stack-based buffer overflow in nc4_get_att (called from nc4_get_att_tc and nc_get_att_text) and in uffd_clea…

Fix: after 3.0.4
Fix from $1,950 2021-07-20
Mapserver HIGH 7.5
CVE-2010-1678

Mapserver 5.2, 5.4 and 5.6 before 5.6.5-2 improperly validates symbol index values during Mapfile parsing.

Fix: 5.6.5.-2+
Fix from $1,950 2019-10-29
Mapserver HIGH 7.5
CVE-2016-9839

In MapServer before 7.0.3, OGR driver error messages are too verbose and may leak sensitive information if data connection fails.

Fix: after 7.0.2
Fix from $1,950 2016-12-08
Mapserver MEDIUM 6.8
CVE-2013-7262

SQL injection vulnerability in the msPostGISLayerSetTimeFilter function in mappostgis.c in MapServer before 6.4.1, when a WMS-Time service is used, a…

Fix: after 6.4.0
Fix from $1,600 2014-01-05
Mapserver MEDIUM 6.8
CVE-2011-2975

Double free vulnerability in the msAddImageSymbol function in mapsymbol.c in MapServer before 6.0.1 might allow remote attackers to cause a denial of…

Fix: after 6.0.0
Fix from $1,600 2011-08-01
Mapserver HIGH 7.5
CVE-2011-2703

Multiple SQL injection vulnerabilities in MapServer before 4.10.7, 5.x before 5.6.7, and 6.x before 6.0.1 allow remote attackers to execute arbitrary…

Fix: after 4.10.6
Fix from $1,950 2011-08-01
Mapserver HIGH 7.5
CVE-2011-2704EPSS 5%

Stack-based buffer overflow in MapServer before 4.10.7 and 5.x before 5.6.7 allows remote attackers to execute arbitrary code via vectors related to …

Fix: after 4.10.6
Fix from $1,950 2011-08-01
Mapserver HIGH 10.0
CVE-2010-2540

mapserv.c in mapserv in MapServer before 4.10.6 and 5.x before 5.6.4 does not properly restrict the use of CGI command-line arguments that were inten…

Fix: after 5.6.3
Fix from $1,950 2010-08-02
Mapserver HIGH 10.0
CVE-2009-2281EPSS 6%

Multiple heap-based buffer underflows in the readPostBody function in cgiutil.c in mapserv in MapServer 4.x through 4.10.4 and 5.x before 5.4.2 allow…

Patch available
Fix from $1,950 2009-10-23
Mapserver HIGH 10.0
CVE-2009-0839EPSS 9%

Stack-based buffer overflow in mapserv.c in mapserv in MapServer 4.x before 4.10.4 and 5.x before 5.2.2, when the server has a map with a long IMAGEP…

No fix yet
Fix from $1,950 2009-03-31
Mapserver HIGH 10.0
CVE-2009-0840EPSS 5%

Heap-based buffer underflow in the readPostBody function in cgiutil.c in mapserv in MapServer 4.x before 4.10.4 and 5.x before 5.2.2 allows remote at…

Patch available
Fix from $1,950 2009-03-31
Mapserver HIGH 10.0
CVE-2009-0841EPSS 5%

Directory traversal vulnerability in mapserv.c in mapserv in MapServer 4.x before 4.10.4 and 5.x before 5.2.2, when running on Windows with Cygwin, a…

Patch available
Fix from $1,950 2009-03-31
Mapserver HIGH 10.0
CVE-2009-1176

mapserv.c in mapserv in MapServer 4.x before 4.10.4 and 5.x before 5.2.2 does not ensure that the string holding the id parameter ends in a '\0' char…

Patch available
Fix from $1,950 2009-03-31
Mapserver HIGH 10.0
CVE-2009-1177

Multiple stack-based buffer overflows in maptemplate.c in mapserv in MapServer 4.x before 4.10.4 and 5.x before 5.2.2 have unknown impact and remote …

Patch available
Fix from $1,950 2009-03-31
Mapserver HIGH 7.8
CVE-2009-0843

The msLoadQuery function in mapserv in MapServer 4.x before 4.10.4 and 5.x before 5.2.2 allows remote attackers to determine the existence of arbitra…

Patch available
Fix from $1,950 2009-03-31