| OSVDB ID | Disclosure Date | Title |
|
80454
Description:
G Data AntiVirus contains a flaw related to the anti-virus / anti-malware scanning functionality. The issue is triggered when a context-dependent attacker sends a malformed RAR file with an initial MZ sequence. This type of file will not be handled properly by the software and may allow an attacker to bypass the scanning allowing for the delivery of malware.
|
2012-03-19
|
G Data AntiVirus Malformed RAR File Handling Scan Bypass
|
|
80382
Description:
G Data AntiVirus contains a flaw related to the anti-virus / anti-malware scanning functionality. This may allow a context-dependent attacker to use a specially crafted TAR file in order to bypass the scanning functionality, allowing for the delivery of malware.
|
2012-03-19
|
G Data AntiVirus Malformed TAR File Handling Scan Bypass
|
|
42476
Description:
(Description Provided by CVE) : Buffer overflow in a certain ActiveX control in ScanObjectBrowser.DLL in G DATA Antivirus 2007 might allow remote attackers to execute arbitrary code via unspecified parameters to the SelectPath function. NOTE: this issue might not cross privilege boundaries in most environments, since it is not marked as safe for scripting.
|
2007-10-10
|
G DATA Antivirus ScanObjectBrowser.DLL ActiveX SelectPath Function Overflow
|
|
45896
Description:
(Description Provided by CVE) : G DATA InternetSecurity 2007 does not properly validate certain parameters to System Service Descriptor Table (SSDT) function handlers, which allows local users to cause a denial of service (crash) and possibly gain privileges via the (1) NtCreateKey and (2) NtOpenProcess kernel SSDT hooks.
|
2007-09-18
|
G DATA InternetSecurity SSDT Hooks Local Privilege Escalation
|
|
48257
Description:
(Description Provided by CVE) : The GDTdiIcpt.sys driver in G DATA AntiVirus 2008, InternetSecurity 2008, and TotalCare 2008 populates kernel registers with IOCTL 0x8317001c input values, which allows local users to cause a denial of service (system crash) or gain privileges via a crafted IOCTL request, as demonstrated by execution of the KeSetEvent function with modified register contents.
|
2008-09-17
|
G DATA Multiple Products GDTdiIcpt.sys Crafted IOCTL Request Handling Local Privilege Escalation
|
|
69154
Description:
G DATA TotalCare contains a flaw that may allow a local denial of service. The issue is triggered when a race condition vulnerability in the 'HookCentre.sys' kernel driver's handling arguments of the 'NtOpenkey' function is exploited to dereference invalid memory. This may result in loss of availability.
|
2010-11-08
|
G DATA TotalCare HookCentre.sys NtOpenKey NULL Dereference DoS
|
|
69153
Description:
G DATA TotalCare contains a flaw related to the handling of IOCTLs. The issue is triggered when a local attacker sends a maliciously crafted 0x83170180 IOCTL to the 'MiniIcptControlDevice0' device file . This may allow an attacker to execute arbitrary code with elevated privileges.
|
2010-11-06
|
G DATA TotalCare MiniIcptControlDevice0 IOCTL Handling Arbitrary Code Execution
|
|
43215
Description:
Unknown / Incomplete
|
2008-03-07
|
G-Archiver Gmail Credential Disclosure Backdoor
|
|
24141
Description:
G-Book contains a flaw that allows a remote cross site scripting attack. This flaw exists because the application does not validate the 'g_message' variable upon submission to the 'guestbook.php' script. This could allow a user to create a specially crafted guestbook posting that would execute arbitrary code in a user's browser within the trust relationship between the browser and the server, leading to a loss of integrity.
|
2006-03-27
|
G-Book guestbook.php g_message Parameter XSS
|
|
84434
Description:
G-Lock Double Opt-in Manager plugin for WordPress contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the wp-content/plugins/g-lock-double-opt-in-manager/ajaxbackend.php script not properly sanitizing user-supplied input to the 'json' parameter. This may allow an attacker to inject or manipulate SQL queries in the back-end database, allowing for the manipulation or disclosure of arbitrary data.
|
2012-08-01
|
G-Lock Double Opt-in Manager Plugin for WordPress wp-content/plugins/g-lock-double-opt-in-manager/ajaxbackend.php json Parameter SQL Injection
|
|
27465
Description:
Unknown / Incomplete
|
2006-06-13
|
G-Shout shoutbox.php language Parameter Remote File Inclusion
|
|
76411
Description:
Unknown / Incomplete
|
2011-10-13
|
G-WAN csp Sub-Directory URL Encoding Handling Overflow
|
|
76412
Description:
Unknown / Incomplete
|
2011-10-13
|
G-WAN SIGPIPE Signal Parsing Remote DoS
|
|
65790
Description:
G.CMS generator contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the 'index.php' script not properly sanitizing user-supplied input to the 'lang' parameter. This may allow an attacker to inject or manipulate SQL queries in the back-end database, allowing for the manipulation or disclosure of arbitrary data.
|
2010-06-21
|
G.CMS generator index.php lang Parameter SQL Injection
|
|
40528
Description:
(Description Provided by CVE) : Multiple unspecified vulnerabilities in G15Daemon before 1.9.4 have unknown impact and attack vectors.
|
2008-01-12
|
G15Daemon Multiple Unspecified Issues
|
|
64157
Description:
G5-Scripts Auto-Img-Gallery contains a flaw that allows a remote cross site scripting (XSS) attack. This flaw exists because the application does not validate the 'user' parameter upon submission to the 'upload.cgi' script. This may allow a user to create a specially crafted URL that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2010-04-24
|
G5-Scripts Auto-Img-Gallery upload.cgi user Parameter XSS
|
|
64156
Description:
Unknown / Incomplete
|
2010-04-24
|
G5-Scripts Guestbook PHP guestbook.php Multiple Parameter XSS
|
|
92237
Description:
GA Universal Plugin for WordPress contains a flaw that allows a remote Cross-site Request Forgery (CSRF / XSRF) attack. The flaw exists because the application does not require multiple steps or explicit confirmation for sensitive transactions. By using a crafted URL (e.g., a crafted GET request inside an "img" tag), an attacker may trick the victim into clicking on the image to take advantage of the trust relationship between the authenticated victim and the application. Such an attack could trick the victim into changing plugin settings in the context of their session with the application, without further prompting or verification.
|
2013-04-10
|
GA Universal Plugin for WordPress Setting Manipulation CSRF
|
|
23509
Description:
GA's Forum Light has been reported to contain an SQL injection issue in the archive.asp script. Subsequent testing by SecurityTracker after the vendor disputed the issue indicates the software uses flat files to store data, not a back-end database. Therefore, the SQL injection report is incorrect and was likely diagnosed due to a vbscript parsing error.
|
2006-02-07
|
GA's Forum Light archive.asp Multiple Parameter SQL Injection
|
|
56291
Description:
(Description Provided by CVE) : Gabber 0.8.7 sends an email to a specific address during user login and logout, which allows remote attackers to obtain user session activity and Gabber version number by sniffing.
|
2003-01-15
|
Gabber Session State E-mail Disclosure
|
|
63917
Description:
Gadget Factory Component for Joomla! contains a flaw that may lead to an unauthorized information disclosure. The issue is triggered by insufficient validation of the 'controller' parameter by index.php, which will disclose the contents of arbitrary files to a remote attacker.
|
2010-04-18
|
Gadget Factory Component for Joomla! index.php controller Parameter Directory Traversal Arbitrary File Access
|
|
9162
Description:
Gadu-Gadu chat client contains a flaw that may allow a malicious user to spoof the file extension. The issue is triggered when a remote authenticated user appends a large number of space characters followed by the actual file extension to the spoofed filename. This will cause the recipient's Gadu-Gadu client to display a filename with a spoofed file extension when the recipient attempts to download the file. This flaw leads to a loss of integrity.
|
2004-08-24
|
Gadu-Gadu Client File Extension Spoofing
|
|
21017
Description:
Gadu-Gadu contains a flaw that may allow a remote denial of service. The issue is triggered when specially crafted CTCP packets are processed, and will result in loss of availability for the service.
|
2005-11-21
|
Gadu-Gadu Crafted CTCP Packet Saturation Memory Exhaustion DoS
|
|
12518
Description:
(Description Provided by CVE) : Gadu-Gadu allows remote attackers to gain sensitive information and read files from the _cache directory of other users via a DCC connection and a CTCP packet that contains a 1 as the type and a 4 as the subtype.
|
2004-12-13
|
Gadu-Gadu DCC Connection Traversal Arbitrary File Access
|
|
12522
Description:
(Description Provided by CVE) : Integer overflow in Gadu-Gadu allows remote attackers to cause a denial of service (disk consumption) via a user packet to the DCC file transfer capability with an invalid file length.
|
2004-12-13
|
Gadu-Gadu DCC File Retrieval File Length Overflow
|
|
21018
Description:
Gadu-Gadu contains a flaw that may allow a remote denial of service. The issue is triggered when multiple crafted DCC packets process and consume a large amount of resources, and will result in loss of availability for the service.
|
2005-11-21
|
Gadu-Gadu DCC Packet Saturation Thread Exhaustion DoS
|
|
21020
Description:
Gadu-Gadu contains a flaw that may allow malicious sites to eavesdrop on the audio devices. The issue is triggered when the "EasycallLite.oce" ActiveX object exposes sensitive features. It is possible that the flaw may allow audio device monitoring, resulting in a loss of confidentiality.
|
2005-11-21
|
Gadu-Gadu EasycallLite.oce Audio Device Monitoring
|
|
12523
Description:
Unknown / Incomplete
|
2004-12-13
|
Gadu-Gadu Embedded DLL File Arbitrary Command Execution
|
|
12521
Description:
Unknown / Incomplete
|
2004-12-13
|
Gadu-Gadu Fragmented File Assembler Boundary Error Overflow
|
|
40162
Description:
(Description Provided by CVE) : Multiple buffer overflows in the HandleEmotsConfig function in the GG Client in Gadu-Gadu 7.7 Build 3669 allow user-assisted remote attackers to execute arbitrary code or cause a denial of service (gg.exe process crash) via a long string in an emots.txt file.
|
2007-11-22
|
Gadu-Gadu GG Client HandleEmotsConfig Function emots.txt Handling Overflow
|