RSS   Vulnerabilities for 'Mapserver'   RSS

2007-08-30
 
CVE-2007-4629

 

 
Buffer overflow in the processLine function in maptemplate.c in MapServer before 4.10.3 allows attackers to cause a denial of service and possibly execute arbitrary code via a mapfile with a long layer name, group name, or metadata entry name.

 
2007-08-27
 
CVE-2007-4542

CWE-79
 

 
Multiple cross-site scripting (XSS) vulnerabilities in MapServer before 4.10.3 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors involving the (1) processLine function in maptemplate.c and the (2) writeError function in mapserv.c in the mapserv CGI program.

 

 >>> Vendor: University of minnesota 3 Products
Gopherd
Gopher
Mapserver


Copyright 2024, cxsecurity.com

 

Back to Top