A vulnerability has been found in Red Snapper NView and classified as critical. This vulnerability affects the function mutate of the file src/Session.php. The manipulation of the argument session leads to sql injection. The name of the patch is cbd255f55d476b29e5680f66f48c73ddb3d416a8. It is recommended to apply a patch to fix this issue. The identifier of this vulnerability is VDB-217516.
📦
nview
Vendor: gentoo
Actively Exploited
0
CISA KEV List
PoC / Exploits
1
Code Available
Total RCEs
1
Remote Access
Total CVEs
2
Total Indexed
Avg. EPSS
1.21%
Exploit Prob.
Security Vulnerability Index
Page 1 / 1
5.5
CVSS
Severity: MEDIUM
5.0
CVSS
CVE-2006-6340
Exploit Found
keystone.exe in nVIDIA nView allows attackers to cause a denial of service via a long command line argument. NOTE: it is not clear whether this issue crosses security boundaries. If not, then this is not a vulnerability.
Severity: MEDIUM
7.2
CVSS
CVE-2005-4595
RCE
Untrusted search path vulnerability (RPATH) in XnView 1.70 and NView 4.51 on Gentoo Linux allows local users to execute arbitrary code via a malicious library in the current working directory.
Severity: HIGH