Vulnerabilities > Data Processing Errors

DATE CVE VULNERABILITY TITLE RISK
2015-07-16 CVE-2015-5363 Data Processing Errors vulnerability in Juniper Junos
The SRX Network Security Daemon (nsd) in Juniper SRX Series services gateways with Junos 12.1X44 before 12.1X44-D50, 12.1X46 before 12.1X46-D35, 12.1X47 before 12.1X47-D25, and 12.3X48 before 12.3X48-D15 allows remote DNS servers to cause a denial of service (crash) via a crafted DNS response.
network
low complexity
juniper CWE-19
5.0
2015-07-14 CVE-2015-2373 Data Processing Errors vulnerability in Microsoft Windows 7, Windows 8 and Windows Server 2012
The Remote Desktop Protocol (RDP) server service in Microsoft Windows 7 SP1, Windows 8, and Windows Server 2012 allows remote attackers to execute arbitrary code via a series of crafted packets, aka "Remote Desktop Protocol (RDP) Remote Code Execution Vulnerability."
network
low complexity
microsoft CWE-19
critical
10.0
2015-07-06 CVE-2015-3958 Data Processing Errors vulnerability in Hospira Lifecare Pcainfusion Firmware 5.0
Hospira LifeCare PCA Infusion System 5.0 and earlier, and possibly other versions, allows remote attackers to cause a denial of service (forced manual reboot) via a flood of TCP packets.
network
low complexity
hospira CWE-19
7.8
2015-06-28 CVE-2015-0989 Data Processing Errors vulnerability in Icsgmbh Pactware 4.1
PACTware 4.1 SP3 allows remote attackers to cause a denial of service (application crash) via a crafted file that triggers an internal error.
network
icsgmbh CWE-19
4.3
2015-06-10 CVE-2015-1760 Data Processing Errors vulnerability in Microsoft Office and Office Compatibility Pack
Microsoft Office Compatibility Pack SP3, Office 2010 SP2, Office 2013 SP1, and Office 2013 RT SP1 allow remote attackers to execute arbitrary code via a crafted Office document, aka "Microsoft Office Memory Corruption Vulnerability."
network
microsoft CWE-19
critical
9.3
2015-06-10 CVE-2015-1759 Data Processing Errors vulnerability in Microsoft Office Compatibility Pack
Microsoft Office Compatibility Pack SP3 allows remote attackers to execute arbitrary code via a crafted Office document, aka "Microsoft Office Memory Corruption Vulnerability."
network
microsoft CWE-19
critical
9.3
2015-06-10 CVE-2015-1687 Data Processing Errors vulnerability in Microsoft Internet Explorer
Microsoft Internet Explorer 6 through 9 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability."
network
microsoft CWE-19
critical
9.3
2015-06-09 CVE-2015-4147 Data Processing Errors vulnerability in multiple products
The SoapClient::__call method in ext/soap/soap.c in PHP before 5.4.39, 5.5.x before 5.5.23, and 5.6.x before 5.6.7 does not verify that __default_headers is an array, which allows remote attackers to execute arbitrary code by providing crafted serialized data with an unexpected data type, related to a "type confusion" issue.
network
low complexity
redhat apple php CWE-19
7.5
2015-06-09 CVE-2015-4026 Data Processing Errors vulnerability in multiple products
The pcntl_exec implementation in PHP before 5.4.41, 5.5.x before 5.5.25, and 5.6.x before 5.6.9 truncates a pathname upon encountering a \x00 character, which might allow remote attackers to bypass intended extension restrictions and execute files with unexpected names via a crafted first argument.
network
low complexity
redhat php apple CWE-19
7.5
2015-06-09 CVE-2015-4025 Data Processing Errors vulnerability in multiple products
PHP before 5.4.41, 5.5.x before 5.5.25, and 5.6.x before 5.6.9 truncates a pathname upon encountering a \x00 character in certain situations, which allows remote attackers to bypass intended extension restrictions and access files or directories with unexpected names via a crafted argument to (1) set_include_path, (2) tempnam, (3) rmdir, or (4) readlink.
network
low complexity
apple php redhat CWE-19
7.5