Vulnerabilities > Data Processing Errors

DATE CVE VULNERABILITY TITLE RISK
2014-11-16 CVE-2014-2681 Data Processing Errors vulnerability in Zend products
Zend Framework 1 (ZF1) before 1.12.4, Zend Framework 2 before 2.1.6 and 2.2.x before 2.2.6, ZendOpenId, ZendRest, ZendService_AudioScrobbler, ZendService_Nirvanix, ZendService_SlideShare, ZendService_Technorati, and ZendService_WindowsAzure before 2.0.2, ZendService_Amazon before 2.0.3, and ZendService_Api before 1.0.0 allow remote attackers to read arbitrary files, send HTTP requests to intranet servers, and possibly cause a denial of service (CPU and memory consumption) via an XML External Entity (XXE) attack.
network
low complexity
zend CWE-19
6.4
2010-07-28 CVE-2010-0213 Data Processing Errors vulnerability in ISC Bind 9.7.1
BIND 9.7.1 and 9.7.1-P1, when a recursive validating server has a trust anchor that is configured statically or via DNSSEC Lookaside Validation (DLV), allows remote attackers to cause a denial of service (infinite loop) via a query for an RRSIG record whose answer is not in the cache, which causes BIND to repeatedly send RRSIG queries to the authoritative servers.
network
high complexity
isc CWE-19
2.6
2007-01-25 CVE-2007-0494 Data Processing Errors vulnerability in ISC Bind
ISC BIND 9.0.x, 9.1.x, 9.2.0 up to 9.2.7, 9.3.0 up to 9.3.3, 9.4.0a1 up to 9.4.0a6, 9.4.0b1 up to 9.4.0b4, 9.4.0rc1, and 9.5.0a1 (Bind Forum only) allows remote attackers to cause a denial of service (exit) via a type * (ANY) DNS query response that contains multiple RRsets, which triggers an assertion error, aka the "DNSSEC Validation" vulnerability.
network
isc CWE-19
4.3
2005-12-31 CVE-2005-4856 Data Processing Errors vulnerability in EZ Publish
The admin interface in eZ publish 3.5 before 3.5.7, 3.6 before 3.6.5, 3.7 before 3.7.3, and 3.8 before 20051110 does not properly handle authorization errors, which allows remote attackers to obtain sensitive information and see the admin pagelayout and associated templates via a request with (1) "anything after the url" or (2) a "wrong url".
network
low complexity
ez CWE-19
5.0
1999-01-01 CVE-1999-0226 Data Processing Errors vulnerability in Microsoft Windows NT
Windows NT TCP/IP processes fragmented IP packets improperly, causing a denial of service.
network
low complexity
microsoft CWE-19
critical
10.0