Vulnerabilities > Creolabs > High

DATE CVE VULNERABILITY TITLE RISK
2018-01-02 CVE-2017-1000437 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Creolabs Gravity 1.0
Creolabs Gravity 1.0 contains a stack based buffer overflow in the operator_string_add function, resulting in remote code execution.
network
low complexity
creolabs CWE-119
7.5
2017-11-17 CVE-2017-1000173 Out-of-bounds Read vulnerability in Creolabs Gravity 1.0
Creolabs Gravity Version: 1.0 Heap Overflow Potential Code Execution.
network
low complexity
creolabs CWE-125
7.5
2017-11-17 CVE-2017-1000172 Use After Free vulnerability in Creolabs Gravity 1.0
Creolabs Gravity Version: 1.0 Use-After-Free Possible code execution.
network
low complexity
creolabs CWE-416
7.5
2017-07-17 CVE-2017-1000075 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Creolabs Gravity 1.0
Creolabs Gravity version 1.0 is vulnerable to a stack overflow in the memcmp function
network
low complexity
creolabs CWE-119
7.5
2017-07-17 CVE-2017-1000074 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Creolabs Gravity 1.0
Creolabs Gravity version 1.0 is vulnerable to a stack overflow in the string_repeat() function.
network
low complexity
creolabs CWE-119
7.5
2017-07-17 CVE-2017-1000073 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Creolabs Gravity 1.0
Creolabs Gravity version 1.0 is vulnerable to a heap overflow in an undisclosed component that can result in arbitrary code execution.
network
low complexity
creolabs CWE-119
7.5
2017-07-17 CVE-2017-1000072 Double Free vulnerability in Creolabs Gravity 1.0
Creolabs Gravity version 1.0 is vulnerable to a Double Free in gravity_value resulting potentially leading to modification of unexpected memory locations
network
low complexity
creolabs CWE-415
7.5