Vulnerabilities > Ctan > Critical

DATE CVE VULNERABILITY TITLE RISK
2024-01-24 CVE-2023-51889 Out-of-bounds Write vulnerability in Ctan Mathtex
Stack Overflow vulnerability in the validate() function in Mathtex v.1.05 and before allows a remote attacker to execute arbitrary code via crafted string in the application URL.
network
low complexity
ctan CWE-787
critical
9.8
2024-01-24 CVE-2023-51885 Classic Buffer Overflow vulnerability in Ctan Mathtex
Buffer Overflow vulnerability in Mathtex v.1.05 and before allows a remote attacker to execute arbitrary code via the length of the LaTeX string component.
network
low complexity
ctan CWE-120
critical
9.8
2024-01-24 CVE-2023-51887 Command Injection vulnerability in Ctan Mathtex
Command Injection vulnerability in Mathtex v.1.05 and before allows a remote attacker to execute arbitrary code via crafted string in application URL.
network
low complexity
ctan CWE-77
critical
9.8