Vulnerabilities > Easycom Aura

DATE CVE VULNERABILITY TITLE RISK
2017-03-15 CVE-2017-5359 Improper Input Validation vulnerability in Easycom-Aura SQL Iplug
EasyCom SQL iPlug allows remote attackers to cause a denial of service via the D$EVAL parameter to the default URI.
network
low complexity
easycom-aura CWE-20
7.5
2017-03-15 CVE-2017-5358 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Easycom-Aura Easycom for PHP 4.0.0.29
Stack-based buffer overflows in php_Easycom5_3_0.dll in EasyCom for PHP 4.0.0.29 allows remote attackers to execute arbitrary code via the server argument to the (1) i5_connect, (2) i5_pconnect, or (3) i5_private_connect API function.
network
low complexity
easycom-aura CWE-119
critical
9.8