Vulnerabilities > PRO Face

DATE CVE VULNERABILITY TITLE RISK
2012-06-25 CVE-2012-3797 Buffer Errors vulnerability in Pro-Face Pro-Server EX and Wingp PC Runtime
Pro-face WinGP PC Runtime 3.1.00 and earlier, and ProServr.exe in Pro-face Pro-Server EX 1.30.000 and earlier, does not properly check packet sizes before reusing packet memory buffers, which allows remote attackers to cause a denial of service (heap memory corruption) or possibly have unspecified other impact via a short crafted packet with a certain opcode.
network
low complexity
pro-face CWE-119
critical
10.0
2012-06-25 CVE-2012-3796 Information Exposure vulnerability in Pro-Face Pro-Server EX and Wingp PC Runtime
Pro-face WinGP PC Runtime 3.1.00 and earlier, and ProServr.exe in Pro-face Pro-Server EX 1.30.000 and earlier, allows remote attackers to obtain sensitive information from daemon memory via a crafted packet with a certain opcode.
network
low complexity
pro-face CWE-200
5.0
2012-06-25 CVE-2012-3795 Buffer Errors vulnerability in Pro-Face Pro-Server EX and Wingp PC Runtime
Pro-face WinGP PC Runtime 3.1.00 and earlier, and ProServr.exe in Pro-face Pro-Server EX 1.30.000 and earlier, allows remote attackers to cause a denial of service (daemon crash) via a crafted packet with a certain opcode and a large value in a size field.
network
low complexity
pro-face CWE-119
5.0
2012-06-25 CVE-2012-3794 Buffer Errors vulnerability in Pro-Face Pro-Server EX and Wingp PC Runtime
Pro-face WinGP PC Runtime 3.1.00 and earlier, and ProServr.exe in Pro-face Pro-Server EX 1.30.000 and earlier, allows remote attackers to cause a denial of service (unhandled exception and daemon crash) via a crafted packet with a certain opcode that triggers an invalid attempt to allocate a large amount of memory.
network
low complexity
pro-face CWE-119
5.0
2012-06-25 CVE-2012-3793 Buffer Errors vulnerability in Pro-Face Pro-Server EX and Wingp PC Runtime
Integer overflow in Pro-face WinGP PC Runtime 3.1.00 and earlier, and ProServr.exe in Pro-face Pro-Server EX 1.30.000 and earlier, allows remote attackers to cause a denial of service (daemon crash) via a crafted packet with a certain opcode that triggers an incorrect memory allocation and a buffer overflow.
network
low complexity
pro-face CWE-119
5.0
2012-06-25 CVE-2012-3792 Buffer Errors vulnerability in Pro-Face Pro-Server EX and Wingp PC Runtime
Pro-face WinGP PC Runtime 3.1.00 and earlier, and ProServr.exe in Pro-face Pro-Server EX 1.30.000 and earlier, allows remote attackers to cause a denial of service (out-of-bounds read operation) via a crafted packet that triggers a certain Find Node check attempt.
network
low complexity
pro-face CWE-119
5.0