Vulnerabilities > Vice

DATE CVE VULNERABILITY TITLE RISK
2024-11-11 CVE-2024-11016 SQL Injection vulnerability in Vice Webopac 7.1.20160701
Webopac from Grand Vice info has a SQL Injection vulnerability, allowing unauthenticated remote attacks to inject arbitrary SQL commands to read, modify, and delete database contents.
network
low complexity
vice CWE-89
critical
9.8
2021-11-15 CVE-2021-42838 Cross-site Scripting vulnerability in Vice Webopac 1.8.20160701/7.1.20160701
Grand Vice info Co.
network
vice CWE-79
4.3
2021-11-15 CVE-2021-42839 Unrestricted Upload of File with Dangerous Type vulnerability in Vice Webopac 1.8.20160701/7.1.20160701
Grand Vice info Co.
network
low complexity
vice CWE-434
critical
9.0
2004-08-06 CVE-2004-0453 Unspecified vulnerability in Vice 1.13/1.14/1.6
Format string vulnerability in the monitor "memory dump" command in VICE 1.6 to 1.14 allows local users to cause a denial of service (emulator crash) and possibly execute arbitrary code via format string specifiers in an output string.
local
low complexity
vice
7.2