Skip to main content

Vendor/product archive

geopp / geo++_gncaster CVEs

Beta · best-effort

5 CVEs tagged to geopp / geo++_gncaster0 Critical, 2 High, 3 Medium, 0 Low, 0 Unrated.

CVE-2010-0554

Published Feb 4, 2010

The HTTP Authentication implementation in Geo++ GNCASTER 1.4.0.7 and earlier uses the same nonce for all authentication, which allows remote attackers to hijack web sessions or by…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2010-0553

Published Feb 4, 2010

Geo++ GNCASTER 1.4.0.7 and earlier allows remote authenticated users to cause a denial of service (application crash) and possibly execute arbitrary code via a long NMEA data sent…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2010-0552

Published Feb 4, 2010

Geo++ GNCASTER 1.4.0.7 and earlier allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via multiple requests for a non-exi…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2010-0551

Published Feb 4, 2010

HTTP authentication implementation in Geo++ GNCASTER 1.4.0.7 and earlier allows remote attackers to read authentication headers of other users via a large request with an incorrec…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2010-0550

Published Feb 4, 2010

admin.htm in Geo++ GNCASTER 1.4.0.7 and earlier does not properly enforce HTTP Digest Authentication, which allows remote authenticated users to use HTTP Basic Authentication, byp…

CVSS 4.0 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-5 of 5 CVEsPage 1 of 1