Search: "curl"

302 CVEs found

set_file_metadata in xattr.c in GNU Wget before 1.20.1 stores a file's origin URL in the user.xdg.origin.url metadata attribute of the extended attributes of the downloaded file, which allows local us...

Published: 2018-12-26
Products: 1
Vendors:
gnu
CVE-2019-5884
5.9 MEDIUM

php/elFinder.class.php in elFinder before 2.1.45 leaks information if PHP's curl extension is enabled and safe_mode or open_basedir is not set.

Published: 2019-01-10
Products: 1
Vendors:
std42

pacman before 5.1.3 allows directory traversal when installing a remote package via a specified URL "pacman -U <url>" due to an unsanitized file name received from a Content-Disposition header. pacman...

Published: 2019-03-11
Products: 1
Vendors:
pacman_project
CVE-2019-9804
9.8 CRITICAL

In Firefox Developer Tools it is possible that pasting the result of the 'Copy as cURL' command into a command shell on macOS will cause the execution of unintended additional bash script commands if ...

Published: 2019-04-26
Products: 2
Vendors:
apple mozilla

Crestron AM-100 with firmware 1.6.0.2 and AM-101 with firmware 2.7.0.2 are vulnerable to argumention injection to the curl binary via crafted HTTP requests to return.cgi. A remote, authenticated attac...

Published: 2019-04-30
Products: 4
Vendors:
crestron

An integer overflow in curl's URL API results in a buffer overflow in libcurl 7.62.0 to and including 7.64.1.

Published: 2019-05-28
Products: 1
Vendors:
haxx
CVE-2017-9383
9.9 CRITICAL

An issue was discovered on Vera VeraEdge 1.7.19 and Veralite 1.7.481 devices. The device provides UPnP services that are available on port 3480 and can also be accessed via port 80 using the url "/por...

Published: 2019-06-17
Products: 4
Vendors:
getvera

A non-privileged user or program can put code and a config file in a known non-privileged path (under C:/usr/local/) that will make curl <= 7.65.1 automatically run the code (as an openssl "engine") o...

Published: 2019-07-02
Products: 14
Vendors:
netapp haxx microsoft oracle
CVE-2019-5481
9.8 CRITICAL

Double-free vulnerability in the FTP-kerberos code in cURL 7.52.0 to 7.65.3.

Published: 2019-09-16
Products: 24
Vendors:
netapp haxx oracle fedoraproject debian +1 more
CVE-2019-5482
9.8 CRITICAL

Heap buffer overflow in the TFTP protocol handler in cURL 7.19.4 to 7.65.3.

Published: 2019-09-16
Products: 30
Vendors:
netapp haxx oracle fedoraproject debian +1 more
CVE-2002-2444
9.8 CRITICAL

Snoopy before 2.0.0 has a security hole in exec cURL

Published: 2019-10-28
Products: 1
Vendors:
snoopy_project
CVE-2019-10789
9.8 CRITICAL

All versions of curling.js are vulnerable to Command Injection via the run function. The command argument can be controlled by users without any sanitization.

Published: 2020-02-06
Products: 1
Vendors:
curling_project
CVE-2016-4606
9.8 CRITICAL

Curl before 7.49.1 in Apple OS X before macOS Sierra prior to 10.12 allows remote or local attackers to execute arbitrary code, gain sensitive information, cause denial-of-service conditions, bypass s...

Published: 2020-02-21
Products: 2
Vendors:
apple haxx
CVE-2019-11574
9.8 CRITICAL

An issue was discovered in Simple Machines Forum (SMF) before release 2.0.17. There is SSRF related to Subs-Package.php and Subs.php because user-supplied data is used directly in curl calls.

Published: 2020-03-20
Products: 1
Vendors:
simplemachines

The 'Copy as cURL' feature of Devtools' network tab did not properly escape the HTTP method of a request, which can be controlled by the website. If a user used the 'Copy as Curl' feature and pasted t...

Published: 2020-03-25
Products: 6
Vendors:
canonical mozilla
CVE-2020-11534
9.8 CRITICAL

An issue was discovered in ONLYOFFICE Document Server 5.5.0. An attacker can craft a malicious .docx file, and exploit the NSFileDownloader function to pass parameters to a binary (such as curl or wge...

Published: 2020-04-15
Products: 1
Vendors:
onlyoffice
CVE-2020-7646
9.8 CRITICAL

curlrequest through 1.0.1 allows reading any file by populating the file parameter with user input.

Published: 2020-05-07
Products: 1
Vendors:
curlrequest_project

The 'Copy as cURL' feature of Devtools' network tab did not properly escape the HTTP method of a request, which can be controlled by the website. If a user used the 'Copy as cURL' feature and pasted t...

Published: 2020-05-26
Products: 4
Vendors:
microsoft mozilla
CVE-2020-12392
5.5 MEDIUM

The 'Copy as cURL' feature of Devtools' network tab did not properly escape the HTTP POST data of a request, which can be controlled by the website. If a user used the 'Copy as cURL' feature and paste...

Published: 2020-05-26
Products: 7
Vendors:
canonical mozilla
CVE-2020-4052
6.3 MEDIUM

In Wiki.js before 2.4.107, there is a stored cross-site scripting through template injection. This vulnerability exists due to an insecure validation mechanism intended to insert v-pre tags into rende...

Published: 2020-06-16
Products: 1
Vendors:
requarks