Search: "curl"

302 CVEs found

CVE-2000-0973
10.0 HIGH

Buffer overflow in curl earlier than 6.0-1.1, and curl-ssl earlier than 6.0-1.2, allows remote attackers to execute arbitrary commands by forcing a long error message to be generated.

Published: 2000-12-19
Products: 14
Vendors:
daniel_stenberg
CVE-2004-1392
5.0 MEDIUM

PHP 4.0 with cURL functions allows remote attackers to bypass the open_basedir setting and read arbitrary files via a file: URL argument to the curl_init function.

Published: 2004-12-31
Products: 14
Vendors:
php

Multiple stack-based buffer overflows in libcURL and cURL 7.12.1, and possibly other versions, allow remote malicious web servers to execute arbitrary code via base64 encoded replies that exceed the i...

Published: 2005-05-02
Products: 2
Vendors:
haxx

Stack-based buffer overflow in the ntlm_output function in http-ntlm.c for (1) wget 1.10, (2) curl 7.13.2, and (3) libcurl 7.13.2, and other products that use libcurl, when NTLM authentication is enab...

Published: 2005-10-13
Products: 3
Vendors:
wget libcurl curl
CVE-2005-4077
4.6 MEDIUM

Multiple off-by-one errors in the cURL library (libcurl) 7.11.2 through 7.15.0 allow local users to trigger a buffer overflow and cause a denial of service or bypass PHP security restrictions via cert...

Published: 2005-12-08
Products: 11
Vendors:
daniel_stenberg

Heap-based buffer overflow in cURL and libcURL 7.15.0 through 7.15.2 allows remote attackers to execute arbitrary commands via a TFTP URL (tftp://) with a valid hostname and a long path.

Published: 2006-03-21
Products: 3
Vendors:
daniel_stenberg

The cURL library (libcurl) in PHP 4.4.2 and 5.1.4 allows attackers to bypass safe mode and read files via a file:// request containing null characters.

Published: 2006-05-29
Products: 2
Vendors:
php

The spellchecker (spellcheck.php) in DokuWiki 2006/06/04 and earlier allows remote attackers to insert and execute arbitrary PHP code via "complex curly syntax" that is inserted into a regular express...

Published: 2006-06-07
Products: 27
Vendors:
andreas_gohr

The cURL extension files (1) ext/curl/interface.c and (2) ext/curl/streams.c in PHP before 5.1.5 permit the CURLOPT_FOLLOWLOCATION option when open_basedir or safe_mode is enabled, which allows attack...

Published: 2006-08-31
Products: 1
Vendors:
php
CVE-2006-4499
5.0 MEDIUM

ModernBill 5.0.4 and earlier uses cURL with insecure settings for CURLOPT_SSL_VERIFYPEER and CURLOPT_SSL_VERIFYHOST that do not verify SSL certificates, which allows remote attackers to read network t...

Published: 2006-08-31
Products: 1
Vendors:
moderngigabyte
CVE-2007-4850
5.0 MEDIUM

curl/interface.c in the cURL library (aka libcurl) in PHP 5.2.4 and 5.2.5 allows context-dependent attackers to bypass safe_mode and open_basedir restrictions and read arbitrary files via a file:// re...

Published: 2008-01-25
Products: 2
Vendors:
php
CVE-2009-0744
5.0 MEDIUM

Apple Safari 4 Beta build 528.16 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a feeds: URI beginning with a (1) % (percent), (2) { (open cu...

Published: 2009-02-27
Products: 1
Vendors:
apple
CVE-2009-0037
6.8 MEDIUM

The redirect implementation in curl and libcurl 5.11 through 7.19.3, when CURLOPT_FOLLOWLOCATION is enabled, accepts arbitrary Location values, which might allow remote HTTP servers to (1) trigger arb...

Published: 2009-03-05
Products: 80
Vendors:
curl

lib/ssluse.c in cURL and libcurl 7.4 through 7.19.5, when OpenSSL is used, does not properly handle a '\0' character in a domain name in the subject's Common Name (CN) field of an X.509 certificate, w...

Published: 2009-08-14
Products: 74
Vendors:
libcurl curl
CVE-2010-3842
5.8 MEDIUM

Absolute path traversal vulnerability in curl 7.20.0 through 7.21.1, when the --remote-header-name or -J option is used, allows remote servers to create or overwrite arbitrary files by using \ (backsl...

Published: 2010-10-28
Products: 3
Vendors:
curl
CVE-2011-0418
4.0 MEDIUM

The glob implementation in Pure-FTPd before 1.0.32, and in libc in NetBSD 5.1, does not properly expand expressions containing curly brackets, which allows remote authenticated users to cause a denial...

Published: 2011-05-24
Products: 90
Vendors:
netbsd pureftpd
CVE-2011-2192
4.3 MEDIUM

The Curl_input_negotiate function in http_negotiate.c in libcurl 7.10.6 through 7.21.6, as used in curl and other products, always performs credential delegation during GSSAPI authentication, which al...

Published: 2011-07-07
Products: 11
Vendors:
haxx canonical fedoraproject apple debian

curl and libcurl 7.2x before 7.24.0 do not properly consider special characters during extraction of a pathname from a URL, which allows remote attackers to conduct data-injection attacks via a crafte...

Published: 2012-04-13
Products: 26
Vendors:
curl

The proc_deutf function in includes/functions_vbseocp_abstract.php in vBSEO 3.5.0, 3.5.1, 3.5.2, 3.6.0, and earlier allows remote attackers to insert and execute arbitrary PHP code via "complex curly ...

Published: 2012-10-01
Products: 35
Vendors:
crawlability
CVE-2012-0861
6.8 MEDIUM

The vds_installer in Red Hat Enterprise Virtualization Manager (RHEV-M) before 3.1, when adding a host, uses the -k curl parameter when downloading deployUtil.py and vds_bootstrap.py, which prevents S...

Published: 2013-01-04
Products: 4
Vendors:
redhat