CVE-2024-4227
- EPSS 0.09%
- Published 15.01.2025 08:15:25
- Last modified 15.01.2025 08:15:25
In Genivia gSOAP with a specific configuration an unauthenticated remote attacker can generate a high CPU load when forcing to parse an XML having duplicate ID attributes which can lead to a DoS.
CVE-2021-21783
- EPSS 1.36%
- Published 25.03.2021 17:15:13
- Last modified 21.11.2024 05:48:57
A code execution vulnerability exists in the WS-Addressing plugin functionality of Genivia gSOAP 2.8.107. A specially crafted SOAP request can lead to remote code execution. An attacker can send an HTTP request to trigger this vulnerability.
CVE-2020-13578
- EPSS 0.15%
- Published 10.02.2021 20:15:15
- Last modified 21.11.2024 05:01:32
A denial-of-service vulnerability exists in the WS-Security plugin functionality of Genivia gSOAP 2.8.107. A specially crafted SOAP request can lead to denial of service. An attacker can send an HTTP request to trigger this vulnerability.
CVE-2020-13574
- EPSS 0.15%
- Published 10.02.2021 20:15:14
- Last modified 21.11.2024 05:01:31
A denial-of-service vulnerability exists in the WS-Security plugin functionality of Genivia gSOAP 2.8.107. A specially crafted SOAP request can lead to denial of service. An attacker can send an HTTP request to trigger this vulnerability.
- EPSS 0.14%
- Published 10.02.2021 20:15:14
- Last modified 21.11.2024 05:01:31
A denial-of-service vulnerability exists in the WS-Addressing plugin functionality of Genivia gSOAP 2.8.107. A specially crafted SOAP request can lead to denial of service. An attacker can send an HTTP request to trigger this vulnerability.
CVE-2020-13576
- EPSS 0.76%
- Published 10.02.2021 20:15:14
- Last modified 21.11.2024 05:01:32
A code execution vulnerability exists in the WS-Addressing plugin functionality of Genivia gSOAP 2.8.107. A specially crafted SOAP request can lead to remote code execution. An attacker can send an HTTP request to trigger this vulnerability.
CVE-2020-13577
- EPSS 0.15%
- Published 10.02.2021 20:15:14
- Last modified 21.11.2024 05:01:32
A denial-of-service vulnerability exists in the WS-Security plugin functionality of Genivia gSOAP 2.8.107. A specially crafted SOAP request can lead to denial of service. An attacker can send an HTTP request to trigger this vulnerability.
CVE-2019-6973
- EPSS 15.69%
- Published 21.03.2019 16:01:10
- Last modified 21.11.2024 04:47:20
Sricam IP CCTV cameras are vulnerable to denial of service via multiple incomplete HTTP requests because the web server (based on gSOAP 2.8.x) is configured for an iterative queueing approach (aka non-threaded operation) with a timeout of several sec...
CVE-2019-7659
- EPSS 0.68%
- Published 09.02.2019 14:29:00
- Last modified 21.11.2024 04:48:28
Genivia gSOAP 2.7.x and 2.8.x before 2.8.75 allows attackers to cause a denial of service (application abort) or possibly have unspecified other impact if a server application is built with the -DWITH_COOKIES flag. This affects the C/C++ libgsoapck/l...
CVE-2017-9765
- EPSS 23.65%
- Published 20.07.2017 00:29:00
- Last modified 20.04.2025 01:37:25
Integer overflow in the soap_get function in Genivia gSOAP 2.7.x and 2.8.x before 2.8.48, as used on Axis cameras and other devices, allows remote attackers to execute arbitrary code or cause a denial of service (stack-based buffer overflow and appli...