VendorsUniversity Of Minnesotamapserverall versions
Vulnerabilities

University Of Minnesota Mapserver

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

2CVEs
CVE-2007-4629
Buffer overflow in the processLine function in maptemplate.c in MapServer before 4.10.3 allows attackers to cause a denial of service and possibly execute arbitrary code via a mapfile with a long layer name, group name, or metadata entry name.
Published 2007-08-31 · Modified
7.5EPSS 0.035
CVE-2007-4542
Multiple cross-site scripting (XSS) vulnerabilities in MapServer before 4.10.3 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors involving the (1) processLine function in maptemplate.c and the (2) writeError function in mapserv.c in the mapserv CGI program.
Published 2007-08-27 · Modified
4.3EPSS 0.016