Wikepage Opus vulnerabilities
6 known vulnerabilities affecting wikepage/opus.
Total CVEs
6
CISA KEV
0
Public exploits
1
Exploited in wild
0
Severity breakdown
HIGH2MEDIUM4
Vulnerabilities
Page 1 of 1
CVE-2022-25345HIGHCVSS 7.5≥ 0, < 02022-06-17
CVE-2022-25345 [HIGH] CVE-2022-25345: All versions of package @discordjs/opus are vulnerable to Denial of Service (DoS) when trying to encode using an encoder with zero channels, or a non-
All versions of package @discordjs/opus are vulnerable to Denial of Service (DoS) when trying to encode using an encoder with zero channels, or a non-initialized buffer. This leads to a hard crash.
osv
CVE-2017-0381HIGHCVSS 7.8≥ 0, < 1.2~alpha2-12017-01-12
CVE-2017-0381 [HIGH] CVE-2017-0381: An information disclosure vulnerability in silk/NLSF_stabilize
An information disclosure vulnerability in silk/NLSF_stabilize.c in libopus in Mediaserver could enable a local malicious application to access data outside of its permission levels. This issue is rated as Moderate because it could be used to access sensitive data without permission. Product: Android. Versions: 5.0.2, 5.1.1, 6.0, 6.0.1, 7.0, 7.1. Android ID: A-31607432.
osv
CVE-2013-0899MEDIUMCVSS 5.0≥ 0, < 0.9.14+20120615-1+nmu12013-02-23
CVE-2013-0899 [MEDIUM] CVE-2013-0899: Integer overflow in the padding implementation in the opus_packet_parse_impl function in src/opus_decoder
Integer overflow in the padding implementation in the opus_packet_parse_impl function in src/opus_decoder.c in Opus before 1.0.2, as used in Google Chrome before 25.0.1364.97 on Windows and Linux and before 25.0.1364.99 on Mac OS X and other products, allows remote attackers to cause a denial of service (out-of-bounds read) via a long packet.
osv
CVE-2008-1956MEDIUMCVSS 4.3PoCv13_2007.22008-04-25
CVE-2008-1956 [MEDIUM] CWE-79 CVE-2008-1956: Cross-site scripting (XSS) vulnerability in index.php in Wikepage Opus 13 2007.2 allows remote attac
Cross-site scripting (XSS) vulnerability in index.php in Wikepage Opus 13 2007.2 allows remote attackers to inject arbitrary web script or HTML via the wiki parameter.
nvd
CVE-2008-1884MEDIUMCVSS 5.0v13_2007.22008-04-18
CVE-2008-1884 [MEDIUM] CVE-2008-1884: Directory traversal vulnerability in index.php in Wikepage Opus 13 2007.2 allows remote attackers to
Directory traversal vulnerability in index.php in Wikepage Opus 13 2007.2 allows remote attackers to read arbitrary files via directory traversal sequences in the wiki parameter, a different vector than CVE-2006-4418.
nvd
CVE-2007-5295MEDIUMCVSS 4.3v13_2007.22007-10-09
CVE-2007-5295 [MEDIUM] CWE-79 CVE-2007-5295: Multiple cross-site scripting (XSS) vulnerabilities in index.php in (a) Wikepage Opus 13 2007.2 and
Multiple cross-site scripting (XSS) vulnerabilities in index.php in (a) Wikepage Opus 13 2007.2 and (b) TipiWiki 2 allow remote attackers to inject arbitrary web script or HTML via the (1) PageContent and (2) PageName parameters.
nvd