2 results (0.006 seconds)

CVSS: 7.5EPSS: 1%CPEs: 2EXPL: 2

Format string vulnerability in Xpand Rally 1.1.0.0 and earlier allows remote attackers to execute arbitrary code via format string specifiers in a message. • http://aluigi.altervista.org/adv/xprallyfs-adv.txt http://secunia.com/advisories/14545 http://www.securiteam.com/windowsntfocus/5DP0G00F5Q.html https://exchange.xforce.ibmcloud.com/vulnerabilities/19649 •

CVSS: 5.0EPSS: 7%CPEs: 1EXPL: 3

Xpand Rally 1.0.0.0 allows remote attackers or remote malicious game servers to cause a denial of service (application crash) via a packet with large values that are not properly handled in certain malloc or memcpy operations. • https://www.exploit-db.com/exploits/780 http://aluigi.altervista.org/adv/xprallyboom-adv.txt http://lists.grok.org.uk/pipermail/full-disclosure/2005-January/031336.html http://marc.info/?l=bugtraq&m=110720064811485&w=2 http://secunia.com/advisories/14073 http://securitytracker.com/id?1013043 http://www.securityfocus.com/bid/12409 https://exchange.xforce.ibmcloud.com/vulnerabilities/19150 •