
CVE-2004-2714
https://notcve.org/view.php?id=CVE-2004-2714
31 Dec 2004 — Unspecified vulnerability in Window Maker 0.80.2 and earlier allows attackers to perform unknown actions via format string specifiers in a font specification in WMGLOBAL, probably a format string vulnerability. • http://secunia.com/advisories/12961 • CWE-134: Use of Externally-Controlled Format String •

CVE-2002-1277
https://notcve.org/view.php?id=CVE-2002-1277
12 Nov 2002 — Buffer overflow in Window Maker (wmaker) 0.80.0 and earlier may allow remote attackers to execute arbitrary code via a certain image file that is not properly handled when Window Maker uses width and height information to allocate a buffer. Desbordamiento de búfer en Window Maker (wmaker) 0.80.0 y anteriores puede permitir a atacantes remotos ejecutar código arbitrario mediante una cierta fichero de imagen que no es manejado adecuadamente cuando Window Maker usa información de ancho y alto para asignar un b... • http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000548 •

CVE-2001-1027
https://notcve.org/view.php?id=CVE-2001-1027
31 Aug 2001 — Buffer overflow in WindowMaker (aka wmaker) 0.64 and earlier allows remote attackers to execute arbitrary code via a long window title. • http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000411 •

CVE-2000-0018 – Windowmaker wmmon 1.0 b2 - Command Execution
https://notcve.org/view.php?id=CVE-2000-0018
22 Dec 1999 — wmmon in FreeBSD allows local users to gain privileges via the .wmmonrc configuration file. • https://www.exploit-db.com/exploits/19685 •

CVE-2000-0026 – SCO Unixware 7.1 - i2odialogd Remote Buffer Overflow
https://notcve.org/view.php?id=CVE-2000-0026
21 Dec 1999 — Buffer overflow in UnixWare i2odialogd daemon allows remote attackers to gain root access via a long username/password authorization string. • https://www.exploit-db.com/exploits/19680 •

CVE-1999-1064
https://notcve.org/view.php?id=CVE-1999-1064
22 Aug 1999 — Multiple buffer overflows in WindowMaker 0.52 through 0.60.0 allow attackers to cause a denial of service and possibly execute arbitrary commands by executing WindowMaker with a long program name (argv[0]). • http://marc.info/?l=bugtraq&m=93555317429630&w=2 •