Search

Found 13,013 results in 1413ms · Match type: Filtered list

0
KEVHas exploit
Reset
CVE Severity CVSS Risk Flags OS Vendor Published Description
CVE-2017-16849 critical 9.8 9.8 zohocorp 9y ago Zoho ManageEngine Applications Manager 13 before build 13530 allows SQL injection via the /MyPage.do?method=viewDashBoard forpage parameter.
CVE-2017-16848 critical 9.8 9.8 zohocorp 9y ago Zoho ManageEngine Applications Manager 13 allows SQL injection via the /manageConfMons.do groupname parameter.
CVE-2017-16847 critical 9.8 9.8 zohocorp 9y ago Zoho ManageEngine Applications Manager 13 before build 13530 allows SQL injection via the /showresource.do resourceid parameter in a showPlasmaView action.
CVE-2017-16846 critical 9.8 9.8 zohocorp 9y ago Zoho ManageEngine Applications Manager 13 before build 13530 allows SQL injection via the /manageApplications.do?method=AddSubGroup haid parameter.
CVE-2017-16844 critical 9.8 9.8 FIX slesdebian debian procmail 9y ago Heap-based buffer overflow in the loadbuf function in formisc.c in formail in procmail 3.22 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code…
CVE-2017-5738 critical 9.1 9.1 intel 9y ago Escalation of privilege vulnerability in admin portal for Intel Unite App versions 3.1.32.12, 3.1.41.18 and 3.1.45.26 allows an attacker with network access to cause a denial of service and/or inform…
CVE-2017-12337 critical 9.8 9.8 cisco 9y ago A vulnerability in the upgrade mechanism of Cisco collaboration products based on the Cisco Voice Operating System software platform could allow an unauthenticated, remote attacker to gain unauthoriz…
CVE-2017-8807 critical 9.1 9.1 FIX debian debian varnish-cachevarnish_cache_project 9y ago vbf_stp_error in bin/varnishd/cache/cache_fetch.c in Varnish HTTP Cache 4.1.x before 4.1.9 and 5.x before 5.2.1 allows remote attackers to obtain sensitive information from process memory because a V…
CVE-2017-1000248 critical 9.8 9.8 FIX debian debian redis-store 9y ago Redis-store <=v1.3.0 allows unsafe objects to be loaded from redis
CVE-2017-5533 critical 9.8 9.8 tibco 9y ago A vulnerability in the server content cache of TIBCO JasperReports Server, TIBCO JasperReports Server Community Edition, TIBCO JasperReports Server for ActiveMatrix BPM, TIBCO Jaspersoft for AWS with…
CVE-2017-12634 critical 9.8 9.8 apache 9y ago Camel-castor component in Apache Camel is vulnerable to Java object de-serialisation
CVE-2017-12633 critical 9.8 9.8 apache 9y ago Apache Camel camel-hessian component vulnerable to Java object deserialization
CVE-2017-8809 critical 9.8 9.8 FIX arch archdebian debian mediawiki 9y ago api.php in MediaWiki before 1.27.4, 1.28.x before 1.28.3, and 1.29.x before 1.29.2 has a Reflected File Download vulnerability.
CVE-2017-12739 critical 9.8 9.8 9y ago An issue was discovered on Siemens SICAM RTUs SM-2556 COM Modules with the firmware variants ENOS00, ERAC00, ETA2, ETLS00, MODi00, and DNPi00. The integrated web server (port 80/tcp) of the affected …
CVE-2017-10272 critical 9.9 9.9 oracle 9y ago Vulnerability in the Oracle Tuxedo component of Oracle Fusion Middleware (subcomponent: Core). Supported versions that are affected are 11.1.1, 12.1.1, 12.1.3 and 12.2.2. Easily exploitable vulnerabi…
CVE-2017-10269 critical 10.0 10.0 oracle 9y ago Vulnerability in the Oracle Tuxedo component of Oracle Fusion Middleware (subcomponent: Core). Supported versions that are affected are 11.1.1, 12.1.1, 12.1.3 and 12.2.2. Easily exploitable vulnerabi…
CVE-2017-3891 critical 9.6 9.6 blackberry 9y ago In BlackBerry QNX Software Development Platform (SDP) 6.6.0, an elevation of privilege vulnerability in the default configuration of the QNX SDP with QNet enabled on networks comprising two or more Q…
CVE-2017-16820 critical 9.8 9.8 FIX debian debian collectd 9y ago The csnmp_read_table function in snmp.c in the SNMP plugin in collectd before 5.6.3 is susceptible to a double free in a certain error case, which could lead to a crash (or potentially have other imp…
CVE-2017-12635 critical 9.8 10.0 EXPFIX slesarch arch apache 9y ago multiple issues in couchdb
CVE-2017-6274 critical 9.8 9.8 9y ago An elevation of Privilege vulnerability exists in the Thermal Driver, where a missing bounds checks in the thermal throttle driver can cause an out-of-bounds write in the kernel. This issue is rated …
CVE-2017-1710 critical 9.8 9.8 9y ago A vulnerability in the Service Assistant GUI in IBM Storwize V7000 (2076) 8.1 could allow a remote attacker to perform a privilege escalation. IBM X-Force ID: 134531.
CVE-2017-1221 critical 9.8 9.8 ibm 9y ago IBM Tivoli Endpoint Manager (IBM BigFix 9.2 and 9.5) does not require that users should have strong passwords by default, which makes it easier for attackers to compromise user accounts. IBM X-Force …
CVE-2017-14024 critical 9.8 9.8 schneider-electric 9y ago A Stack-based Buffer Overflow issue was discovered in Schneider Electric InduSoft Web Studio v8.0 SP2 Patch 1 and prior versions, and InTouch Machine Edition v8.0 SP2 Patch 1 and prior versions. The …
CVE-2017-0907 critical 9.8 9.8 recurly 9y ago Critical severity vulnerability that affects recurly-api-client
CVE-2017-10871 critical 9.8 9.8 9y ago Buffer overflow in NTT DOCOMO Wi-Fi STATION L-02F Software version L02F-MDM9625-V10h-JUN-23-2017-DCM-JP and earlier allows an attacker to execute arbitrary code via unspecified vectors.
CVE-2017-13846 critical 9.8 9.8 macos macos 9y ago An issue was discovered in certain Apple products. macOS before 10.13.1 is affected. The issue involves the third-party "PCRE" product. Versions before 8.40 allow remote attackers to cause a denial o…
CVE-2017-13832 critical 9.8 9.8 macos macos 9y ago An issue was discovered in certain Apple products. macOS before 10.13.1 is affected. The issue involves the "802.1X" component. It allows attackers to have an unspecified impact by leveraging TLS 1.0…
CVE-2017-13815 critical 9.8 9.8 macos macos 9y ago An issue was discovered in certain Apple products. macOS before 10.13.1 is affected. The issue involves the third-party "file" product. Versions before 5.31 allow remote attackers to cause a denial o…
CVE-2017-16783 critical 9.8 10.0 EXP cmsmadesimple 9y ago In CMS Made Simple 2.1.6, there is Server-Side Template Injection via the cntnt01detailtemplate parameter.
CVE-2017-16780 critical 9.8 10.0 EXP mybb 9y ago The installer in MyBB before 1.8.13 allows remote attackers to execute arbitrary code by writing to the configuration file.
CVE-2017-16764 critical 9.8 9.8 django_make_app_project 9y ago An exploitable vulnerability exists in the YAML parsing functionality in the read_yaml_file method in io_utils.py in django_make_app 0.1.3. A YAML parser can execute arbitrary Python commands resulti…
CVE-2017-16763 critical 9.8 9.8 confire_project 9y ago An exploitable vulnerability exists in the YAML parsing functionality in config.py in Confire 0.2.0. Due to the user-specific configuration being loaded from "~/.confire.yaml" using the yaml.load fun…
CVE-2017-16521 critical 9.8 9.8 inedo 9y ago In Inedo BuildMaster before 5.8.2, XslTransform was used where XslCompiledTransform should have been used.
CVE-2017-16634 critical 9.8 9.8 joomla 9y ago In Joomla! before 3.8.2, a bug allowed third parties to bypass a user's 2-factor authentication method.
CVE-2017-16562 critical 9.8 10.0 EXP userproplugin 9y ago The UserPro plugin before 4.9.17.1 for WordPress, when used on a site with the "admin" username, allows remote attackers to bypass authentication and obtain administrative access via a "true" value f…
CVE-2017-11309 critical 9.6 10.0 EXP avaya 9y ago Buffer overflow in the SoftConsole client in Avaya IP Office before 10.1.1 allows remote servers to execute arbitrary code via a long response.
CVE-2015-7501 critical 9.8 9.8 FIX debian debian redhat 9y ago Deserialization of Untrusted Data in Apache commons collections
CVE-2017-0909 critical 9.8 9.8 private_address_check_project 9y ago private_address_check contains Incomplete List of Disallowed Inputs
CVE-2017-0905 critical 9.8 9.8 recurly 9y ago Recurly gem Server-Side Request Forgery in Resource#find method
CVE-2015-3933 critical 9.8 10.0 EXP metalgenix 9y ago MetalGenix GeniXCMS vulnerable to SQL Injection
CVE-2017-16618 critical 9.8 9.8 owlmixin_project 9y ago An exploitable vulnerability exists in the YAML loading functionality of util.py in OwlMixin before 2.0.0a12. A "Load YAML" string or file (aka load_yaml or load_yamlf) can execute arbitrary Python c…
CVE-2017-16616 critical 9.8 9.8 pyanyapi_project 9y ago An exploitable vulnerability exists in the YAML parsing functionality in the YAMLParser method in Interfaces.py in PyAnyAPI before 0.6.1. A YAML parser can execute arbitrary Python commands resulting…
CVE-2017-16615 critical 9.8 9.8 mlalchemy_project 9y ago An exploitable vulnerability exists in the YAML parsing functionality in the parse_yaml_query method in parser.py in MLAlchemy before 0.2.2. When processing YAML-Based queries for data, a YAML parser…
CVE-2017-16561 critical 9.8 9.8 ingenious_school_management_system_project 9y ago /view/friend_profile.php in Ingenious School Management System 2.3.0 is vulnerable to Boolean-based and Time-based SQL injection in the 'friend_index' parameter of a GET request.
CVE-2016-0872 critical 9.8 9.8 kabona 9y ago A Plaintext Storage of a Password issue was discovered in Kabona AB WebDatorCentral (WDC) versions prior to Version 3.4.0. WDC stores password credentials in plaintext.
CVE-2008-7319 critical 9.8 9.8 net-ping-external_project 9y ago The Net::Ping::External extension through 0.15 for Perl does not properly sanitize arguments (e.g., invalid hostnames) containing shell metacharacters before use of backticks in External.pm, allowing…
CVE-2017-2922 critical 9.8 9.8 FIX debian debian cesanta 9y ago An exploitable memory corruption vulnerability exists in the Websocket protocol implementation of Cesanta Mongoose 6.8. A specially crafted websocket packet can cause a buffer to be allocated while l…
CVE-2017-2921 critical 9.8 9.8 FIX debian debian cesanta 9y ago An exploitable memory corruption vulnerability exists in the Websocket protocol implementation of Cesanta Mongoose 6.8. A specially crafted websocket packet can cause an integer overflow, leading to …
CVE-2017-2894 critical 9.8 9.8 FIX debian debian cesanta 9y ago An exploitable stack buffer overflow vulnerability exists in the MQTT packet parsing functionality of Cesanta Mongoose 6.8. A specially crafted MQTT SUBSCRIBE packet can cause a stack buffer overflow…
CVE-2017-2892 critical 9.8 9.8 FIX debian debian cesanta 9y ago An exploitable arbitrary memory read vulnerability exists in the MQTT packet parsing functionality of Cesanta Mongoose 6.8. A specially crafted MQTT packet can cause an arbitrary out-of-bounds memory…
CVE-2017-2891 critical 9.8 9.8 FIX debian debian cesanta 9y ago An exploitable use-after-free vulnerability exists in the HTTP server implementation of Cesanta Mongoose 6.8. An ordinary HTTP POST request with a CGI target can cause a reuse of previously freed poi…
CVE-2017-2864 critical 9.8 9.8 9y ago An exploitable vulnerability exists in the generation of authentication token functionality of Circle with Disney. Specially crafted network packets can cause a valid authentication token to be retur…
CVE-2017-12085 critical 9.8 9.8 9y ago An exploitable routing vulnerability exists in the Circle with Disney cloud infrastructure. A specially crafted packet can make the Circle cloud route a packet to any arbitrary Circle device. An atta…
CVE-2017-15887 critical 9.8 9.8 synology 9y ago An improper restriction of excessive authentication attempts vulnerability in /principals in Synology CardDAV Server before 6.0.7-0085 allows remote attackers to obtain user credentials via a brute-f…
CVE-2017-16638 critical 9.8 9.8 vde_project 9y ago The Gentoo net-misc/vde package before version 2.3.2-r4 may allow members of the "qemu" group to gain root privileges by creating a hard link in a directory on which "chown" is called recursively by …
CVE-2017-16548 critical 9.8 9.8 FIX arch arch slesdebian debian samba 9y ago The receive_xattr function in xattrs.c in rsync 3.1.2 and 3.1.3-development does not check for a trailing '\0' character in an xattr name, which allows remote attackers to cause a denial of service (…
CVE-2017-16543 critical 9.8 10.0 EXP zohocorp 9y ago Zoho ManageEngine Applications Manager 13 before build 13500 allows SQL injection via GraphicalView.do, as demonstrated by a crafted viewProps yCanvas field or viewid parameter.
CVE-2017-1000171 critical 9.8 9.8 mahara 9y ago Mahara Mobile before 1.2.1 is vulnerable to passwords being sent to the Mahara access log in plain text.
CVE-2017-1000154 critical 9.8 9.8 mahara 9y ago Mahara 15.04 before 15.04.8 and 15.10 before 15.10.4 and 16.04 before 16.04.2 are vulnerable to some authentication methods, which do not use Mahara's built-in login form, still allowing users to log…
CVE-2017-1000153 critical 9.8 9.8 mahara 9y ago Mahara 15.04 before 15.04.10 and 15.10 before 15.10.6 and 16.04 before 16.04.4 are vulnerable to incorrect access control after the password reset link is sent via email and then user changes default…
CVE-2017-1000152 critical 9.8 9.8 mahara 9y ago Mahara 15.04 before 15.04.7 and 15.10 before 15.10.3 running PHP 5.3 are vulnerable to one user being logged in as another user on a separate computer as the same session ID is served. This situation…
CVE-2017-16523 critical 9.8 9.8 9y ago MitraStar GPT-2541GNAC (HGU) 1.00(VNJ0)b1 and DSL-100HN-T1 ES_113WJY0b16 devices have a zyad1234 password for the zyad1234 account, which is equivalent to root and undocumented.
CVE-2017-11767 critical 9.8 9.8 microsoft 9y ago ChakraCore vulnerable to privilege escalation
CVE-2017-16510 critical 9.8 9.8 FIX debian debian wordpress 9y ago WordPress before 4.8.3 is affected by an issue where $wpdb->prepare() can create unexpected and unsafe queries leading to potential SQL injection (SQLi) in plugins and themes, as demonstrated by a "d…
CVE-2017-1000121 critical 9.8 9.8 FIX debian debian webkitgtk 9y ago The UNIX IPC layer in WebKit, including WebKitGTK+ prior to 2.16.3, does not properly validate message size metadata, allowing a compromised secondary process to trigger an integer overflow and subse…
CVE-2017-1000245 critical 9.8 9.8 jenkins 9y ago Jenkins SSH Plugin user passwords for encrypted SSH keys stored in plaintext
CVE-2017-14027 critical 9.8 9.8 9y ago A Use of Hard-coded Credentials issue was discovered in Korenix JetNet JetNet5018G version 1.4, JetNet5310G version 1.4a, JetNet5428G-2G-2FX version 1.4, JetNet5628G-R version 1.4, JetNet5628G versio…
CVE-2017-14021 critical 9.8 9.8 9y ago A Use of Hard-coded Cryptographic Key issue was discovered in Korenix JetNet JetNet5018G version 1.4, JetNet5310G version 1.4a, JetNet5428G-2G-2FX version 1.4, JetNet5628G-R version 1.4, JetNet5628G …
CVE-2017-15535 critical 9.1 9.1 mongodb 9y ago MongoDB 3.4.x before 3.4.10, and 3.5.x-development, has a disabled-by-default configuration setting, networkMessageCompressors (aka wire protocol compression), which exposes a vulnerability when enab…
CVE-2017-14375 critical 9.8 9.8 dellemc 9y ago EMC Unisphere for VMAX Virtual Appliance (vApp) versions prior to 8.4.0.15, EMC Solutions Enabler Virtual Appliance versions prior to 8.4.0.15, EMC VASA Virtual Appliance versions prior to 8.4.0.512,…
CVE-2017-1000257 critical 9.1 9.1 FIX slesarch archdebian debian haxx 9y ago An IMAP FETCH response line indicates the size of the returned data, in number of bytes. When that response says the data is zero bytes, libcurl would pass on that (non-existing) data with a pointer …
CVE-2017-14356 critical 9.8 9.8 hp 9y ago An SQL Injection vulnerability in HP ArcSight ESM and HP ArcSight ESM Express, in any 6.x version prior to 6.9.1c Patch 4 or 6.11.0 Patch 1. This vulnerability could be exploited remotely to allow SQ…
CVE-2017-15993 critical 9.8 10.0 EXP zomato_clone_script_project 9y ago Zomato Clone Script allows SQL Injection via the restaurant-menu.php resid parameter.
CVE-2017-15992 critical 9.8 10.0 EXP website_broker_script_project 9y ago Website Broker Script allows SQL Injection via the 'status_id' Parameter to status_list.php.
CVE-2017-15991 critical 9.8 10.0 EXP vastal 9y ago Vastal I-Tech Agent Zone (aka The Real Estate Script) allows SQL Injection in searchCommercial.php via the property_type, city, or posted_by parameter, or searchResidential.php via the property_type,…
CVE-2017-15990 critical 9.8 10.0 EXP savsofteproducts 9y ago Php Inventory & Invoice Management System allows Arbitrary File Upload via dashboard/edit_myaccountdetail/.
CVE-2017-15989 critical 9.8 10.0 EXP online_exam_test_application_project 9y ago Online Exam Test Application allows SQL Injection via the resources.php sort parameter in a category action.
CVE-2017-15988 critical 9.8 10.0 EXP nicephpscripts 9y ago Nice PHP FAQ Script allows SQL Injection via the index.php nice_theme parameter, a different vulnerability than CVE-2008-6525.
CVE-2017-15987 critical 9.8 10.0 EXP fake_magazine_cover_script_project 9y ago Fake Magazine Cover Script allows SQL Injection via the rate.php value parameter or the content.php id parameter.
CVE-2017-15986 critical 9.8 10.0 EXP cpa_lead_reward_script_project 9y ago CPA Lead Reward Script allows SQL Injection via the username parameter.
CVE-2017-15985 critical 9.8 10.0 EXP readymadeb2bscript 9y ago Basic B2B Script allows SQL Injection via the product_view1.php pid or id parameter.
CVE-2017-15984 critical 9.8 10.0 EXP bekirk 9y ago Creative Management System (CMS) Lite 1.4 allows SQL Injection via the S parameter to index.php.
CVE-2017-15983 critical 9.8 10.0 EXP geniusocean 9y ago MyMagazine Magazine & Blog CMS 1.0 allows SQL Injection via the id parameter to admin/admin_process.php for form editing.
CVE-2017-15982 critical 9.8 10.0 EXP geniusocean 9y ago Dynamic News Magazine & Blog CMS 1.0 allows SQL Injection via the id parameter to admin/admin_process.php for form editing.
CVE-2017-15981 critical 9.8 10.0 EXP geniusocean 9y ago Responsive Newspaper Magazine & Blog CMS 1.0 allows SQL Injection via the id parameter to admin/admin_process.php for form editing.
CVE-2017-15980 critical 9.8 10.0 EXP rowindex 9y ago US Zip Codes Database Script 1.0 allows SQL Injection via the state parameter.
CVE-2017-15979 critical 9.8 10.0 EXP odallated 9y ago Shareet - Photo Sharing Social Network 1.0 allows SQL Injection via the photo parameter.
CVE-2017-15978 critical 9.8 10.0 EXP arox 9y ago AROX School ERP PHP Script 1.0 allows SQL Injection via the office_admin/ id parameter.
CVE-2017-15977 critical 9.8 10.0 EXP protectedlinks 9y ago Protected Links - Expiring Download Links 1.0 allows SQL Injection via the username parameter.
CVE-2015-9245 critical 9.8 9.8 progress 9y ago Insecure default configuration in Progress Software OpenEdge 10.2x and 11.x allows unauthenticated remote attackers to specify arbitrary URLs from which to load and execute malicious Java classes via…
CVE-2017-10151 critical 10.0 10.0 oracle 9y ago Vulnerability in the Oracle Identity Manager component of Oracle Fusion Middleware (subcomponent: Default Account). Supported versions that are affected are 11.1.1.7, 11.1.2.3 and 12.2.1.3. Easily ex…
CVE-2014-0073 critical 9.8 9.8 apache 9y ago The CDVInAppBrowser class in the Apache Cordova In-App-Browser standalone plugin (org.apache.cordova.inappbrowser) before 0.3.2 for iOS and the In-App-Browser plugin for iOS from Cordova 2.6.0 throug…
CVE-2013-4366 critical 9.8 9.8 FIX debian debian apache 9y ago Hostname verification in Apache HttpClient 4.3 was disabled by default
CVE-2012-4449 critical 9.8 9.8 apache 9y ago Use of a Broken or Risky Cryptographic Algorithm in Apache Hadoop
CVE-2017-15597 critical 9.1 9.1 FIX slesdebian debian 9y ago An issue was discovered in Xen through 4.9.x. Grant copying code made an implication that any grant pin would be accompanied by a suitable page reference. Other portions of code, however, did not mat…
CVE-2015-3249 critical 9.8 9.8 FIX debian debian apache 9y ago The HTTP/2 experimental feature in Apache Traffic Server 5.3.x before 5.3.1 allows remote attackers to cause a denial of service (out-of-bounds access and daemon crash) or possibly execute arbitrary …
CVE-2014-3624 critical 9.8 9.8 FIX debian debian apache 9y ago Apache Traffic Server 5.1.x before 5.1.1 allows remote attackers to bypass access restrictions by leveraging failure to properly tunnel remap requests using CONNECT.
CVE-2012-5358 critical 9.8 9.8 ektron 9y ago The XSLTCompiledTransform function in Ektron Content Management System (CMS) before 8.02 SP5 configures the XSL with enableDocumentFunction set to true, which allows remote attackers to read arbitrar…
CVE-2012-5357 critical 9.8 10.0 EXP ektron 9y ago Ektron Content Management System (CMS) before 8.02 SP5 uses the XslCompiledTransform class with enablescript set to true, which allows remote attackers to execute arbitrary code with NETWORK SERVICE …
CVE-2017-16228 critical 9.8 9.8 FIX slesdebian debian dulwich_project 9y ago Dulwich before 0.18.5, when an SSH subprocess is used, allows remote attackers to execute arbitrary commands via an ssh URL with an initial dash character in the hostname, a related issue to CVE-2017…