Vulnerabilities in N/A

159,958 results
CVE-2012-5081Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 7 and earlier, 6 Update 35 and earlier,EPSS 45.1%CVE-2024-48760CRITICALAn issue in GestioIP v3.5.7 allows a remote attacker to execute arbitrary code via the file upload function. The attacker can upload a malicEPSS 45.1%CVE-2019-13344An authentication bypass vulnerability in the CRUDLab WP Like Button plugin through 1.6.0 for WordPress allows unauthenticated attackers to EPSS 45.1%CVE-2020-26879Ruckus vRioT through 1.5.1.0.21 has an API backdoor that is hardcoded into validate_token.py. An unauthenticated attacker can interact with EPSS 45.1%CVE-2022-45938HIGHAn issue was discovered in Comcast Defined Technologies microeisbss through 2021. An attacker can inject a stored XSS payload in the Device EPSS 45.1%CVE-2021-21974HIGHOpenSLP as used in ESXi (7.0 before ESXi70U1c-17325551, 6.7 before ESXi670-202102401-SG, 6.5 before ESXi650-202102101-SG) has a heap-overfloEPSS 45.1%CVE-2019-5097MEDIUMA denial-of-service vulnerability exists in the processing of multi-part/form-data requests in the base GoAhead web server application in veEPSS 45.1%CVE-2007-5009PHP remote file inclusion vulnerability in language/lang_german/lang_main_album.php in phpBB Plus 1.53, and 1.53a before 20070922, allows reEPSS 45.0%CVE-2020-7373vBulletin 5.5.4 through 5.6.2 allows remote command execution via crafted subWidgets data in an ajax/render/widget_tabbedcontainer_tab_panelEPSS 45.0%CVE-2000-0979File and Print Sharing service in Windows 95, Windows 98, and Windows Me does not properly check the password for a file share, which allowsEPSS 45.0%CVE-2015-3224request.rb in Web Console before 2.1.3, as used with Ruby on Rails 3.x and 4.x, does not properly restrict the use of X-Forwarded-For headerEPSS 45.0%CVE-2004-1043Internet Explorer 6.0 on Windows XP SP2 allows remote attackers to execute arbitrary code by using the "Related Topics" command in the Help EPSS 45.0%CVE-2006-5051Signal handler race condition in OpenSSH before 4.4 allows remote attackers to cause a denial of service (crash), and possibly execute arbitEPSS 45.0%CVE-2001-0136Memory leak in ProFTPd 1.2.0rc2 allows remote attackers to cause a denial of service via a series of USER commands, and possibly SIZE commanEPSS 44.9%CVE-2016-4957ntpd in NTP before 4.2.8p8 allows remote attackers to cause a denial of service (daemon crash) via a crypto-NAK packet. NOTE: this vulnerabEPSS 44.9%CVE-2008-4835CRITICALSMB in the Server service in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, and Server 2008 allowsEPSS 44.9%CVE-2022-0332A flaw was found in Moodle in versions 3.11 to 3.11.4. An SQL injection risk was identified in the h5p activity web service responsible for EPSS 44.9%CVE-2015-4748Unspecified vulnerability in Oracle Java SE 6u95, 7u80, and 8u45; JRockit R28.3.6; and Java SE Embedded 7u75 and Embedded 8u33 allows remoteEPSS 44.9%CVE-2015-2425HIGHMicrosoft Internet Explorer 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafEPSS 44.9%KEVCVE-1999-0736The showcode.asp sample file in IIS and Site Server allows remote attackers to read arbitrary files.EPSS 44.8%