Vulnerabilities in n/a
160,855 resultsCVE-2016-0784—Directory traversal vulnerability in the Import/Export System Backups functionality in Apache OpenMeetings before 3.1.1 allows remote authenEPSS 56.3%CVE-2007-3456—Integer overflow in Adobe Flash Player 9.0.45.0 and earlier might allow remote attackers to execute arbitrary code via a large length value EPSS 56.3%CVE-2022-22972—VMware Workspace ONE Access, Identity Manager and vRealize Automation contain an authentication bypass vulnerability affecting local domain EPSS 56.3%CVE-2008-4008—Unspecified vulnerability in the WebLogic Server Plugins for Apache component in BEA Product Suite 10.3, 10.0 MP1, 9.2 MP3, 9.1, 9.0, 8.1 SPEPSS 56.3%CVE-2019-9516HIGHSome HTTP/2 implementations are vulnerable to a header leak, potentially leading to a denial of serviceEPSS 56.3%CVE-2013-6397—Directory traversal vulnerability in SolrResourceLoader in Apache Solr before 4.6 allows remote attackers to read arbitrary files via a .. (EPSS 56.3%CVE-2022-25075—TOTOLink A3000RU V5.9c.2280_B20180512 was discovered to contain a command injection vulnerability in the "Main" function. This vulnerabilityEPSS 56.2%CVE-2006-6707—Stack-based buffer overflow in the NeoTraceExplorer.NeoTraceLoader ActiveX control (NeoTraceExplorer.dll) in NeoTrace Express 3.25 and NeoTrEPSS 56.2%CVE-2018-17173—LG SuperSign CMS allows remote attackers to execute arbitrary code via the sourceUri parameter to qsr_server/device/getThumbnail.EPSS 56.2%CVE-2014-3609—HttpHdrRange.cc in Squid 3.x before 3.3.12 and 3.4.x before 3.4.6 allows remote attackers to cause a denial of service (crash) via a requestEPSS 56.2%CVE-2007-1579—Stack-based buffer overflow in Atrium MERCUR IMAPD allows remote attackers to have an unknown impact via a certain SUBSCRIBE command.EPSS 56.2%CVE-2014-9708—Embedthis Appweb before 4.6.6 and 5.x before 5.2.1 allows remote attackers to cause a denial of service (NULL pointer dereference) via a RanEPSS 56.2%CVE-2023-32782—A command injection was identified in PRTG 23.2.84.1566 and earlier versions in the Dicom C-ECHO sensor where an authenticated user with wriEPSS 56.2%CVE-2018-14007—Citrix XenServer 7.1 and newer allows Directory Traversal.EPSS 56.1%CVE-2016-3078—Multiple integer overflows in php_zip.c in the zip extension in PHP before 7.0.6 allow remote attackers to cause a denial of service (heap-bEPSS 56.1%CVE-2021-33221—An issue was discovered in CommScope Ruckus IoT Controller 1.7.1.0 and earlier. There are Unauthenticated API Endpoints.EPSS 56.1%CVE-2021-46442—In the "webupg" binary of D-Link DIR-825 G1, attackers can bypass authentication through parameters "autoupgrade.asp", and perform functionsEPSS 56.1%CVE-2024-38819HIGHApplications serving static resources through the functional web frameworks WebMvc.fn or WebFlux.fn are vulnerable to path traversal attacksEPSS 56.0%CVE-2013-1469—Directory traversal vulnerability in install.php in Piwigo before 2.4.7 allows remote attackers to read and delete arbitrary files via a .. EPSS 56.0%CVE-2010-2115—SolarWinds TFTP Server 10.4.0.10 allows remote attackers to cause a denial of service (no new connections) via a crafted read request.EPSS 56.0%