Vulnerabilidades en n/a

160.855 resultados
CVE-2012-0549—Unspecified vulnerability in the Oracle AutoVue Office component in Oracle Supply Chain Products Suite 20.1.1 allows remote attackers to affEPSS 59.0%CVE-2020-13381—openSIS through 7.4 allows SQL Injection.EPSS 59.0%CVE-2018-11218—Memory Corruption was discovered in the cmsgpack library in the Lua subsystem in Redis before 3.2.12, 4.x before 4.0.10, and 5.x before 5.0 EPSS 59.0%CVE-2014-10021—Unrestricted file upload vulnerability in UploadHandler.php in the WP Symposium plugin 14.11 for WordPress allows remote attackers to executEPSS 59.0%CVE-2007-3386—Cross-site scripting (XSS) vulnerability in the Host Manager Servlet for Apache Tomcat 6.0.0 to 6.0.13 and 5.5.0 to 5.5.24 allows remote attEPSS 59.0%CVE-2006-6063—Stack-based buffer overflow in Un4seen XMPlay 3.3.0.5 and earlier allows remote attackers to execute arbitrary code via a M3U file containinEPSS 59.0%CVE-2021-42840—SuiteCRM before 7.11.19 allows remote code execution via the system settings Log File Name setting. In certain circumstances involving adminEPSS 58.9%CVE-2008-0506—include/imageObjectIM.class.php in Coppermine Photo Gallery (CPG) before 1.4.15, when the ImageMagick picture processing method is configureEPSS 58.9%CVE-2005-1256—Stack-based buffer overflow in the IMAP daemon (IMAPD32.EXE) in IMail 8.13 in Ipswitch Collaboration Suite (ICS), and other versions before EPSS 58.9%CVE-2021-46381—Local File Inclusion due to path traversal in D-Link DAP-1620 leads to unauthorized internal files reading [/etc/passwd] and [/etc/shadow].EPSS 58.9%CVE-2019-17270—Yachtcontrol through 2019-10-06: It's possible to perform direct Operating System commands as an unauthenticated user via the "/pages/systemEPSS 58.9%CVE-2000-0574—FTP servers such as OpenBSD ftpd, NetBSD ftpd, ProFTPd and Opieftpd do not properly cleanse untrusted format strings that are used in the seEPSS 58.9%CVE-2006-2212—Buffer overflow in KarjaSoft Sami FTP Server 2.0.2 and earlier allows remote attackers to execute arbitrary code via a long (1) USER or (2) EPSS 58.9%CVE-2011-1996—Microsoft Internet Explorer 6 through 8 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code EPSS 58.8%CVE-2012-4347—Multiple directory traversal vulnerabilities in the management console in Symantec Messaging Gateway (SMG) 9.5.x allow remote authenticated EPSS 58.8%CVE-2013-1559—Unspecified vulnerability in the Oracle WebCenter Content component in Oracle Fusion Middleware 10.1.3.5.1 and 11.1.1.6.0 allows remote authEPSS 58.8%CVE-2003-0605—The RPC DCOM interface in Windows 2000 SP3 and SP4 allows remote attackers to cause a denial of service (crash), and local attackers to use EPSS 58.8%CVE-2019-5485—NPM package gitlabhook version 0.0.17 is vulnerable to a Command Injection vulnerability. Arbitrary commands can be injected through the repEPSS 58.8%CVE-2023-27034CRITICALPrestaShop jmsblog 2.5.5 was discovered to contain a SQL injection vulnerability.EPSS 58.7%CVE-2006-1364—Microsoft w3wp (aka w3wp.exe) does not properly handle when the AspCompat directive is not used when referencing COM components in ASP.NET, EPSS 58.7%