Vulnerabilidades en n/a
160.875 resultadosCVE-2019-9692—class.showtime2_image.php in CMS Made Simple (CMSMS) before 2.2.10 does not ensure that a watermark file has a standard image file extensionEPSS 45.9%CVE-2024-24401CRITICALSQL Injection vulnerability in Nagios XI 2024R1.01 allows a remote attacker to execute arbitrary code via a crafted payload to the monitorinEPSS 45.9%CVE-2019-8368—OpenEMR v5.0.1-6 allows XSS.EPSS 45.9%CVE-2008-0387—Integer overflow in Firebird SQL 1.0.3 and earlier, 1.5.x before 1.5.6, 2.0.x before 2.0.4, and 2.1.x before 2.1.0 RC1 might allow remote atEPSS 45.9%CVE-2007-3901—Stack-based buffer overflow in the DirectShow Synchronized Accessible Media Interchange (SAMI) parser in quartz.dll for Microsoft DirectX 7.EPSS 45.9%CVE-2006-4704—Cross-zone scripting vulnerability in the WMI Object Broker (WMIScriptUtils.WMIObjectBroker2) ActiveX control (WmiScriptUtils.dll) in MicrosEPSS 45.9%CVE-2007-2141—Direct static code injection vulnerability in shoutbox.php in ShoutPro 1.5.2 allows remote attackers to inject arbitrary PHP code into shoutEPSS 45.8%CVE-2000-1039—Various TCP/IP stacks and network applications allow remote attackers to cause a denial of service by flooding a target host with TCP connecEPSS 45.8%CVE-2015-5563—Use-after-free vulnerability in Adobe Flash Player before 18.0.0.232 on Windows and OS X and before 11.2.202.508 on Linux, Adobe AIR before EPSS 45.8%CVE-2011-5171—Multiple stack-based buffer overflows in CyberLink Power2Go 7 (build 196) and 8 (build 1031) allow remote attackers to execute arbitrary codEPSS 45.8%CVE-2022-37190—CuppaCMS 1.0 is vulnerable to Remote Code Execution (RCE). An authenticated user can control both parameters (action and function) from "/apEPSS 45.8%CVE-2009-0932—Directory traversal vulnerability in framework/Image/Image.php in Horde before 3.2.4 and 3.3.3 and Horde Groupware before 1.1.5 allows remotEPSS 45.8%CVE-2008-4834—Buffer overflow in SMB in the Server service in Microsoft Windows 2000 SP4, XP SP2 and SP3, and Server 2003 SP1 and SP2 allows remote attackEPSS 45.8%CVE-2012-4157—Adobe Reader and Acrobat 9.x before 9.5.2 and 10.x before 10.1.4 on Windows and Mac OS X allow attackers to execute arbitrary code or cause EPSS 45.8%CVE-2017-6862CRITICALNETGEAR WNR2000v3 devices before 1.1.2.14, WNR2000v4 devices before 1.0.0.66, and WNR2000v5 devices before 1.0.0.42 allow authentication bypEPSS 45.7%KEVCVE-2005-2373—Buffer overflow in SlimFTPd 3.15 and 3.16 allows remote authenticated users to execute arbitrary code via a long directory name to (1) LIST,EPSS 45.7%CVE-2017-16651HIGHRoundcube Webmail before 1.1.10, 1.2.x before 1.2.7, and 1.3.x before 1.3.3 allows unauthorized access to arbitrary files on the host's fileEPSS 45.7%KEVCVE-2024-51568CRITICALCyberPanel (aka Cyber Panel) before 2.3.5 allows Command Injection via completePath in the ProcessUtilities.outputExecutioner() sink. There EPSS 45.7%CVE-2020-8165—A deserialization of untrusted data vulnernerability exists in rails < 5.2.4.3, rails < 6.0.3.1 that can allow an attacker to unmarshal userEPSS 45.7%CVE-2008-4696—Cross-site scripting (XSS) vulnerability in Opera.dll in Opera before 9.61 allows remote attackers to inject arbitrary web script or HTML viEPSS 45.7%