Vulnerabilidades en n/a
160.875 resultadosCVE-2013-0209—lib/MT/Upgrade.pm in mt-upgrade.cgi in Movable Type 4.2x and 4.3x through 4.38 does not require authentication for requests to database-migrEPSS 45.2%CVE-2004-0595—The strip_tags function in PHP 4.x up to 4.3.7, and 5.x up to 5.0.0RC3, does not filter null (\0) characters within tag names when restrictiEPSS 45.2%CVE-2012-5081—Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 7 and earlier, 6 Update 35 and earlier,EPSS 45.1%CVE-2024-48760CRITICALAn issue in GestioIP v3.5.7 allows a remote attacker to execute arbitrary code via the file upload function. The attacker can upload a malicEPSS 45.1%CVE-2024-42640CRITICALangular-base64-upload prior to v0.1.21 is vulnerable to unauthenticated remote code execution via demo/server.php. Exploiting this vulnerabiEPSS 45.1%CVE-2019-13344—An authentication bypass vulnerability in the CRUDLab WP Like Button plugin through 1.6.0 for WordPress allows unauthenticated attackers to EPSS 45.1%CVE-2020-26879—Ruckus vRioT through 1.5.1.0.21 has an API backdoor that is hardcoded into validate_token.py. An unauthenticated attacker can interact with EPSS 45.1%CVE-2022-45938HIGHAn issue was discovered in Comcast Defined Technologies microeisbss through 2021. An attacker can inject a stored XSS payload in the Device EPSS 45.1%CVE-2021-21974HIGHOpenSLP as used in ESXi (7.0 before ESXi70U1c-17325551, 6.7 before ESXi670-202102401-SG, 6.5 before ESXi650-202102101-SG) has a heap-overfloEPSS 45.1%CVE-2019-5097MEDIUMA denial-of-service vulnerability exists in the processing of multi-part/form-data requests in the base GoAhead web server application in veEPSS 45.1%CVE-2007-5009—PHP remote file inclusion vulnerability in language/lang_german/lang_main_album.php in phpBB Plus 1.53, and 1.53a before 20070922, allows reEPSS 45.0%CVE-2020-7373—vBulletin 5.5.4 through 5.6.2 allows remote command execution via crafted subWidgets data in an ajax/render/widget_tabbedcontainer_tab_panelEPSS 45.0%CVE-2008-5789—Multiple PHP remote file inclusion vulnerabilities in the Recly Interactive Feederator (com_feederator) component 1.0.5 for Joomla! allow reEPSS 45.0%CVE-2000-0979—File and Print Sharing service in Windows 95, Windows 98, and Windows Me does not properly check the password for a file share, which allowsEPSS 45.0%CVE-2004-1043—Internet Explorer 6.0 on Windows XP SP2 allows remote attackers to execute arbitrary code by using the "Related Topics" command in the Help EPSS 45.0%CVE-2007-0927—Heap-based buffer overflow in uTorrent 1.6 allows remote attackers to execute arbitrary code via a torrent file with a crafted announce headEPSS 45.0%CVE-2006-5051—Signal handler race condition in OpenSSH before 4.4 allows remote attackers to cause a denial of service (crash), and possibly execute arbitEPSS 45.0%CVE-2001-0136—Memory leak in ProFTPd 1.2.0rc2 allows remote attackers to cause a denial of service via a series of USER commands, and possibly SIZE commanEPSS 44.9%CVE-2016-4957—ntpd in NTP before 4.2.8p8 allows remote attackers to cause a denial of service (daemon crash) via a crypto-NAK packet. NOTE: this vulnerabEPSS 44.9%CVE-2008-4835CRITICALSMB in the Server service in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, and Server 2008 allowsEPSS 44.9%