Vulnerabilidades en n/a
160.875 resultadosCVE-2022-0332—A flaw was found in Moodle in versions 3.11 to 3.11.4. An SQL injection risk was identified in the h5p activity web service responsible for EPSS 44.9%CVE-2015-4748—Unspecified vulnerability in Oracle Java SE 6u95, 7u80, and 8u45; JRockit R28.3.6; and Java SE Embedded 7u75 and Embedded 8u33 allows remoteEPSS 44.9%CVE-1999-0736—The showcode.asp sample file in IIS and Site Server allows remote attackers to read arbitrary files.EPSS 44.8%CVE-2008-0144—PHP remote file inclusion vulnerability in index.php in NetRisk 1.9.7 and earlier allows remote attackers to execute arbitrary PHP code via EPSS 44.8%CVE-2003-0150—MySQL 3.23.55 and earlier creates world-writeable files and allows mysql users to gain root privileges by using the "SELECT * INFO OUTFILE" EPSS 44.8%CVE-2015-5550—Use-after-free vulnerability in Adobe Flash Player before 18.0.0.232 on Windows and OS X and before 11.2.202.508 on Linux, Adobe AIR before EPSS 44.8%CVE-2015-5557—Use-after-free vulnerability in Adobe Flash Player before 18.0.0.232 on Windows and OS X and before 11.2.202.508 on Linux, Adobe AIR before EPSS 44.8%CVE-2015-5551—Use-after-free vulnerability in Adobe Flash Player before 18.0.0.232 on Windows and OS X and before 11.2.202.508 on Linux, Adobe AIR before EPSS 44.8%CVE-2015-5556—Use-after-free vulnerability in Adobe Flash Player before 18.0.0.232 on Windows and OS X and before 11.2.202.508 on Linux, Adobe AIR before EPSS 44.8%CVE-2015-5561—Use-after-free vulnerability in Adobe Flash Player before 18.0.0.232 on Windows and OS X and before 11.2.202.508 on Linux, Adobe AIR before EPSS 44.8%CVE-2019-8341—An issue was discovered in Jinja2 2.10. The from_string function is prone to Server Side Template Injection (SSTI) where it takes the "sourcEPSS 44.8%CVE-2007-6165—Mail in Apple Mac OS X Leopard (10.5.1) allows user-assisted remote attackers to execute arbitrary code via an AppleDouble attachment contaiEPSS 44.7%CVE-2019-16891—Liferay Portal CE 6.2.5 allows remote command execution because of deserialization of a JSON payload.EPSS 44.7%CVE-2015-2425HIGHMicrosoft Internet Explorer 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafEPSS 44.7%KEVCVE-2000-0868—The default configuration of Apache 1.3.12 in SuSE Linux 6.4 allows remote attackers to read source code for CGI scripts by replacing the /cEPSS 44.7%CVE-2023-46229—LangChain before 0.0.317 allows SSRF via document_loaders/recursive_url_loader.py because crawling can proceed from an external server to anEPSS 44.7%CVE-2015-3224—request.rb in Web Console before 2.1.3, as used with Ruby on Rails 3.x and 4.x, does not properly restrict the use of X-Forwarded-For headerEPSS 44.7%CVE-2007-0446—Stack-based buffer overflow in magentproc.exe for Hewlett-Packard Mercury LoadRunner Agent 8.0 and 8.1, Performance Center Agent 8.0 and 8.1EPSS 44.7%CVE-2023-34051CRITICALVMware Aria Operations for Logs contains an authentication bypass vulnerability. An unauthenticated, malicious actor can inject files into tEPSS 44.7%CVE-2003-0469—Buffer overflow in the HTML Converter (HTML32.cnv) on various Windows operating systems allows remote attackers to cause a denial of serviceEPSS 44.6%