Vulnerabilidades en n/a
160.793 resultadosCVE-2001-0414—Buffer overflow in ntpd ntp daemon 4.0.99k and earlier (aka xntpd and xntp3) allows remote attackers to cause a denial of service and possibEPSS 91.7%CVE-2014-8739—Unrestricted file upload vulnerability in server/php/UploadHandler.php in the jQuery File Upload Plugin 6.4.4 for jQuery, as used in the CreEPSS 91.7%CVE-2019-9193—In PostgreSQL 9.3 through 11.2, the "COPY TO/FROM PROGRAM" function allows superusers and users in the 'pg_execute_server_program' group to EPSS 91.7%CVE-2008-0226—Multiple buffer overflows in yaSSL 1.7.5 and earlier, as used in MySQL and possibly other products, allow remote attackers to execute arbitrEPSS 91.6%CVE-2022-26352CRITICALAn issue was discovered in the ContentResource API in dotCMS 3.0 through 22.02. Attackers can craft a multipart form request to post a file EPSS 91.6%KEVCVE-2017-16806—The Process function in RemoteTaskServer/WebServer/HttpServer.cs in Ulterius before 1.9.5.0 allows HTTP server directory traversal.EPSS 91.5%CVE-2016-3510—Unspecified vulnerability in the Oracle WebLogic Server component in Oracle Fusion Middleware 10.3.6.0, 12.1.3.0, and 12.2.1.0 allows remoteEPSS 91.4%CVE-2017-0004—The Local Security Authority Subsystem Service (LSASS) in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, and Windows 7 SP1EPSS 91.4%CVE-2014-0054—The Jaxb2RootElementHttpMessageConverter in Spring MVC in Spring Framework before 3.2.8 and 4.0.0 before 4.0.2 does not disable external entEPSS 91.4%CVE-2014-0569—Integer overflow in Adobe Flash Player before 13.0.0.250 and 14.x and 15.x before 15.0.0.189 on Windows and OS X and before 11.2.202.411 on EPSS 91.3%CVE-2010-2568HIGHWindows Shell in Microsoft Windows XP SP3, Server 2003 SP2, Vista SP1 and SP2, Server 2008 SP2 and R2, and Windows 7 allows local users or rEPSS 91.3%KEVCVE-2020-27988—Nagios XI before 5.7.5 is vulnerable to XSS in Manage Users (Username field).EPSS 91.3%CVE-2010-4221—Multiple stack-based buffer overflows in the pr_netio_telnet_gets function in netio.c in ProFTPD before 1.3.3c allow remote attackers to exeEPSS 91.3%CVE-2015-5477—named in ISC BIND 9.x before 9.9.7-P2 and 9.10.x before 9.10.2-P3 allows remote attackers to cause a denial of service (REQUIRE assertion faEPSS 91.3%CVE-2012-5076CRITICALUnspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 7 and earlier allows remote attackers tEPSS 91.3%KEVCVE-2020-8654—An issue was discovered in EyesOfNetwork 5.3. An authenticated web user with sufficient privileges could abuse the AutoDiscovery module to rEPSS 91.2%CVE-2018-3810—Authentication Bypass vulnerability in the Oturia Smart Google Code Inserter plugin before 3.5 for WordPress allows unauthenticated attackerEPSS 91.1%CVE-2021-25921MEDIUMIn OpenEMR, versions 2.7.3-rc1 to 6.0.0 are vulnerable to Stored Cross-Site-Scripting (XSS) due to user input not being validated properly iEPSS 91.1%CVE-2020-13851—Artica Pandora FMS 7.44 allows remote command execution via the events feature.EPSS 91.0%CVE-2015-7547—Multiple stack-based buffer overflows in the (1) send_dg and (2) send_vc functions in the libresolv library in the GNU C Library (aka glibc EPSS 91.0%