Vulnerabilidades en n/a

160.915 resultados
CVE-2007-5362—Multiple PHP remote file inclusion vulnerabilities in the Avant-Garde Solutions MOSMedia Lite (com_mosmedia) 4.5.1 component for Mambo and JEPSS 36.5%CVE-2003-0824—Unknown vulnerability in the SmartHTML interpreter (shtml.dll) in Microsoft FrontPage Server Extensions 2000 and 2002, and Microsoft SharePoEPSS 36.5%CVE-2020-10548—rConfig 3.9.4 and previous versions has unauthenticated devices.inc.php SQL injection. Because, by default, nodes' passwords are stored in cEPSS 36.5%CVE-2009-0546—Stack-based buffer overflow in NewsGator FeedDemon 2.7 and earlier allows user-assisted remote attackers to execute arbitrary code via a lonEPSS 36.5%CVE-2023-36144—An authentication bypass in Intelbras Switch SG 2404 MR in firmware 1.00.54 allows an unauthenticated attacker to download the backup file oEPSS 36.5%CVE-2017-14322—The function in charge to check whether the user is already logged in init.php in Interspire Email Marketer (IEM) prior to 6.1.6 allows remoEPSS 36.5%CVE-2019-17671—In WordPress before 5.2.4, unauthenticated viewing of certain content is possible because the static query property is mishandled.EPSS 36.5%CVE-2022-27908—Zoho ManageEngine OpManager before 125588 (and before 125603) is vulnerable to authenticated SQL Injection in the Inventory Reports module.EPSS 36.5%CVE-2022-25064—TP-LINK TL-WR840N(ES)_V6.20_180709 was discovered to contain a remote code execution (RCE) vulnerability via the function oal_wan6_setIpAddrEPSS 36.5%CVE-2007-0018—Stack-based buffer overflow in the NCTAudioFile2.AudioFile ActiveX control (NCTAudioFile2.dll), as used by multiple products, allows remote EPSS 36.5%CVE-2021-46424—Telesquare TLR-2005KSH 1.0.0 is affected by an arbitrary file deletion vulnerability that allows a remote attacker to delete any file, even EPSS 36.5%CVE-2016-4232—Adobe Flash Player before 18.0.0.366 and 19.x through 22.x before 22.0.0.209 on Windows and OS X and before 11.2.202.632 on Linux allows attEPSS 36.5%CVE-2019-8917—SolarWinds Orion NPM before 12.4 suffers from a SYSTEM remote code execution vulnerability in the OrionModuleEngine service. This service esEPSS 36.4%CVE-2018-7582—WebLog Expert Web Server Enterprise 9.4 allows Remote Denial Of Service (daemon crash) via a long HTTP Accept Header to TCP port 9991.EPSS 36.4%CVE-2011-3490—Multiple stack-based buffer overflows in service.exe in Measuresoft ScadaPro 4.0.0 and earlier allow remote attackers to cause a denial of sEPSS 36.4%CVE-2021-25274—The Collector Service in SolarWinds Orion Platform before 2020.2.4 uses MSMQ (Microsoft Message Queue) and doesn't set permissions on its prEPSS 36.4%CVE-2023-27159HIGHAppwrite up to v1.2.1 was discovered to contain a Server-Side Request Forgery (SSRF) via the component /v1/avatars/favicon. This vulnerabiliEPSS 36.4%CVE-2018-4985—Adobe Acrobat and Reader versions 2018.011.20038 and earlier, 2017.011.30079 and earlier, and 2015.006.30417 and earlier have an Out-of-bounEPSS 36.4%CVE-2025-32814CRITICALAn issue was discovered in Infoblox NETMRI before 7.6.1. Unauthenticated SQL Injection can occur.EPSS 36.4%CVE-2008-5790—Multiple PHP remote file inclusion vulnerabilities in the Recly!Competitions (com_competitions) component 1.0 for Joomla! allow remote attacEPSS 36.4%