Vulnerabilidades en n/a
160.843 resultadosCVE-2013-1080—The web server in Novell ZENworks Configuration Management (ZCM) 10.3 and 11.2 before 11.2.4 does not properly perform authentication for zeEPSS 77.0%CVE-2016-0854—Unrestricted file upload vulnerability in the uploadImageCommon function in the UploadAjaxAction script in the WebAccess Dashboard Viewer inEPSS 77.0%CVE-2019-15949HIGHNagios XI before 5.6.6 allows remote command execution as root. The exploit requires access to the server as the nagios user, or access as tEPSS 77.0%KEVCVE-2018-15877—The Plainview Activity Monitor plugin before 20180826 for WordPress is vulnerable to OS command injection via shell metacharacters in the ipEPSS 77.0%CVE-2007-3236—PHP remote file inclusion vulnerability in footer.php in the Horoscope 1.0 module for XOOPS allows remote attackers to execute arbitrary PHPEPSS 77.0%CVE-2011-5227—Stack-based buffer overflow in the Syslog service (nssyslogd.exe) in Enterasys Network Management Suite (NMS) before 4.1.0.80 allows remote EPSS 77.0%CVE-2018-1000049—Nanopool Claymore Dual Miner version 7.3 and earlier contains a remote code execution vulnerability by abusing the miner API. The flaw can bEPSS 76.9%CVE-2022-29013—A command injection in the command parameter of Razer Sila Gaming Router v2.0.441_api-2.0.418 allows attackers to execute arbitrary commandsEPSS 76.9%CVE-2021-29156—ForgeRock OpenAM before 13.5.1 allows LDAP injection via the Webfinger protocol. For example, an unauthenticated attacker can perform characEPSS 76.8%CVE-2018-15133HIGHIn Laravel Framework through 5.5.40 and 5.6.x through 5.6.29, remote code execution might occur as a result of an unserialize call on a poteEPSS 76.8%KEVCVE-2016-3236—The Web Proxy Auto Discovery (WPAD) protocol implementation in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SPEPSS 76.8%CVE-2003-0190—OpenSSH-portable (OpenSSH) 3.6.1p1 and earlier with PAM support enabled immediately sends an error message when a user does not exist, whichEPSS 76.8%CVE-2013-0081—Microsoft SharePoint Portal Server 2003 SP3 and SharePoint Server 2007 SP3, 2010 SP1 and SP2, and 2013 do not properly process unassigned woEPSS 76.7%CVE-2017-9101—import.php (aka the Phonebook import feature) in PlaySMS 1.4 allows remote code execution via vectors involving the User-Agent HTTP header aEPSS 76.7%CVE-2016-3718MEDIUMThe (1) HTTP and (2) FTP coders in ImageMagick before 6.9.3-10 and 7.x before 7.0.1-1 allow remote attackers to conduct server-side request EPSS 76.7%KEVCVE-2008-0015HIGHStack-based buffer overflow in the CComVariant::ReadFromStream function in the Active Template Library (ATL), as used in the MPEG2TuneRequesEPSS 76.7%KEVCVE-2017-9554—An information exposure vulnerability in forget_passwd.cgi in Synology DiskStation Manager (DSM) before 6.1.3-15152 allows remote attackers EPSS 76.7%CVE-2009-2685—Stack-based buffer overflow in the login form in the management web server in HP Power Manager allows remote attackers to execute arbitrary EPSS 76.7%CVE-2010-3600—Unspecified vulnerability in the Client System Analyzer component in Oracle Database Server 11.1.0.7 and 11.2.0.1 and Enterprise Manager GriEPSS 76.7%CVE-2007-5423—tiki-graph_formula.php in TikiWiki 1.9.8 allows remote attackers to execute arbitrary code via PHP sequences in the f array parameter, whichEPSS 76.7%