Vulnerabilidades en n/a
160.843 resultadosCVE-2018-0824HIGHA remote code execution vulnerability exists in "Microsoft COM for Windows" when it fails to properly handle serialized objects, aka "MicrosEPSS 73.2%KEVCVE-2021-25281—An issue was discovered in through SaltStack Salt before 3002.5. salt-api does not honor eauth credentials for the wheel_async client. Thus,EPSS 73.1%CVE-2021-28958—Zoho ManageEngine ADSelfService Plus through 6101 is vulnerable to unauthenticated Remote Code Execution while changing the password.EPSS 73.1%CVE-2017-11467—OrientDB through 2.2.22 does not enforce privilege requirements during "where" or "fetchplan" or "order by" use, which allows remote attackeEPSS 73.1%CVE-2018-20526—Roxy Fileman 1.4.5 allows unrestricted file upload in upload.php.EPSS 73.1%CVE-2017-6316CRITICALCitrix NetScaler SD-WAN devices through v9.1.2.26.561201 allow remote attackers to execute arbitrary shell commands as root via a CGISESSID EPSS 73.0%KEVCVE-2005-2428—Lotus Domino R5 and R6 WebMail, with "Generate HTML for all fields" enabled, stores sensitive data from names.nsf in hidden form fields, whiEPSS 73.0%CVE-2006-1148—Multiple stack-based buffer overflows in the procConnectArgs function in servmgr.cpp in PeerCast before 0.1217 allow remote attackers to exeEPSS 73.0%CVE-2007-1697—PHP remote file inclusion vulnerability in header.inc.php in Philex 0.2.3 and earlier allows remote attackers to execute arbitrary PHP code EPSS 73.0%CVE-2019-10072—The fix for CVE-2019-0199 was incomplete and did not address HTTP/2 connection window exhaustion on write in Apache Tomcat versions 9.0.0.M1EPSS 73.0%CVE-2007-1070—Multiple stack-based buffer overflows in Trend Micro ServerProtect for Windows and EMC 5.58, and for Network Appliance Filer 5.61 and 5.62, EPSS 73.0%CVE-2018-1000533—klaussilveira GitList version <= 0.6 contains a Passing incorrectly sanitized input to system function vulnerability in `searchTree` functioEPSS 73.0%CVE-2008-0356—Buffer overflow in the Independent Management Architecture (IMA) service in Citrix Presentation Server (MetaFrame Presentation Server) 4.5 aEPSS 73.0%CVE-2012-0297—The management GUI in Symantec Web Gateway 5.0.x before 5.0.3 does not properly restrict access to application scripts, which allows remote EPSS 73.0%CVE-2019-9978MEDIUMThe social-warfare plugin before 3.5.3 for WordPress has stored XSS via the wp-admin/admin-post.php?swp_debug=load_options swp_url parameterEPSS 72.9%KEVCVE-2020-5741HIGHDeserialization of Untrusted Data in Plex Media Server on Windows allows a remote, authenticated attacker to execute arbitrary Python code.EPSS 72.9%KEVCVE-2024-0352HIGHLikeshop HTTP POST Request File.php userFormImage unrestricted uploadEPSS 72.9%CVE-2012-0394—The DebuggingInterceptor component in Apache Struts before 2.3.1.1, when developer mode is used, allows remote attackers to execute arbitrarEPSS 72.9%CVE-2007-0038—Stack-based buffer overflow in the animated cursor code in Microsoft Windows 2000 SP4 through Vista allows remote attackers to execute arbitEPSS 72.9%CVE-2020-27386—An unrestricted file upload issue in FlexDotnetCMS before v1.5.9 allows an authenticated remote attacker to upload and execute arbitrary filEPSS 72.9%