Vulnerabilidades em N/A
160.229 resultadosCVE-2016-3288—Microsoft Internet Explorer 11 allows remote attackers to execute arbitrary code via a crafted web page, aka "Internet Explorer Memory CorruEPSS 51.8%CVE-2020-11946—Zoho ManageEngine OpManager before 125120 allows an unauthenticated user to retrieve an API key via a servlet call.EPSS 51.8%CVE-2021-41649—An un-authenticated SQL Injection exists in PuneethReddyHC online-shopping-system-advanced through the /homeaction.php cat_id parameter. UsiEPSS 51.8%CVE-2002-2268—Buffer overflow in Webster HTTP Server allows remote attackers to execute arbitrary code via a long URL.EPSS 51.7%CVE-2018-25032HIGHzlib before 1.2.12 allows memory corruption when deflating (i.e., when compressing) if the input has many distant matches.EPSS 51.7%CVE-2022-45933CRITICALKubeView through 0.1.31 allows attackers to obtain control of a Kubernetes cluster because api/scrape/kube-system does not require authenticEPSS 51.7%CVE-2021-31602MEDIUMAn issue was discovered in Hitachi Vantara Pentaho through 9.1 and Pentaho Business Intelligence Server through 7.x. The Security Model has EPSS 51.7%CVE-2007-4232—PHP remote file inclusion vulnerability in admin/inc/change_action.php in Andreas Robertz PHPNews 0.93 allows remote attackers to execute arEPSS 51.7%CVE-2009-0714—Unspecified vulnerability in the dpwinsup module (dpwinsup.dll) for dpwingad (dpwingad.exe) in HP Data Protector Express and Express SSE 3.xEPSS 51.6%CVE-2009-1534—Buffer overflow in the Office Web Components ActiveX Control in Microsoft Office XP SP3, Office 2000 Web Components SP3, Office XP Web CompoEPSS 51.6%CVE-2016-2388MEDIUMThe Universal Worklist Configuration in SAP NetWeaver AS JAVA 7.4 allows remote attackers to obtain sensitive user information via a craftedEPSS 51.6%KEVCVE-2017-8731—Microsoft Edge in Microsoft Windows 10 1607 and Windows Server 2016 allows an attacker to execute arbitrary code in the context of the curreEPSS 51.6%CVE-2011-0522—The StripTags function in (1) the USF decoder (modules/codec/subtitles/subsdec.c) and (2) the Text decoder (modules/codec/subtitles/subsusf.EPSS 51.5%CVE-2015-1833—XML external entity (XXE) vulnerability in Apache Jackrabbit before 2.0.6, 2.2.x before 2.2.14, 2.4.x before 2.4.6, 2.6.x before 2.6.6, 2.8.EPSS 51.5%CVE-2013-1847—The mod_dav_svn Apache HTTPD server module in Subversion 1.6.0 through 1.6.20 and 1.7.0 through 1.7.8 allows remote attackers to cause a denEPSS 51.4%CVE-2017-7925—A Password in Configuration File issue was discovered in Dahua DH-IPC-HDBW23A0RN-ZS, DH-IPC-HDBW13A0SN, DH-IPC-HDW1XXX, DH-IPC-HDW2XXX, DH-IEPSS 51.4%CVE-2015-8279—Web Viewer 1.0.0.193 on Samsung SRN-1670D devices allows remote attackers to read arbitrary files via a request to an unspecified PHP scriptEPSS 51.4%CVE-2023-2928MEDIUMDedeCMS article_allowurl_edit.php code injectionEPSS 51.4%CVE-2021-3287—Zoho ManageEngine OpManager before 12.5.329 allows unauthenticated Remote Code Execution due to a general bypass in the deserialization clasEPSS 51.3%CVE-2013-0753—Use-after-free vulnerability in the serializeToStream implementation in the XMLSerializer component in Mozilla Firefox before 18.0, Firefox EPSS 51.3%