Vulnerabilidades em N/A
160.480 resultadosCVE-2012-2626—cgi-bin/admin.cgi in the web console in Plixer Scrutinizer (aka Dell SonicWALL Scrutinizer) before 9.5.0 does not require token authenticatiEPSS 44.5%CVE-2006-5085—Static code injection vulnerability in config.php in Blog Pixel Motion 2.1.1 allows remote attackers to execute arbitrary PHP code via the nEPSS 44.5%CVE-2007-0446—Stack-based buffer overflow in magentproc.exe for Hewlett-Packard Mercury LoadRunner Agent 8.0 and 8.1, Performance Center Agent 8.0 and 8.1EPSS 44.5%CVE-2007-3101—Multiple cross-site scripting (XSS) vulnerabilities in certain JSF applications in Apache MyFaces Tomahawk before 1.1.6 allow remote attackeEPSS 44.5%CVE-2007-2167—Static code injection vulnerability in process.php in AimStats 3.2 allows remote attackers to inject PHP code into config.php via the numberEPSS 44.4%CVE-2018-10201—An issue was discovered in NcMonitorServer.exe in NC Monitor Server in NComputing vSpace Pro 10 and 11. It is possible to read arbitrary filEPSS 44.4%CVE-2007-0494—ISC BIND 9.0.x, 9.1.x, 9.2.0 up to 9.2.7, 9.3.0 up to 9.3.3, 9.4.0a1 up to 9.4.0a6, 9.4.0b1 up to 9.4.0b4, 9.4.0rc1, and 9.5.0a1 (Bind ForumEPSS 44.4%CVE-2015-5562—Adobe Flash Player before 18.0.0.232 on Windows and OS X and before 11.2.202.508 on Linux, Adobe AIR before 18.0.0.199, Adobe AIR SDK beforeEPSS 44.4%CVE-2021-35042—Django 3.1.x before 3.1.13 and 3.2.x before 3.2.5 allows QuerySet.order_by SQL injection if order_by is untrusted input from a client of a wEPSS 44.4%CVE-2007-3111—Buffer overflow in the Provideo Camimage ActiveX control in ISSCamControl.dll 1.0.1.5, when Internet Explorer 6 is used on Windows 2000 SP4,EPSS 44.4%CVE-2019-13635—The WP Fastest Cache plugin through 0.8.9.5 for WordPress allows wpFastestCache.php and inc/cache.php Directory Traversal.EPSS 44.4%CVE-2018-16299—The Localize My Post plugin 1.0 for WordPress allows Directory Traversal via the ajax/include.php file parameter.EPSS 44.4%CVE-2024-48307CRITICALJeecgBoot v3.7.1 was discovered to contain a SQL injection vulnerability via the component /onlDragDatasetHead/getTotalData.EPSS 44.3%CVE-2018-16117—A shell escape vulnerability in /webconsole/Controller in Admin Portal of Sophos XG firewall 17.0.8 MR-8 allow remote authenticated attackerEPSS 44.3%CVE-2012-3815—Buffer overflow in RunTime.exe in Sielco Sistemi Winlog Pro SCADA before 2.07.18 and Winlog Lite SCADA before 2.07.18 allows remote attackerEPSS 44.3%CVE-2020-5505—Freelancy v1.0.0 allows remote command execution via the "file":"data:application/x-php;base64 substring (in conjunction with "type":"applicEPSS 44.3%CVE-2005-3792—Multiple SQL injection vulnerabilities in the Search module in PHP-Nuke 7.8, and possibly other versions before 7.9 with patch 3.1, allows rEPSS 44.3%CVE-2021-42887—In TOTOLINK EX1200T V4.1.2cu.5215, an attacker can bypass login by sending a specific request through formLoginAuth.htm.EPSS 44.3%CVE-2008-4726—Stack-based buffer overflow in the SFTP subsystem in GoodTech SSH 6.4 allows remote authenticated users to execute arbitrary code via a longEPSS 44.3%CVE-2008-1060—Eval injection vulnerability in modules/execute.php in the Sniplets 1.1.2 and 1.2.2 plugin for WordPress allows remote attackers to execute EPSS 44.2%