Vulnerabilidades em N/A
160.229 resultadosCVE-2016-2182—The BN_bn2dec function in crypto/bn/bn_print.c in OpenSSL before 1.1.0 does not properly validate division results, which allows remote attaEPSS 44.2%CVE-2015-1587—Unrestricted file upload vulnerability in file_to_index.php in Maarch LetterBox 2.8 and earlier and GEC/GED 1.4 and earlier allows remote atEPSS 44.2%CVE-2007-4474—Multiple stack-based buffer overflows in the IBM Lotus Domino Web Access ActiveX control, as provided by inotes6.dll, inotes6w.dll, dwa7.dllEPSS 44.2%CVE-2023-24709HIGHAn issue found in Paradox Security Systems IPR512 allows attackers to cause a denial of service via the login.html and login.xml parameters.EPSS 44.2%CVE-2019-14928—An issue was discovered on Mitsubishi Electric Europe B.V. ME-RTU devices through 2.02 and INEA ME-RTU devices through 3.0. A number of storEPSS 44.1%CVE-2000-0951—A misconfiguration in IIS 5.0 with Index Server enabled and the Index property set allows remote attackers to list directories in the web roEPSS 44.1%CVE-2024-55556CRITICALA vulnerability in Crater Invoice allows an unauthenticated attacker with knowledge of the APP_KEY to achieve remote command execution on thEPSS 44.1%CVE-2012-1775—Stack-based buffer overflow in VideoLAN VLC media player before 2.0.1 allows remote attackers to execute arbitrary code via a crafted MMS://EPSS 44.1%CVE-2020-5514—Gila CMS 1.11.8 allows Unrestricted Upload of a File with a Dangerous Type via .phar or .phtml to the lzld/thumb?src= URI.EPSS 44.1%CVE-2021-31586—Accellion Kiteworks before 7.4.0 allows an authenticated user to perform SQL Injection via LDAPGroup Search.EPSS 44.1%CVE-2018-15517—The MailConnect feature on D-Link Central WiFiManager CWM-100 1.03 r0098 devices is intended to check a connection to an SMTP server but actEPSS 44.1%CVE-2017-17733—Maccms 8.x allows remote command execution via the wd parameter in an index.php?m=vod-search request.EPSS 44.1%CVE-2002-0422—IIS 5 and 5.1 supporting WebDAV methods allows remote attackers to determine the internal IP address of the system (which may be obscured byEPSS 44.1%CVE-2015-3194—crypto/rsa/rsa_ameth.c in OpenSSL 1.0.1 before 1.0.1q and 1.0.2 before 1.0.2e allows remote attackers to cause a denial of service (NULL poiEPSS 44.0%CVE-2012-4933—The rtrlet web application in the Web Console in Novell ZENworks Asset Management (ZAM) 7.5 uses a hard-coded username of Ivanhoe and a hardEPSS 44.0%CVE-2007-0024—Integer overflow in the Vector Markup Language (VML) implementation (vgx.dll) in Microsoft Internet Explorer 5.01, 6, and 7 on Windows 2000 EPSS 44.0%CVE-2019-12583—Missing Access Control in the "Free Time" component of several Zyxel UAG, USG, and ZyWall devices allows a remote attacker to generate guestEPSS 43.9%CVE-2008-0016—Stack-based buffer overflow in the URL parsing implementation in Mozilla Firefox before 2.0.0.17 and SeaMonkey before 1.1.12 allows remote aEPSS 43.9%CVE-2005-4145—The MSDE version of Lyris ListManager 5.0 through 8.9b configures the sa account in the database to use a password with a small search spaceEPSS 43.9%CVE-2025-32813HIGHAn issue was discovered in Infoblox NETMRI before 7.6.1. Remote Unauthenticated Command Injection can occur.EPSS 43.9%