Vulnerabilidades em N/A
160.229 resultadosCVE-2017-17733—Maccms 8.x allows remote command execution via the wd parameter in an index.php?m=vod-search request.EPSS 38.0%CVE-2007-5603—Stack-based buffer overflow in the SonicWall SSL-VPN NetExtender NELaunchCtrl ActiveX control before 2.1.0.51, and 2.5.x before 2.5.0.56, alEPSS 38.0%CVE-2015-2843—Multiple SQL injection vulnerabilities in GoAutoDial GoAdmin CE before 3.3-1421902800 allow remote attackers to execute arbitrary SQL commanEPSS 37.9%CVE-2016-3141—Use-after-free vulnerability in wddx.c in the WDDX extension in PHP before 5.5.33 and 5.6.x before 5.6.19 allows remote attackers to cause aEPSS 37.9%CVE-2009-4769—Multiple format string vulnerabilities in the tolog function in httpdx 1.4, 1.4.5, 1.4.6, 1.4.6b, and 1.5 allow (1) remote attackers to execEPSS 37.9%CVE-2010-0688—Stack-based buffer overflow in Orbital Viewer 1.04 allows user-assisted remote attackers to execute arbitrary code via a crafted (1) .orb orEPSS 37.9%CVE-2015-4620—name.c in named in ISC BIND 9.7.x through 9.9.x before 9.9.7-P1 and 9.10.x before 9.10.2-P2, when configured as a recursive resolver with DNEPSS 37.9%CVE-2009-0221—Integer overflow in Microsoft Office PowerPoint 2002 SP3 and 2003 SP3 allows remote attackers to execute arbitrary code via a PowerPoint filEPSS 37.9%CVE-2016-10009HIGHUntrusted search path vulnerability in ssh-agent.c in ssh-agent in OpenSSH before 7.4 allows remote attackers to execute arbitrary local PKCEPSS 37.9%CVE-2024-22241MEDIUMAria Operations for Networks contains a cross site scripting vulnerability. A malicious actor with admin privileges can inject a malicious pEPSS 37.8%CVE-2024-55550MEDIUMMitel MiCollab through 9.8 SP2 could allow an authenticated attacker with administrative privilege to conduct a local file read, due to insuEPSS 37.8%KEVCVE-2023-26067HIGHCertain Lexmark devices through 2023-02-19 mishandle Input Validation (issue 1 of 4).EPSS 37.8%CVE-2021-43711—The downloadFlile.cgi binary file in TOTOLINK EX200 V4.0.3c.7646_B20201211 has a command injection vulnerability when receiving GET parameteEPSS 37.8%CVE-2019-16893—The Web Management of TP-Link TP-SG105E V4 1.0.0 Build 20181120 devices allows an unauthenticated attacker to reboot the device via a rebootEPSS 37.8%CVE-2002-0325—Directory traversal vulnerability in BadBlue before 1.6.1 allows remote attackers to read arbitrary files via a ... (modified dot dot) in thEPSS 37.8%CVE-2006-3436—Cross-site scripting (XSS) vulnerability in Microsoft .NET Framework 2.0 allows remote attackers to inject arbitrary web script or HTML via EPSS 37.8%CVE-2008-0660—Multiple stack-based buffer overflows in Aurigma Image Uploader ActiveX control (ImageUploader4.ocx) 4.6.17.0, 4.5.70.0, and 4.5.126.0, and EPSS 37.8%CVE-2009-2493HIGHThe Active Template Library (ATL) in Microsoft Visual Studio .NET 2003 SP1, Visual Studio 2005 SP1 and 2008 Gold and SP1, and Visual C++ 200EPSS 37.8%CVE-2007-1683—Stack-based buffer overflow in the DoWebMenuAction function in the IncrediMail IMMenuShellExt ActiveX control (ImShExt.dll) allows remote atEPSS 37.7%CVE-2020-10548—rConfig 3.9.4 and previous versions has unauthenticated devices.inc.php SQL injection. Because, by default, nodes' passwords are stored in cEPSS 37.7%