Vulnerabilidades em n/a
160.875 resultadosCVE-2015-2997—SysAid Help Desk before 15.2 allows remote attackers to obtain sensitive information via an invalid value in the accountid parameter to getAEPSS 57.0%CVE-2021-45428—TLR-2005KSH is affected by an incorrect access control vulnerability. THe PUT method is enabled so an attacker can upload arbitrary files inEPSS 56.9%CVE-2022-30780—Lighttpd 1.4.56 through 1.4.58 allows a remote attacker to cause a denial of service (CPU consumption from stuck connections) because connecEPSS 56.9%CVE-2009-2622—Squid 3.0 through 3.0.STABLE16 and 3.1 through 3.1.0.11 allows remote attackers to cause a denial of service via malformed requests includinEPSS 56.9%CVE-2022-28080—Royal Event Management System v1.0 was discovered to contain a SQL injection vulnerability via the todate parameter.EPSS 56.9%CVE-2008-0320—Heap-based buffer overflow in the OLE importer in OpenOffice.org before 2.4 allows remote attackers to cause a denial of service (crash) andEPSS 56.9%CVE-2017-6361—QNAP QTS before 4.2.4 Build 20170313 allows attackers to execute arbitrary commands via unspecified vectors.EPSS 56.8%CVE-2005-2287—SoftiaCom wMailServer 1.0 and 2.0 allows remote attackers to cause a denial of service (application crash) via a large TCP packet with a leaEPSS 56.8%CVE-2022-48323CRITICALSunlogin Sunflower Simplified (aka Sunflower Simple and Personal) 1.0.1.43315 is vulnerable to a path traversal issue. A remote and unauthenEPSS 56.8%CVE-2016-3222—Microsoft Edge allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, akEPSS 56.8%CVE-2001-0731—Apache 1.3.20 with Multiviews enabled allows remote attackers to view directory contents and bypass the index page via a URL containing the EPSS 56.8%CVE-2020-28018—Exim 4 before 4.94.2 allows Use After Free in smtp_reset in certain situations that may be common for builds with OpenSSL.EPSS 56.8%CVE-2015-4553—A file upload issue exists in DeDeCMS before 5.7-sp1, which allows malicious users getshell.EPSS 56.7%CVE-2018-9161—Prisma Industriale Checkweigher PrismaWEB 1.21 allows remote attackers to discover the hardcoded prisma password for the prismaweb account bEPSS 56.7%CVE-2021-27104CRITICALAccellion FTA 9_12_370 and earlier is affected by OS command execution via a crafted POST request to various admin endpoints. The fixed versEPSS 56.7%KEVCVE-2015-1397—SQL injection vulnerability in the getCsvFile function in the Mage_Adminhtml_Block_Widget_Grid class in Magento Community Edition (CE) 1.9.1EPSS 56.7%CVE-2021-25297HIGHNagios XI version xi-5.7.5 is affected by OS command injection. The vulnerability exists in the file /usr/local/nagiosxi/html/includes/confiEPSS 56.7%KEVCVE-2017-6527—An issue was discovered in dnaTools dnaLIMS 4-2015s13. dnaLIMS is vulnerable to a NUL-terminated directory traversal attack allowing an unauEPSS 56.6%CVE-2002-0072—The w3svc.dll ISAPI filter in Front Page Server Extensions and ASP.NET for Internet Information Server (IIS) 4.0, 5.0, and 5.1 does not propEPSS 56.6%CVE-2004-0842—Internet Explorer 6.0 SP1 and earlier, and possibly other versions, allows remote attackers to cause a denial of service (application crash EPSS 56.6%