Vulnerabilidades em n/a

160.875 resultados
CVE-2006-6761—Stack-based buffer overflow in the IMAP daemon (IMAPD) in Novell NetMail before 3.52e FTF2 allows remote authenticated users to execute arbiEPSS 53.4%CVE-2014-9118—The web administrative portal in Zhone zNID GPON 2426A before S3.0.501 allows remote attackers to execute arbitrary commands via shell metacEPSS 53.4%CVE-2014-0644—EMC Cloud Tiering Appliance (CTA) 10 through SP1 allows remote attackers to read arbitrary files via an api/login request containing an XML EPSS 53.3%CVE-2015-7007—Script Editor in Apple OS X before 10.11.1 allows remote attackers to bypass an intended user-confirmation requirement for AppleScript execuEPSS 53.3%CVE-1999-0502—A Unix account has a default, null, blank, or missing password.EPSS 53.3%CVE-2018-4233HIGHAn issue was discovered in certain Apple products. iOS before 11.4 is affected. Safari before 11.1.1 is affected. iCloud before 7.5 on WindoEPSS 53.3%CVE-2006-2502—Stack-based buffer overflow in pop3d in Cyrus IMAPD (cyrus-imapd) 2.3.2, when the popsubfolders option is enabled, allows remote attackers tEPSS 53.3%CVE-2022-33098—Magnolia CMS v6.2.19 was discovered to contain a cross-site scripting (XSS) vulnerability via the Edit Contact function. This vulnerability EPSS 53.3%CVE-2006-5702—Tikiwiki 1.9.5 allows remote attackers to obtain sensitive information (MySQL username and password) via an empty sort_mode parameter in (1)EPSS 53.3%CVE-2018-5006—Adobe Experience Manager versions 6.4 and earlier have a Server-Side Request Forgery vulnerability. Successful exploitation could lead to seEPSS 53.3%CVE-1999-0191—IIS newdsn.exe CGI script allows remote users to overwrite files.EPSS 53.3%CVE-2009-0043—The smmsnmpd service in CA Service Metric Analysis r11.0 through r11.1 SP1 and Service Level Management 3.5 does not properly restrict accesEPSS 53.3%CVE-2024-37843HIGHCraft CMS up to v3.7.31 was discovered to contain a SQL injection vulnerability via the GraphQL API endpoint.EPSS 53.2%CVE-2022-23940—SuiteCRM through 7.12.1 and 8.x through 8.0.1 allows Remote Code Execution. Authenticated users with access to the Scheduled Reports module EPSS 53.2%CVE-2018-7739—antsle antman before 0.9.1a allows remote attackers to bypass authentication via invalid characters in the username and password parameters,EPSS 53.2%CVE-2008-3922—awstatstotals.php in AWStats Totals 1.0 through 1.14 allows remote attackers to execute arbitrary code via PHP sequences in the sort parametEPSS 53.2%CVE-2014-8142—Use-after-free vulnerability in the process_nested_data function in ext/standard/var_unserializer.re in PHP before 5.4.36, 5.5.x before 5.5.EPSS 53.2%CVE-2015-2419HIGHJScript 9 in Microsoft Internet Explorer 10 and 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory coEPSS 53.1%KEVCVE-2006-5583—Buffer overflow in the SNMP Service in Microsoft Windows 2000 SP4, XP SP2, Server 2003, Server 2003 SP1, and possibly other versions allows EPSS 53.1%CVE-2019-11577—dhcpcd before 7.2.1 contains a buffer overflow in dhcp6_findna in dhcp6.c when reading NA/TA addresses.EPSS 53.1%