Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2016-1281 |
|
Vulnerability in idrix (CVE-2016-1281)
vulnerability in idrix (CVE-2016-1281). Successful exploitation can lead to full system takeover.
|
| CVE-2015-8855 |
|
Vulnerability in dos (CVE-2015-8855)
vulnerability in dos (CVE-2015-8855). Risk of unauthorized operations or information disclosure.
|
| CVE-2015-8858 |
|
Vulnerability in dos (CVE-2015-8858)
vulnerability in dos (CVE-2015-8858). Risk of unauthorized operations or information disclosure.
|
| CVE-2015-4626 |
|
Vulnerability in treasuryxpress (CVE-2015-4626)
vulnerability in treasuryxpress (CVE-2015-4626). Data can be tampered with by attackers.
|
| CVE-2015-8857 |
|
Vulnerability in uglifyjs-project (CVE-2015-8857)
vulnerability in uglifyjs-project (CVE-2015-8857). Successful exploitation can lead to full system takeover.
|
| CVE-2015-8972 |
|
Buffer Overflow in gnu (CVE-2015-8972)
vulnerability in gnu (CVE-2015-8972). Successful exploitation can lead to full system takeover.
|
| CVE-2017-5569 |
|
SQL Injection in sqli (CVE-2017-5569)
SQL injection in sqli (CVE-2017-5569). Successful exploitation can lead to full system takeover.
|
| CVE-2017-5570 |
|
SQL Injection in sqli (CVE-2017-5570)
SQL injection in sqli (CVE-2017-5570). Successful exploitation can lead to full system takeover.
|
| CVE-2017-5182 |
|
Path Traversal in path-traversal (CVE-2017-5182)
path traversal in path-traversal (CVE-2017-5182). Confidential information can be exposed externally.
|
| CVE-2017-5544 |
|
Vulnerability in dos (CVE-2017-5544)
vulnerability in dos (CVE-2017-5544). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-5539 |
|
Path Traversal in path-traversal (CVE-2017-5539)
path traversal in path-traversal (CVE-2017-5539). Confidential information can be exposed externally.
|
| CVE-2017-5554 |
|
Authentication Bypass in oneplus (CVE-2017-5554)
authentication bypass in oneplus (CVE-2017-5554). Successful exploitation can lead to full system takeover.
|
| CVE-2017-5574 |
|
SQL Injection in sqli (CVE-2017-5574)
SQL injection in sqli (CVE-2017-5574). Successful exploitation can lead to full system takeover.
|
| CVE-2017-5575 |
|
SQL Injection in sqli (CVE-2017-5575)
SQL injection in sqli (CVE-2017-5575). Successful exploitation can lead to full system takeover.
|
| CVE-2016-8213 |
|
Cross-Site Scripting (XSS) in emc (CVE-2016-8213)
cross-site scripting in emc (CVE-2016-8213). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-5553 |
|
Cross-Site Scripting (XSS) in b2evolution (CVE-2017-5553)
cross-site scripting in b2evolution (CVE-2017-5553). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-5556 |
|
Out-of-Bounds Read in dos (CVE-2017-5556)
vulnerability in dos (CVE-2017-5556). Confidential information can be exposed externally.
|
| CVE-2017-5563 |
|
Out-of-Bounds Read in c (CVE-2017-5563)
vulnerability in c (CVE-2017-5563). Successful exploitation can lead to full system takeover.
|
| CVE-2016-10156 |
|
Vulnerability in c (CVE-2016-10156)
vulnerability in c (CVE-2016-10156). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `229` or later.
|
| CVE-2016-10101 |
|
Vulnerability in hiteksoftware (CVE-2016-10101)
vulnerability in hiteksoftware (CVE-2016-10101). Successful exploitation can lead to full system takeover.
|
| CVE-2016-10102 |
|
Vulnerability in hiteksoftware (CVE-2016-10102)
vulnerability in hiteksoftware (CVE-2016-10102). Successful exploitation can lead to full system takeover.
|
| CVE-2016-10103 |
|
Vulnerability in hiteksoftware (CVE-2016-10103)
vulnerability in hiteksoftware (CVE-2016-10103). Successful exploitation can lead to full system takeover.
|
| CVE-2016-10104 |
|
Vulnerability in hiteksoftware (CVE-2016-10104)
vulnerability in hiteksoftware (CVE-2016-10104). Confidential information can be exposed externally.
|
| CVE-2016-10157 |
|
Code Injection in akamai (CVE-2016-10157)
code injection in akamai (CVE-2016-10157). Successful exploitation can lead to full system takeover.
|
| CVE-2017-5545 |
|
Out-of-Bounds Read in c (CVE-2017-5545)
vulnerability in c (CVE-2017-5545). Confidential information can be exposed externally.
|
| CVE-2014-9754 |
|
Vulnerability in viprinet (CVE-2014-9754)
vulnerability in viprinet (CVE-2014-9754). Data can be tampered with by attackers.
|
| CVE-2014-9755 |
|
Vulnerability in viprinet (CVE-2014-9755)
vulnerability in viprinet (CVE-2014-9755). Risk of unauthorized operations or information disclosure.
|
| CVE-2016-9435 |
|
Vulnerability in c (CVE-2016-9435)
vulnerability in c (CVE-2016-9435). Risk of unauthorized operations or information disclosure.
|
| CVE-2016-9436 |
|
Vulnerability in c (CVE-2016-9436)
vulnerability in c (CVE-2016-9436). Risk of unauthorized operations or information disclosure.
|
| CVE-2014-2045 |
|
Cross-Site Scripting (XSS) in viprinet (CVE-2014-2045)
cross-site scripting in viprinet (CVE-2014-2045). Risk of unauthorized operations or information disclosure.
|
| CVE-2016-5316 |
|
Out-of-Bounds Read in c (CVE-2016-5316)
vulnerability in c (CVE-2016-5316). Risk of unauthorized operations or information disclosure.
|
| CVE-2016-5317 |
|
Buffer Overflow in dos (CVE-2016-5317)
vulnerability in dos (CVE-2016-5317). Risk of unauthorized operations or information disclosure.
|
| CVE-2016-5318 |
|
Buffer Overflow in libtiff (CVE-2016-5318)
vulnerability in libtiff (CVE-2016-5318). Risk of unauthorized operations or information disclosure.
|
| CVE-2016-5319 |
|
Buffer Overflow in c (CVE-2016-5319)
vulnerability in c (CVE-2016-5319). Risk of unauthorized operations or information disclosure.
|
| CVE-2016-5321 |
|
Buffer Overflow in dos (CVE-2016-5321)
vulnerability in dos (CVE-2016-5321). Risk of unauthorized operations or information disclosure.
|
| CVE-2016-6253 |
|
Vulnerability in netbsd (CVE-2016-6253)
vulnerability in netbsd (CVE-2016-6253). Successful exploitation can lead to full system takeover.
|
| CVE-2016-8644 |
|
In Moodle 2.x and 3.x, the capability to view course notes is checked in the wrong context.
In Moodle 2.x and 3.x, the capability to view course notes is checked in the wrong context.
|
| CVE-2017-2576 |
|
In Moodle 2.x and 3.x, there is incorrect sanitization of attributes in forums.
In Moodle 2.x and 3.x, there is incorrect sanitization of attributes in forums.
|
| CVE-2017-2578 |
|
In Moodle 3.x, there is XSS in the assignment submission page.
In Moodle 3.x, there is XSS in the assignment submission page.
|
| CVE-2017-5542 |
|
Cross-Site Scripting (XSS) in getsymphony (CVE-2017-5542)
cross-site scripting in getsymphony (CVE-2017-5542). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-5543 |
|
Code Injection in intelliants (CVE-2017-5543)
code injection in intelliants (CVE-2017-5543). Successful exploitation can lead to full system takeover.
|
| CVE-2017-5541 |
|
Path Traversal in path-traversal (CVE-2017-5541)
path traversal in path-traversal (CVE-2017-5541). Risk of unauthorized operations or information disclosure.
|
| CVE-2016-8642 |
|
In Moodle 2.x and 3.x, the question engine allows access to files that should not be available.
In Moodle 2.x and 3.x, the question engine allows access to files that should not be available.
|
| CVE-2016-8643 |
|
In Moodle 2.x and 3.x, non-admin site managers may accidentally edit admins via web services.
In Moodle 2.x and 3.x, non-admin site managers may accidentally edit admins via web services.
|
| CVE-2016-5013 |
|
Vulnerability in moodle (CVE-2016-5013)
vulnerability in moodle (CVE-2016-5013). Risk of unauthorized operations or information disclosure.
|
| CVE-2016-10143 |
|
Information Disclosure in tiki (CVE-2016-10143)
vulnerability in tiki (CVE-2016-10143). Confidential information can be exposed externally.
|
| CVE-2016-5012 |
|
In Moodle 3.x, glossary search displays entries without checking user permissions to view them.
In Moodle 3.x, glossary search displays entries without checking user permissions to view them.
|
| CVE-2016-5014 |
|
Information Disclosure in moodle (CVE-2016-5014)
vulnerability in moodle (CVE-2016-5014). Risk of unauthorized operations or information disclosure.
|
| CVE-2016-5725 |
|
Path Traversal in path-traversal (CVE-2016-5725)
path traversal in path-traversal (CVE-2016-5725). Data can be tampered with by attackers.
|
| CVE-2016-7545 |
|
Vulnerability in selinux-project (CVE-2016-7545)
vulnerability in selinux-project (CVE-2016-7545). Successful exploitation can lead to full system takeover.
|