Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2017-14925 |
|
Cross-Site Request Forgery (CSRF) in csrf (CVE-2017-14925)
vulnerability in csrf (CVE-2017-14925). Successful exploitation can lead to full system takeover.
|
| CVE-2017-14945 |
|
Buffer Overflow in dos (CVE-2017-14945)
vulnerability in dos (CVE-2017-14945). Successful exploitation can lead to full system takeover.
|
| CVE-2017-14946 |
|
Buffer Overflow in dos (CVE-2017-14946)
vulnerability in dos (CVE-2017-14946). Successful exploitation can lead to full system takeover.
|
| CVE-2017-14947 |
|
Buffer Overflow in dos (CVE-2017-14947)
vulnerability in dos (CVE-2017-14947). Successful exploitation can lead to full system takeover.
|
| CVE-2015-9233 |
|
Cross-Site Request Forgery (CSRF) in wordpress (CVE-2015-9233)
vulnerability in wordpress (CVE-2015-9233). Successful exploitation can lead to full system takeover.
|
| CVE-2015-9234 |
|
SQL Injection in wordpress (CVE-2015-9234)
SQL injection in wordpress (CVE-2015-9234). Successful exploitation can lead to full system takeover.
|
| CVE-2016-4434 |
|
XXE (XML External Entity) in apache (CVE-2016-4434)
vulnerability in apache (CVE-2016-4434). Successful exploitation can lead to full system takeover.
|
| CVE-2017-7687 |
|
Vulnerability in apache (CVE-2017-7687)
vulnerability in apache (CVE-2017-7687). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-9790 |
|
Use-After-Free in apache (CVE-2017-9790)
vulnerability in apache (CVE-2017-9790). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-14867 |
|
OS Command Injection in git-scm (CVE-2017-14867)
OS command injection in git-scm (CVE-2017-14867). Successful exploitation can lead to full system takeover.
|
| CVE-2017-14763 |
|
Vulnerability in genixcms (CVE-2017-14763)
vulnerability in genixcms (CVE-2017-14763). Successful exploitation can lead to full system takeover.
|
| CVE-2017-14764 |
|
Code Injection in genixcms (CVE-2017-14764)
code injection in genixcms (CVE-2017-14764). Successful exploitation can lead to full system takeover.
|
| CVE-2017-14766 |
|
Authentication Bypass in wordpress (CVE-2017-14766)
authentication bypass in wordpress (CVE-2017-14766). Data can be tampered with by attackers.
|
| CVE-2017-5192 |
|
Authentication Bypass in salt (CVE-2017-5192)
authentication bypass in salt (CVE-2017-5192). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `2015.8.13, 2016.3.5, 2016.11.2` or later.
|
| CVE-2017-5200 |
|
Vulnerability in salt (CVE-2017-5200)
vulnerability in salt (CVE-2017-5200). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `2015.8.13, 2016.3.5, 2016.11.2` or later.
|
| CVE-2017-14739 |
|
Vulnerability in c (CVE-2017-14739)
vulnerability in c (CVE-2017-14739). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-9956 |
|
Vulnerability in schneider-electric (CVE-2017-9956)
vulnerability in schneider-electric (CVE-2017-9956). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-9958 |
|
Vulnerability in schneider-electric (CVE-2017-9958)
vulnerability in schneider-electric (CVE-2017-9958). Successful exploitation can lead to full system takeover.
|
| CVE-2017-14730 |
|
Vulnerability in elasticsearch (CVE-2017-14730)
vulnerability in elasticsearch (CVE-2017-14730). Successful exploitation can lead to full system takeover.
|
| CVE-2017-14705 |
|
OS Command Injection in denyall (CVE-2017-14705)
OS command injection in denyall (CVE-2017-14705). Successful exploitation can lead to full system takeover.
|
| CVE-2017-6268 |
|
Vulnerability in dos (CVE-2017-6268)
vulnerability in dos (CVE-2017-6268). Successful exploitation can lead to full system takeover.
|
| CVE-2017-6269 |
|
Vulnerability in dos (CVE-2017-6269)
vulnerability in dos (CVE-2017-6269). Successful exploitation can lead to full system takeover.
|
| CVE-2017-6272 |
|
Vulnerability in dos (CVE-2017-6272)
vulnerability in dos (CVE-2017-6272). Successful exploitation can lead to full system takeover.
|
| CVE-2017-6277 |
|
Vulnerability in dos (CVE-2017-6277)
vulnerability in dos (CVE-2017-6277). Successful exploitation can lead to full system takeover.
|
| CVE-2017-14685 |
|
Buffer Overflow in c (CVE-2017-14685)
vulnerability in c (CVE-2017-14685). Successful exploitation can lead to full system takeover.
|
| CVE-2017-14686 |
|
Buffer Overflow in c (CVE-2017-14686)
vulnerability in c (CVE-2017-14686). Successful exploitation can lead to full system takeover.
|
| CVE-2017-14687 |
|
Buffer Overflow in dos (CVE-2017-14687)
vulnerability in dos (CVE-2017-14687). Successful exploitation can lead to full system takeover.
|
| CVE-2017-14682 |
|
Buffer Overflow in c (CVE-2017-14682)
vulnerability in c (CVE-2017-14682). Successful exploitation can lead to full system takeover.
|
| CVE-2017-12929 |
|
Unrestricted File Upload in tecnovision (CVE-2017-12929)
vulnerability in tecnovision (CVE-2017-12929). Successful exploitation can lead to full system takeover.
|
| CVE-2017-9793 |
|
Vulnerability in apache (CVE-2017-9793)
vulnerability in apache (CVE-2017-9793). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-9804 |
|
Vulnerability in apache (CVE-2017-9804)
vulnerability in apache (CVE-2017-9804). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-14607 |
|
Out-of-Bounds Read in c (CVE-2017-14607)
vulnerability in c (CVE-2017-14607). Confidential information can be exposed externally.
|
| CVE-2014-9619 |
|
Unrestricted File Upload in netsweeper (CVE-2014-9619)
vulnerability in netsweeper (CVE-2014-9619). Successful exploitation can lead to full system takeover.
|
| CVE-2015-4089 |
|
Cross-Site Request Forgery (CSRF) in wordpress (CVE-2015-4089)
vulnerability in wordpress (CVE-2015-4089). Successful exploitation can lead to full system takeover.
|
| CVE-2017-14141 |
|
Unsafe Deserialization in kaltura (CVE-2017-14141)
vulnerability in kaltura (CVE-2017-14141). Successful exploitation can lead to full system takeover.
|
| CVE-2017-12616 |
|
Information Disclosure in apache (CVE-2017-12616)
vulnerability in apache (CVE-2017-12616). Confidential information can be exposed externally.
|
| CVE-2017-9803 |
|
Authentication Bypass in apache (CVE-2017-9803)
authentication bypass in apache (CVE-2017-9803). Successful exploitation can lead to full system takeover.
|
| CVE-2017-14580 |
|
Buffer Overflow in dos (CVE-2017-14580)
vulnerability in dos (CVE-2017-14580). Successful exploitation can lead to full system takeover.
|
| CVE-2017-14538 |
|
Buffer Overflow in dos (CVE-2017-14538)
vulnerability in dos (CVE-2017-14538). Successful exploitation can lead to full system takeover.
|
| CVE-2017-14541 |
|
Buffer Overflow in dos (CVE-2017-14541)
vulnerability in dos (CVE-2017-14541). Successful exploitation can lead to full system takeover.
|
| CVE-2017-9798 |
|
Use-After-Free in c (CVE-2017-9798)
vulnerability in c (CVE-2017-9798). Confidential information can be exposed externally.
|
| CVE-2017-14508 |
|
SQL Injection in sqli (CVE-2017-14508)
SQL injection in sqli (CVE-2017-14508). Successful exploitation can lead to full system takeover.
|
| CVE-2014-9463 |
|
Code Injection in vbseo (CVE-2014-9463)
code injection in vbseo (CVE-2014-9463). Successful exploitation can lead to full system takeover. Exploitable via `Referer header`.
|
| CVE-2014-7808 |
|
Vulnerability in apache (CVE-2014-7808)
vulnerability in apache (CVE-2014-7808). Confidential information can be exposed externally.
|
| CVE-2017-2299 |
|
Vulnerability in apache (CVE-2017-2299)
vulnerability in apache (CVE-2017-2299). Confidential information can be exposed externally. Exploitable via ``ssl_ca``.
|
| CVE-2017-4924 |
|
Out-of-Bounds Write in vmware (CVE-2017-4924)
out-of-bounds write in vmware (CVE-2017-4924). Successful exploitation can lead to full system takeover.
|
| CVE-2017-1002004 |
|
SQL Injection in wordpress (CVE-2017-1002004)
SQL injection in wordpress (CVE-2017-1002004). Data can be tampered with by attackers.
|
| CVE-2017-1002005 |
|
SQL Injection in wordpress (CVE-2017-1002005)
SQL injection in wordpress (CVE-2017-1002005). Data can be tampered with by attackers.
|
| CVE-2017-1002006 |
|
Vulnerability in wordpress (CVE-2017-1002006)
vulnerability in wordpress (CVE-2017-1002006). Data can be tampered with by attackers.
|
| CVE-2017-1002007 |
|
Vulnerability in wordpress (CVE-2017-1002007)
vulnerability in wordpress (CVE-2017-1002007). Data can be tampered with by attackers.
|