Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2015-4697 |
|
Cross-Site Request Forgery (CSRF) in wordpress (CVE-2015-4697)
vulnerability in wordpress (CVE-2015-4697). Successful exploitation can lead to full system takeover.
|
| CVE-2017-14192 |
|
Cross-Site Scripting (XSS) in finecms-project (CVE-2017-14192)
cross-site scripting in finecms-project (CVE-2017-14192). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-14193 |
|
Cross-Site Scripting (XSS) in finecms-project (CVE-2017-14193)
cross-site scripting in finecms-project (CVE-2017-14193). Risk of unauthorized operations or information disclosure. Exploitable via `Referer header`.
|
| CVE-2017-14194 |
|
Cross-Site Scripting (XSS) in finecms-project (CVE-2017-14194)
cross-site scripting in finecms-project (CVE-2017-14194). Risk of unauthorized operations or information disclosure. Exploitable via `Referer header`.
|
| CVE-2017-14195 |
|
Cross-Site Scripting (XSS) in finecms-project (CVE-2017-14195)
cross-site scripting in finecms-project (CVE-2017-14195). Risk of unauthorized operations or information disclosure. Exploitable via `Referer header`.
|
| CVE-2013-7428 |
|
Vulnerability in dos (CVE-2013-7428)
vulnerability in dos (CVE-2013-7428). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-1098 |
|
Cross-Site Scripting (XSS) in ibm (CVE-2017-1098)
cross-site scripting in ibm (CVE-2017-1098). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-1189 |
|
Cross-Site Scripting (XSS) in ibm (CVE-2017-1189)
cross-site scripting in ibm (CVE-2017-1189). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-1502 |
|
Cross-Site Scripting (XSS) in ibm (CVE-2017-1502)
cross-site scripting in ibm (CVE-2017-1502). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-9834 |
|
SQL Injection in wordpress (CVE-2017-9834)
SQL injection in wordpress (CVE-2017-9834). Successful exploitation can lead to full system takeover.
|
| CVE-2017-12838 |
|
Cross-Site Request Forgery (CSRF) in csrf (CVE-2017-12838)
vulnerability in csrf (CVE-2017-12838). Successful exploitation can lead to full system takeover.
|
| CVE-2017-12906 |
|
Cross-Site Scripting (XSS) in nexusphp-project (CVE-2017-12906)
cross-site scripting in nexusphp-project (CVE-2017-12906). Risk of unauthorized operations or information disclosure.
|
| CVE-2015-3250 |
|
Information Disclosure in apache (CVE-2015-3250)
vulnerability in apache (CVE-2015-3250). Confidential information can be exposed externally.
|
| CVE-2016-10405 |
|
Vulnerability in d-link (CVE-2016-10405)
vulnerability in d-link (CVE-2016-10405). Successful exploitation can lead to full system takeover.
|
| CVE-2017-12133 |
|
Use-After-Free in c (CVE-2017-12133)
vulnerability in c (CVE-2017-12133). Data can be tampered with by attackers.
|
| CVE-2017-14172 |
|
Vulnerability in c (CVE-2017-14172)
vulnerability in c (CVE-2017-14172). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-14173 |
|
Vulnerability in c (CVE-2017-14173)
vulnerability in c (CVE-2017-14173). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-14174 |
|
Vulnerability in c (CVE-2017-14174)
vulnerability in c (CVE-2017-14174). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-14175 |
|
Vulnerability in c (CVE-2017-14175)
vulnerability in c (CVE-2017-14175). Risk of unauthorized operations or information disclosure.
|
| CVE-2015-7241 |
|
XML External Entity (XXE) vulnerability in SAP Netweaver before 7.01.
XML External Entity (XXE) vulnerability in SAP Netweaver before 7.01.
|
| CVE-2015-6250 |
|
Information Disclosure in simple-php-captcha-project (CVE-2015-6250)
vulnerability in simple-php-captcha-project (CVE-2015-6250). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-1097 |
|
Cross-Site Request Forgery (CSRF) in ibm (CVE-2017-1097)
vulnerability in ibm (CVE-2017-1097). Successful exploitation can lead to full system takeover.
|
| CVE-2017-1129 |
|
Vulnerability in dos (CVE-2017-1129)
vulnerability in dos (CVE-2017-1129). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-1130 |
|
Vulnerability in dos (CVE-2017-1130)
vulnerability in dos (CVE-2017-1130). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-1457 |
|
Cross-Site Scripting (XSS) in ibm (CVE-2017-1457)
cross-site scripting in ibm (CVE-2017-1457). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-1458 |
|
XXE (XML External Entity) in ibm (CVE-2017-1458)
vulnerability in ibm (CVE-2017-1458). Confidential information can be exposed externally.
|
| CVE-2017-1491 |
|
Vulnerability in ibm (CVE-2017-1491)
vulnerability in ibm (CVE-2017-1491). Confidential information can be exposed externally.
|
| CVE-2017-5698 |
|
Vulnerability in intel (CVE-2017-5698)
vulnerability in intel (CVE-2017-5698). Data can be tampered with by attackers.
|
| CVE-2017-14159 |
|
Vulnerability in openldap (CVE-2017-14159)
vulnerability in openldap (CVE-2017-14159). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-14156 |
|
Information Disclosure in c (CVE-2017-14156)
vulnerability in c (CVE-2017-14156). Confidential information can be exposed externally.
|
| CVE-2016-3086 |
|
Information Disclosure in apache (CVE-2016-3086)
vulnerability in apache (CVE-2016-3086). Successful exploitation can lead to full system takeover.
|
| CVE-2017-14149 |
|
Vulnerability in c (CVE-2017-14149)
vulnerability in c (CVE-2017-14149). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-14145 |
|
SQL Injection in sqli (CVE-2017-14145)
SQL injection in sqli (CVE-2017-14145). Successful exploitation can lead to full system takeover.
|
| CVE-2017-14146 |
|
Code Injection in helpdezk (CVE-2017-14146)
code injection in helpdezk (CVE-2017-14146). Successful exploitation can lead to full system takeover.
|
| CVE-2017-14140 |
|
Information Disclosure in c (CVE-2017-14140)
vulnerability in c (CVE-2017-14140). Confidential information can be exposed externally.
|
| CVE-2017-14137 |
|
Vulnerability in c (CVE-2017-14137)
vulnerability in c (CVE-2017-14137). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-14138 |
|
Vulnerability in c (CVE-2017-14138)
vulnerability in c (CVE-2017-14138). Successful exploitation can lead to full system takeover.
|
| CVE-2017-14139 |
|
ImageMagick 7.0.6-2 has a memory leak vulnerability in WriteMSLImage in coders/msl.c.
ImageMagick 7.0.6-2 has a memory leak vulnerability in WriteMSLImage in coders/msl.c.
|
| CVE-2017-14128 |
|
Out-of-Bounds Read in c (CVE-2017-14128)
vulnerability in c (CVE-2017-14128). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-14129 |
|
Out-of-Bounds Read in c (CVE-2017-14129)
vulnerability in c (CVE-2017-14129). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-14130 |
|
Out-of-Bounds Read in c (CVE-2017-14130)
vulnerability in c (CVE-2017-14130). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-14123 |
|
Unrestricted File Upload in zohocorp (CVE-2017-14123)
vulnerability in zohocorp (CVE-2017-14123). Successful exploitation can lead to full system takeover.
|
| CVE-2017-14126 |
|
The Participants Database plugin before 1.7.5.10 for WordPress has XSS.
The Participants Database plugin before 1.7.5.10 for WordPress has XSS.
|
| CVE-2017-14118 |
|
OS Command Injection in eyesofnetwork (CVE-2017-14118)
OS command injection in eyesofnetwork (CVE-2017-14118). Successful exploitation can lead to full system takeover.
|
| CVE-2017-14119 |
|
OS Command Injection in eyesofnetwork (CVE-2017-14119)
OS command injection in eyesofnetwork (CVE-2017-14119). Successful exploitation can lead to full system takeover.
|
| CVE-2017-14120 |
|
Path Traversal in path-traversal (CVE-2017-14120)
path traversal in path-traversal (CVE-2017-14120). Confidential information can be exposed externally.
|
| CVE-2017-14121 |
|
Vulnerability in c (CVE-2017-14121)
vulnerability in c (CVE-2017-14121). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-14122 |
|
Out-of-Bounds Read in c (CVE-2017-14122)
vulnerability in c (CVE-2017-14122). Confidential information can be exposed externally.
|
| CVE-2017-12691 |
|
Vulnerability in c (CVE-2017-12691)
vulnerability in c (CVE-2017-12691). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-12692 |
|
Vulnerability in c (CVE-2017-12692)
vulnerability in c (CVE-2017-12692). Risk of unauthorized operations or information disclosure.
|