Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2017-8691 |
|
Buffer Overflow in express (CVE-2017-8691)
vulnerability in express (CVE-2017-8691). Successful exploitation can lead to full system takeover.
|
| CVE-2010-2245 |
|
XXE (XML External Entity) in apache (CVE-2010-2245)
vulnerability in apache (CVE-2010-2245). Confidential information can be exposed externally.
|
| CVE-2011-4343 |
|
Information Disclosure in apache (CVE-2011-4343)
vulnerability in apache (CVE-2011-4343). Confidential information can be exposed externally.
|
| CVE-2012-0880 |
|
Vulnerability in c (CVE-2012-0880)
vulnerability in c (CVE-2012-0880). Risk of unauthorized operations or information disclosure.
|
| CVE-2014-9260 |
|
Vulnerability in wordpress (CVE-2014-9260)
vulnerability in wordpress (CVE-2014-9260). Successful exploitation can lead to full system takeover.
|
| CVE-2014-9262 |
|
Vulnerability in wordpress (CVE-2014-9262)
vulnerability in wordpress (CVE-2014-9262). Confidential information can be exposed externally.
|
| CVE-2017-12651 |
|
Cross-Site Request Forgery (CSRF) in wordpress (CVE-2017-12651)
vulnerability in wordpress (CVE-2017-12651). Successful exploitation can lead to full system takeover. Exploitable via `Referer header`.
|
| CVE-2015-7875 |
|
Vulnerability in drupal (CVE-2015-7875)
vulnerability in drupal (CVE-2015-7875). Data can be tampered with by attackers.
|
| CVE-2017-9801 |
|
Vulnerability in apache (CVE-2017-9801)
vulnerability in apache (CVE-2017-9801). Data can be tampered with by attackers.
|
| CVE-2017-7920 |
|
Authentication Bypass in react (CVE-2017-7920)
authentication bypass in react (CVE-2017-7920). Confidential information can be exposed externally.
|
| CVE-2017-11364 |
|
Vulnerability in joomla (CVE-2017-11364)
vulnerability in joomla (CVE-2017-11364). Successful exploitation can lead to full system takeover.
|
| CVE-2017-11726 |
|
Cross-Site Request Forgery (CSRF) in rails (CVE-2017-11726)
vulnerability in rails (CVE-2017-11726). Successful exploitation can lead to full system takeover.
|
| CVE-2016-0736 |
|
Vulnerability in apache (CVE-2016-0736)
vulnerability in apache (CVE-2016-0736). Confidential information can be exposed externally.
|
| CVE-2016-2161 |
|
Vulnerability in apache (CVE-2016-2161)
vulnerability in apache (CVE-2016-2161). Risk of unauthorized operations or information disclosure.
|
| CVE-2016-8743 |
|
Vulnerability in apache (CVE-2016-8743)
vulnerability in apache (CVE-2016-8743). Data can be tampered with by attackers.
|
| CVE-2017-7659 |
|
Vulnerability in apache (CVE-2017-7659)
vulnerability in apache (CVE-2017-7659). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-11658 |
|
Path Traversal in wordpress (CVE-2017-11658)
path traversal in wordpress (CVE-2017-11658). Confidential information can be exposed externally.
|
| CVE-2017-9933 |
|
Information Disclosure in joomla (CVE-2017-9933)
vulnerability in joomla (CVE-2017-9933). Confidential information can be exposed externally.
|
| CVE-2017-7688 |
|
Apache OpenMeetings 1.0.0 updates user password in insecure manner.
Apache OpenMeetings 1.0.0 updates user password in insecure manner.
|
| CVE-2017-7666 |
|
Cross-Site Scripting (XSS) in apache (CVE-2017-7666)
cross-site scripting in apache (CVE-2017-7666). Successful exploitation can lead to full system takeover.
|
| CVE-2017-7680 |
|
Vulnerability in apache (CVE-2017-7680)
vulnerability in apache (CVE-2017-7680). Data can be tampered with by attackers.
|
| CVE-2017-7681 |
|
SQL Injection in apache (CVE-2017-7681)
SQL injection in apache (CVE-2017-7681). Successful exploitation can lead to full system takeover.
|
| CVE-2017-7682 |
|
Vulnerability in apache (CVE-2017-7682)
vulnerability in apache (CVE-2017-7682). Data can be tampered with by attackers.
|
| CVE-2017-7683 |
|
Information Disclosure in apache (CVE-2017-7683)
vulnerability in apache (CVE-2017-7683). Confidential information can be exposed externally.
|
| CVE-2017-7684 |
|
Vulnerability in apache (CVE-2017-7684)
vulnerability in apache (CVE-2017-7684). Risk of unauthorized operations or information disclosure.
|
| CVE-2015-0249 |
|
Code Injection in apache (CVE-2015-0249)
code injection in apache (CVE-2015-0249). Successful exploitation can lead to full system takeover.
|
| CVE-2017-9789 |
|
Use-After-Free in apache (CVE-2017-9789)
vulnerability in apache (CVE-2017-9789). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-9787 |
|
Vulnerability in apache (CVE-2017-9787)
vulnerability in apache (CVE-2017-9787). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-7529 |
|
Vulnerability in nginx (CVE-2017-7529)
vulnerability in nginx (CVE-2017-7529). Confidential information can be exposed externally.
|
| CVE-2017-5652 |
|
Vulnerability in apache (CVE-2017-5652)
vulnerability in apache (CVE-2017-5652). Confidential information can be exposed externally.
|
| CVE-2017-7670 |
|
Vulnerability in apache (CVE-2017-7670)
vulnerability in apache (CVE-2017-7670). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-7660 |
|
Authentication Bypass in apache (CVE-2017-7660)
authentication bypass in apache (CVE-2017-7660). Data can be tampered with by attackers.
|
| CVE-2017-7686 |
|
Information Disclosure in apache (CVE-2017-7686)
vulnerability in apache (CVE-2017-7686). Confidential information can be exposed externally.
|
| CVE-2017-7668 |
|
Vulnerability in apache (CVE-2017-7668)
vulnerability in apache (CVE-2017-7668). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-9429 |
|
SQL Injection in wordpress (CVE-2017-9429)
SQL injection in wordpress (CVE-2017-9429). Successful exploitation can lead to full system takeover.
|
| CVE-2017-9603 |
|
SQL Injection in wordpress (CVE-2017-9603)
SQL injection in wordpress (CVE-2017-9603). Successful exploitation can lead to full system takeover.
|
| CVE-2017-7667 |
|
Vulnerability in apache (CVE-2017-7667)
vulnerability in apache (CVE-2017-7667). Data can be tampered with by attackers.
|
| CVE-2017-9418 |
|
SQL Injection in wordpress (CVE-2017-9418)
SQL injection in wordpress (CVE-2017-9418). Successful exploitation can lead to full system takeover.
|
| CVE-2015-3634 |
|
Information Disclosure in wordpress (CVE-2015-3634)
vulnerability in wordpress (CVE-2015-3634). Confidential information can be exposed externally.
|
| CVE-2015-5175 |
|
Vulnerability in apache (CVE-2015-5175)
vulnerability in apache (CVE-2015-5175). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-5664 |
|
Vulnerability in apache (CVE-2017-5664)
vulnerability in apache (CVE-2017-5664). Data can be tampered with by attackers.
|
| CVE-2017-7669 |
|
Vulnerability in apache (CVE-2017-7669)
vulnerability in apache (CVE-2017-7669). Successful exploitation can lead to full system takeover.
|
| CVE-2016-3083 |
|
Vulnerability in apache (CVE-2016-3083)
vulnerability in apache (CVE-2016-3083). Data can be tampered with by attackers.
|
| CVE-2014-0225 |
|
XXE (XML External Entity) in spring (CVE-2014-0225)
vulnerability in spring (CVE-2014-0225). Successful exploitation can lead to full system takeover.
|
| CVE-2016-5007 |
|
Vulnerability in spring (CVE-2016-5007)
vulnerability in spring (CVE-2016-5007). Data can be tampered with by attackers.
|
| CVE-2015-4704 |
|
Path Traversal in wordpress (CVE-2015-4704)
path traversal in wordpress (CVE-2015-4704). Confidential information can be exposed externally.
|
| CVE-2015-5468 |
|
Path Traversal in wordpress (CVE-2015-5468)
path traversal in wordpress (CVE-2015-5468). Confidential information can be exposed externally.
|
| CVE-2015-5469 |
|
Path Traversal in wordpress (CVE-2015-5469)
path traversal in wordpress (CVE-2015-5469). Confidential information can be exposed externally.
|
| CVE-2015-5682 |
|
Vulnerability in wordpress (CVE-2015-5682)
vulnerability in wordpress (CVE-2015-5682). Data can be tampered with by attackers.
|
| CVE-2015-5401 |
|
Vulnerability in express (CVE-2015-5401)
vulnerability in express (CVE-2015-5401). Risk of unauthorized operations or information disclosure.
|