Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
an-http vulnerabilities and exploits
(subscribe to this query)
4.3
CVSSv2
CVE-2003-1271
Cross-site scripting vulnerability (XSS) in AN HTTP 1.41e allows remote malicious users to execute arbitrary web script or HTML as other users via a URL containing the script.
An An-http 1.41e
1 EDB exploit
5
CVSSv2
CVE-2003-1269
AN HTTP 1.41e allows remote malicious users to obtain the root web server path via an HTTP request with a long argument to a script, which leaks the path in an error message.
An An-http 1.41e
5
CVSSv2
CVE-2003-1270
AN HTTP 1.41e allows remote malicious users to cause a denial of service (borken pipe) via an HTTP request to aux.cgi with a long argument, possibly triggering a buffer overflow or MS-DOS device vulnerability.
An An-http 1.41e
4.3
CVSSv2
CVE-2007-2401
CRLF injection vulnerability in WebCore in Apple Mac OS X 10.3.9, 10.4.9 and later, and iPhone prior to 1.0.1, allows remote malicious users to inject arbitrary HTTP headers via LF characters in an XMLHttpRequest request, which are not filtered when serializing headers via the se...
Apple Mac Os X Server 10.4.9
Apple Mac Os X 10.4.9
Apple Mac Os X Server 10.3.9
Apple Mac Os X 10.3.9
1 EDB exploit
9
CVSSv2
CVE-2022-20828
A vulnerability in the CLI parser of Cisco FirePOWER Software for Adaptive Security Appliance (ASA) FirePOWER module could allow an authenticated, remote malicious user to execute arbitrary commands on the underlying operating system of an affected ASA FirePOWER module as the roo...
Cisco Asa Firepower
1 Metasploit module
1 Github repository
1 Article
9
CVSSv2
CVE-2022-20829
A vulnerability in the packaging of Cisco Adaptive Security Device Manager (ASDM) images and the validation of those images by Cisco Adaptive Security Appliance (ASA) Software could allow an authenticated, remote attacker with administrative privileges to upload an ASDM image tha...
Cisco Isa 3000 Firmware
Cisco Asa 5585-x Firmware
Cisco Asa 5512-x Firmware
Cisco Asa 5515-x Firmware
Cisco Adaptive Security Device Manager
2 Github repositories
1 Article
NA
CVE-2022-20949
A vulnerability in the management web server of Cisco Firepower Threat Defense (FTD) Software could allow an authenticated, remote attacker with high privileges to execute configuration commands on an affected system. This vulnerability exists because access to HTTPS endpoints is...
Cisco Firepower Threat Defense 6.2.1
Cisco Firepower Threat Defense
Cisco Firepower Threat Defense 7.1.0.0
Cisco Firepower Threat Defense 7.2.0.1
Cisco Firepower Threat Defense 7.1.0.1
Cisco Firepower Threat Defense 7.1.0.2
Cisco Firepower Threat Defense 7.2.0
5
CVSSv2
CVE-2004-0466
WebConnect 6.5, 6.4.4, and possibly earlier versions allows remote malicious users to cause a denial of service (hang) via a URL containing an MS-DOS device name such as (1) AUX, (2) CON, (3) PRN, (4) COM1, or (5) LPT1.
Openconnect Webconnect 6.5
Openconnect Webconnect 6.4.4
7.5
CVSSv2
CVE-2016-3088
The Fileserver web application in Apache ActiveMQ 5.x prior to 5.14.0 allows remote malicious users to upload and execute arbitrary files via an HTTP PUT followed by an HTTP MOVE request.
Apache Activemq
2 EDB exploits
8 Github repositories
8.5
CVSSv2
CVE-2022-20759
A vulnerability in the web services interface for remote access VPN features of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an authenticated, but unprivileged, remote malicious user to elevate privileges to level ...
Cisco Firepower Threat Defense 7.1.0
Cisco Firepower Threat Defense
Cisco Adaptive Security Appliance Software
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2023-3675
CVE-2024-3400
CVE-2024-23557
mass assignment
CVE-2023-1389
local file inclusion
CVE-2024-32596
file upload
CVE-2024-32593
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
4
5
6
NEXT »