Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
devexpress devexpress vulnerabilities and exploits
(subscribe to this query)
8.8
CVSSv3
CVE-2022-28684
This vulnerability allows remote malicious users to execute arbitrary code on affected installations of DevExpress. Authentication is required to exploit this vulnerability. The specific flaw exists within the SafeBinaryFormatter library. The issue results from the lack of proper...
Devexpress Devexpress
Devexpress Devexpress 22.1.0
8.8
CVSSv3
CVE-2021-36483
DevExpress.XtraReports.UI through v21.1 allows malicious users to execute arbitrary code via insecure deserialization.
Devexpress Devexpress
NA
CVE-2014-2575
Directory traversal vulnerability in the File Manager component in DevExpress ASPxFileManager Control for ASP.NET WebForms and MVC prior to 13.1.10 and 13.2.x prior to 13.2.9 allows remote authenticated users to read or write arbitrary files via a .. (dot dot) in the __EVENTARGUM...
Devexpress Aspxfilemanager Control For Webforms And Mvc 10.2.3
Devexpress Aspxfilemanager Control For Webforms And Mvc 11.1.12
Devexpress Aspxfilemanager Control For Webforms And Mvc 11.1.5
Devexpress Aspxfilemanager Control For Webforms And Mvc 11.1.4
Devexpress Aspxfilemanager Control For Webforms And Mvc 11.2.7
Devexpress Aspxfilemanager Control For Webforms And Mvc 11.2.5
Devexpress Aspxfilemanager Control For Webforms And Mvc 12.1.12
Devexpress Aspxfilemanager Control For Webforms And Mvc 10.2.8
Devexpress Aspxfilemanager Control For Webforms And Mvc 10.2.6
Devexpress Aspxfilemanager Control For Webforms And Mvc 11.1.9
Devexpress Aspxfilemanager Control For Webforms And Mvc 11.1.8
Devexpress Aspxfilemanager Control For Webforms And Mvc 11.2.12
Devexpress Aspxfilemanager Control For Webforms And Mvc 11.2.11
Devexpress Aspxfilemanager Control For Webforms And Mvc 10.2.5
Devexpress Aspxfilemanager Control For Webforms And Mvc 10.2.4
Devexpress Aspxfilemanager Control For Webforms And Mvc 11.1.7
Devexpress Aspxfilemanager Control For Webforms And Mvc 11.1.6
Devexpress Aspxfilemanager Control For Webforms And Mvc 11.2.10
Devexpress Aspxfilemanager Control For Webforms And Mvc 11.2.8
Devexpress Aspxfilemanager Control For Webforms And Mvc 12.1.7
Devexpress Aspxfilemanager Control For Webforms And Mvc 12.1.6
Devexpress Aspxfilemanager Control For Webforms And Mvc 12.2.11
1 EDB exploit
NA
CVE-2015-4670
Directory traversal vulnerability in the AjaxFileUpload control in DevExpress AJAX Control Toolkit (aka AjaxControlToolkit) prior to 15.1 allows remote malicious users to write to arbitrary files via a .. (dot dot) in the fileId parameter to AjaxFileUploadHandler.axd.
Devexpress Ajax Control Toolkit
7.5
CVSSv3
CVE-2022-41479
The DevExpress Resource Handler (ASPxHttpHandlerModule) in DevExpress ASP.NET Web Forms Build v19.2.3 does not verify the referenced objects in the /DXR.axd?r= HTTP GET parameter. This leads to an Insecure Direct Object References (IDOR) vulnerability which allows malicious users...
Devexpress Asp.net Web Forms Controls 19.2.3
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-4761
command injection
CVE-2024-3676
IDOR
CVE-2024-30039
CVE-2024-32113
CVE-2024-30049
CVE-2024-4776
SQL injection
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started