Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
By Recent Activity
opensuse project leap 42.1 vulnerabilities and exploits
(subscribe to this query)
6.5
CVSSv3
CVE-2016-9436
parsetagx.c in w3m before 0.5.3+git20161009 does not properly initialize values, which allows remote attackers to crash the application via a crafted html file, related to a <i> tag....
Opensuse Leap 42.2
Opensuse Project Leap 42.1
W3m Project W3m
1 Github repository available
7.5
CVSSv3
CVE-2015-3138
print-wb.c in tcpdump before 4.7.4 allows remote attackers to cause a denial of service (segmentation fault and process crash)....
Tcpdump Tcpdump
Opensuse Project Leap 42.1
Opensuse Leap 42.2
6.1
CVSSv3
CVE-2015-8010
Cross-site scripting (XSS) vulnerability in the Classic-UI with the CSV export link and pagination feature in Icinga before 1.14 allows remote attackers to inject arbitrary web script or HTML via the query string to cgi-bin/status.cgi....
Icinga Icinga
Opensuse Leap 42.2
Opensuse Project Leap 42.1
2.7
CVSSv3
CVE-2017-5930
The AliasHandler component in PostfixAdmin before 3.0.2 allows remote authenticated domain admins to delete protected aliases via the delete parameter to delete.php, involving a missing permission check....
Opensuse Leap 42.1
Opensuse Leap 42.2
Postfixadmin Project Postfixadmin
1 Metasploit module available
5.5
CVSSv3
CVE-2016-10068
The MSL interpreter in ImageMagick before 6.9.6-4 allows remote attackers to cause a denial of service (segmentation fault and application crash) via a crafted XML file....
Imagemagick Imagemagick
Opensuse Leap 42.2
Opensuse Project Leap 42.1
6.5
CVSSv3
CVE-2016-9435
The HTMLtagproc1 function in file.c in w3m before 0.5.3+git20161009 does not properly initialize values, which allows remote attackers to crash the application via a crafted html file, related to <dd> tags....
Opensuse Project Leap 42.1
Opensuse Leap 42.2
W3m Project W3m
1 Github repository available
9.8
CVSSv3
CVE-2017-6542
The ssh_agent_channel_data function in PuTTY before 0.68 allows remote attackers to have unspecified impact via a large length value in an agent protocol message and leveraging the ability to connect to the Unix-domain socket representing the forwarded agent connection, which...
Putty Putty
Opensuse Project Leap 42.1
Opensuse Leap 42.2
1 EDB exploit available
1 Github repository available
7.5
CVSSv3
CVE-2014-3462
The ".encfs6.xml" configuration file in encfs before 1.7.5 allows remote attackers to access sensitive data by setting "blockMACBytes" to 0 and adding 8 to "blockMACRandBytes"....
Opensuse Leap 42.1
Opensuse Leap 42.2
Opensuse Opensuse 13.2
Encfs Project Encfs
9.8
CVSSv3
CVE-2015-8863
Off-by-one error in the tokenadd function in jv_parse.c in jq allows remote attackers to cause a denial of service (crash) via a long JSON-encoded number, which triggers a heap-based buffer overflow....
Opensuse Opensuse 13.2
Opensuse Leap 42.1
Jq Project Jq
2 Github repositories available
5.5
CVSSv3
CVE-2016-10069
coders/mat.c in ImageMagick before 6.9.4-5 allows remote attackers to cause a denial of service (application crash) via a mat file with an invalid number of frames....
Imagemagick Imagemagick
Opensuse Project Leap 42.1
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2022-21500
CVE-2022-29424
IDOR
CVE-2022-29216
CVE-2022-1388
encryption
buffer overflow
CVE-2021-30028
CVE-2022-29194
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
4
5
6
NEXT »