Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
shai rod vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2006-0469
Cross-site scripting (XSS) vulnerability in UebiMiau 2.7.9, and possibly earlier versions, allows remote malicious users to inject arbitrary web script or HTML via a javascript: URI in the SRC attribute of an IMG tag.
Uebimiau Uebimiau 2.7.9
1 EDB exploit
6.5
CVSSv3
CVE-2012-4385
letodms 3.3.6 has CSRF via change password
Trilexnet Letodms 3.3.6
Debian Debian Linux 8.0
1 EDB exploit
NA
CVE-2012-4668
Cross-site scripting (XSS) vulnerability in Roundcube Webmail 0.8.1 and previous versions allows remote malicious users to inject arbitrary web script or HTML via the signature in an email.
Roundcube Webmail 0.8.0
Roundcube Webmail 0.7.2
Roundcube Webmail 0.5.2
Roundcube Webmail 0.5
Roundcube Webmail 0.5.1
Roundcube Webmail 0.4.2
Roundcube Webmail 0.3
Roundcube Webmail 0.2
Roundcube Webmail 0.1.1
Roundcube Webmail 0.1
Roundcube Webmail 0.4.1
Roundcube Webmail 0.4
Roundcube Webmail 0.7.1
Roundcube Webmail 0.7
Roundcube Webmail 0.6
Roundcube Webmail 0.5.4
Roundcube Webmail 0.2.2
Roundcube Webmail
Roundcube Webmail 0.7.3
Roundcube Webmail 0.5.3
Roundcube Webmail 0.3.1
Roundcube Webmail 0.2.1
1 EDB exploit
6.1
CVSSv3
CVE-2012-4384
letodms has multiple XSS issues: Reflected XSS in Login Page, Stored XSS in Document Owner/User name, Stored XSS in Calendar
Trilexnet Letodms
Debian Debian Linux 8.0
1 EDB exploit
NA
CVE-2012-3508
Cross-site scripting (XSS) vulnerability in program/lib/washtml.php in Roundcube Webmail 0.8.0 allows remote malicious users to inject arbitrary web script or HTML by using "javascript:" in an href attribute in the body of an HTML-formatted email.
Roundcube Webmail 0.8.0
1 EDB exploit
NA
CVE-2012-2573
Multiple cross-site scripting (XSS) vulnerabilities in T-dah WebMail 3.2.0-2.3 allow remote malicious users to inject arbitrary web script or HTML via an e-mail message body with (1) a SCRIPT element, (2) a crafted Cascading Style Sheets (CSS) expression property, (3) a CSS expre...
Tdah T-day Webmail 3.2.0-2.3
2 EDB exploits
9.8
CVSSv3
CVE-2020-35476
A remote code execution vulnerability occurs in OpenTSDB up to and including 2.4.0 via command injection in the yrange parameter. The yrange value is written to a gnuplot file in the /tmp directory. This file is then executed via the mygnuplot.sh shell script. (tsd/GraphHandler.j...
Opentsdb Opentsdb
1 Metasploit module
2 Github repositories
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
HTML injection
CVE-2024-35894
SQL
CVE-2024-5105
CVE-2014-100005
CVE-2024-35895
unauthorized
CVE-2024-22120
CVE-2024-35890
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started