Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
storage project storage vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2024-25122
sidekiq-unique-jobs is an open source project which prevents simultaneous Sidekiq jobs with the same unique arguments to run. Specially crafted GET request parameters handled by any of the following endpoints of sidekiq-unique-jobs' "admin" web UI, allow a super-us...
5.9
CVSSv3
CVE-2023-48795
The SSH transport protocol with certain OpenSSH extensions, found in OpenSSH prior to 9.6 and other products, allows remote malicious users to bypass integrity checks such that some packets are omitted (from the extension negotiation message), and a client and server may conseque...
Openbsd Openssh
Putty Putty
Filezilla-project Filezilla Client
Microsoft Powershell
Panic Transmit 5
Panic Nova
Roumenpetrov Pkixssh
Winscp Winscp
Bitvise Ssh Client
Bitvise Ssh Server
Lancom-systems Lcos
Lancom-systems Lcos Fx -
Lancom-systems Lcos Lx -
Lancom-systems Lcos Sx 5.20
Lancom-systems Lcos Sx 4.20
Lancom-systems Lanconfig -
Vandyke Securecrt
Libssh Libssh
Net-ssh Net-ssh 7.2.0
Ssh2 Project Ssh2
Proftpd Proftpd
Freebsd Freebsd
8 Github repositories
1 Article
7.5
CVSSv3
CVE-2023-44487
The HTTP/2 protocol allows a denial of service (server resource consumption) because request cancellation can reset many streams quickly, as exploited in the wild in August through October 2023.
Ietf Http 2.0
Nghttp2 Nghttp2
Netty Netty
Envoyproxy Envoy 1.27.0
Envoyproxy Envoy 1.26.4
Envoyproxy Envoy 1.25.9
Envoyproxy Envoy 1.24.10
Eclipse Jetty
Caddyserver Caddy
Golang Http2
Golang Go
Golang Networking
F5 Big-ip Analytics
F5 Big-ip Policy Enforcement Manager
F5 Big-ip Local Traffic Manager
F5 Big-ip Link Controller
F5 Big-ip Global Traffic Manager
F5 Big-ip Fraud Protection Service
F5 Big-ip Domain Name System
F5 Big-ip Application Security Manager
F5 Big-ip Application Acceleration Manager
F5 Big-ip Advanced Firewall Manager
34 Github repositories
2 Articles
9.8
CVSSv3
CVE-2023-30247
File Upload vulnerability found in Oretnom23 Storage Unit Rental Management System v.1.0 allows a remote malicious user to execute arbitrary code via the update_settings parameter.
Storage Unit Rental Management System Project Storage Unit Rental Management System 1.0
5.4
CVSSv3
CVE-2023-27090
Cross Site Scripting vulnerability found in TeaCMS storage allows malicious user to cause a leak of sensitive information via the article title parameter.
Teacms Project Teacms 4.0
7.5
CVSSv3
CVE-2023-22687
Insecure Storage of Sensitive Information vulnerability in Jose Mortellaro Freesoul Deactivate Plugins – Plugin manager and cleanup plugin <= 1.9.4.0 versions.
Freesoul Deactivate Plugins - Plugin Manager And Cleanup Project Freesoul Deactivate Plugins - Plugin Manager And Cleanup
7.2
CVSSv3
CVE-2023-1559
A vulnerability classified as problematic was found in SourceCodester Storage Unit Rental Management System 1.0. This vulnerability affects unknown code of the file classes/Users.php?f=save. The manipulation leads to unrestricted upload. The attack can be initiated remotely. The ...
Storage Unit Rental Management System Project Storage Unit Rental Management System 1.0
7.5
CVSSv3
CVE-2023-0457
Plaintext Storage of a Password vulnerability in Mitsubishi Electric Corporation MELSEC iQ-F Series, MELSEC iQ-R Series, MELSEC-Q Series and MELSEC-L Series allows a remote unauthenticated malicious user to disclose plaintext credentials stored in project files and login into FTP...
Mitsubishielectric Fx5uc-32mr\\/ds-ts Firmware
Mitsubishielectric Fx5uc-32mt\\/d Firmware
Mitsubishielectric Fx5uc-32mt\\/dss Firmware
Mitsubishielectric Fx5uc-32mt\\/dss-ts Firmware
Mitsubishielectric Fx5uc-32mt\\/ds-ts Firmware
Mitsubishielectric Fx5uc-64mt\\/d Firmware
Mitsubishielectric Fx5uc-64mt\\/dss Firmware
Mitsubishielectric Fx5uc-96mt\\/d Firmware
Mitsubishielectric Fx5uc-96mt\\/dss Firmware
Mitsubishielectric Fx5uj-24mr\\/es Firmware
Mitsubishielectric Fx5uj-24mr\\/es-a Firmware
Mitsubishielectric Fx5uj-24mt\\/es Firmware
Mitsubishielectric Fx5uj-24mt\\/es-a Firmware
Mitsubishielectric Fx5uj-24mt\\/ess Firmware
Mitsubishielectric Fx5uj-40mr\\/es Firmware
Mitsubishielectric Fx5uj-40mr\\/es-a Firmware
Mitsubishielectric Fx5uj-40mt\\/es Firmware
Mitsubishielectric Fx5uj-40mt\\/es-a Firmware
Mitsubishielectric Fx5uj-40mt\\/ess Firmware
Mitsubishielectric Fx5uj-60mr\\/es Firmware
Mitsubishielectric Fx5uj-60mr\\/es-a Firmware
Mitsubishielectric Fx5uj-60mt\\/es Firmware
6.5
CVSSv3
CVE-2022-2815
Insecure Storage of Sensitive Information in GitHub repository publify/publify before 9.2.10.
Publify Project Publify
7.5
CVSSv3
CVE-2022-30122
A possible denial of service vulnerability exists in Rack <2.0.9.1, <2.1.4.1 and <2.2.3.1 in the multipart parsing component of Rack.
Rack Project Rack
Debian Debian Linux 11.0
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-22120
CVE-2024-35921
CVE-2024-35874
brute force
CVE-2024-36080
unprivileged
CVE-2024-35917
IDOR
CVE-2024-4947
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
4
5
6
NEXT »