Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
dnx vulnerabilities and exploits
(subscribe to this query)
7.5
CVSSv3
CVE-2023-20191
A vulnerability in the access control list (ACL) processing on MPLS interfaces in the ingress direction of Cisco IOS XR Software could allow an unauthenticated, remote malicious user to bypass a configured ACL. This vulnerability is due to incomplete support for this feature. An ...
Cisco Ios Xr 7.10
Cisco Ios Xr
NA
CVE-2007-5175
PHP remote file inclusion vulnerability lib/base.php in actSite 1.991 Beta allows remote malicious users to execute arbitrary PHP code via a URL in the BaseCfg[BaseDir] parameter.
Actsite Actsite 1.991 Beta
1 EDB exploit
NA
CVE-2007-4606
PHP remote file inclusion vulnerability in convert/mvcw_conver.php in the Virtual War (VWar) module for PHPNuke-Clan (PNC) 4.2.0 and previous versions allows remote malicious users to execute arbitrary PHP code via a URL in the vwar_root parameter, a different vector than CVE-200...
Phpnuke-clan Phpnuke-clan
1 EDB exploit
NA
CVE-2008-3131
SQL injection vulnerability in chatbox.php in pSys 0.7.0 Alpha, when magic_quotes_gpc is disabled, allows remote malicious users to execute arbitrary SQL commands via the showid parameter.
Powie Psys 0.7.0
1 EDB exploit
NA
CVE-2008-3241
SQL injection vulnerability in players-detail.php in UltraStats 0.2.136, 0.2.140, and 0.2.142 allows remote malicious users to execute arbitrary SQL commands via the id parameter.
Ultrastats Ultrastats 0.2.140
Ultrastats Ultrastats 0.2.142
Ultrastats Ultrastats 0.2.136
1 EDB exploit
NA
CVE-2007-1393
PHP remote file inclusion vulnerability in mysave.php in Magic CMS 4.2.747 allows remote malicious users to execute arbitrary PHP code via a URL in the file parameter.
Geo Soft Magic Cms 4.2.747
1 EDB exploit
NA
CVE-2007-4605
PHP remote file inclusion vulnerability in convert/mvcw.php in Virtual War (VWar) 1.5.0 R15 and previous versions allows remote malicious users to execute arbitrary PHP code via a URL in the vwar_root parameter, a different vector than CVE-2006-1503, CVE-2006-1636, and CVE-2006-1...
Vwar Virtual War
1 EDB exploit
NA
CVE-2008-2483
Directory traversal vulnerability in index.php in Xomol CMS 1.20071213 allows remote malicious users to include and execute arbitrary local files via a .. (dot dot) in the op parameter.
Xomol Xomol Cms 1.20071213
1 EDB exploit
NA
CVE-2007-1163
SQL injection vulnerability in printview.php in webSPELL 4.01.02 and previous versions allows remote malicious users to execute arbitrary SQL commands via the topic parameter, a different vector than CVE-2007-1019, CVE-2006-5388, and CVE-2006-4783.
Webspell Webspell 4.0
Webspell Webspell 4.01.00
Webspell Webspell
Webspell Webspell 4.01.01
1 EDB exploit
NA
CVE-2007-2425
Directory traversal vulnerability in fileview.php in Imageview 5.3 allows remote malicious users to read arbitrary files via a .. (dot dot) in the album parameter.
Blackdot Imageview 5.3
1 EDB exploit
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
buffer overflow
type confusion
server-side request forgery
CVE-2024-38440
CVE-2024-27801
CVE-2024-5868
CVE-2024-0582
CVE-2024-37643
CVE-2024-3105
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
NEXT »