Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
document server vulnerabilities and exploits
(subscribe to this query)
2.1
CVSSv2
CVE-2017-0175
The Windows kernel in Windows Server 2008 SP2 and R2 SP1, and Windows 7 SP1 allows authenticated malicious users to obtain sensitive information via a specially crafted document, aka "Windows Kernel Information Disclosure Vulnerability," a different vulnerability than C...
Microsoft Windows 7
Microsoft Windows Server 2008 -
Microsoft Windows Server 2008 R2
1 EDB exploit
6.8
CVSSv2
CVE-2011-0202
Integer overflow in CoreGraphics in Apple Mac OS X prior to 10.6.8 allows remote malicious users to execute arbitrary code or cause a denial of service (application crash) via a crafted embedded Type 1 font in a PDF document.
Apple Mac Os X 10.6.1
Apple Mac Os X 10.6.6
Apple Mac Os X 10.6.7
Apple Mac Os X 10.6.3
Apple Mac Os X 10.5.8
Apple Mac Os X 10.6.2
Apple Mac Os X 10.6.5
Apple Mac Os X 10.6.0
Apple Mac Os X 10.6.4
Apple Mac Os X Server 10.6.5
Apple Mac Os X Server 10.6.1
Apple Mac Os X Server 10.6.6
Apple Mac Os X Server 10.6.7
Apple Mac Os X Server 10.6.3
Apple Mac Os X Server 10.6.0
Apple Mac Os X Server 10.6.2
Apple Mac Os X Server 10.6.4
Apple Mac Os X Server 10.5.8
9.3
CVSSv2
CVE-2011-3402
Unspecified vulnerability in the TrueType font parsing engine in win32k.sys in the kernel-mode drivers in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2, R2, and R2 SP1, and Windows 7 Gold and SP1 allows remote malicious user...
Microsoft Windows Server 2008
Microsoft Windows Xp
Microsoft Windows 7 -
Microsoft Windows Server 2008 -
Microsoft Windows Server 2003
Microsoft Windows Vista
10 Articles
5
CVSSv2
CVE-2017-18901
An issue exists in Mattermost Server prior to 4.1.0, 4.0.4, and 3.10.3. It allows malicious users to discover a team invite ID by requesting a JSON document.
Mattermost Mattermost Server
9.3
CVSSv2
CVE-2014-4077
Microsoft Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, and Office 2007 SP3, when IMJPDCT.EXE (aka IME for Japanese) is installed, allow remote malicious users to bypass a sandbox protection mechanism via a crafted PDF document, ak...
Microsoft Windows Vista
Microsoft Windows Server 2008
Microsoft Windows Server 2003
Microsoft Windows Server 2008 R2
Microsoft Office 2007
Microsoft Windows 7
6.8
CVSSv2
CVE-2011-0208
QuickLook in Apple Mac OS X 10.6 prior to 10.6.8 allows remote malicious users to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted Microsoft Office document.
Apple Mac Os X 10.6.3
Apple Mac Os X 10.6.0
Apple Mac Os X 10.6.4
Apple Mac Os X 10.6.2
Apple Mac Os X 10.6.6
Apple Mac Os X 10.6.7
Apple Mac Os X 10.6.5
Apple Mac Os X 10.6.1
Apple Mac Os X Server 10.6.4
Apple Mac Os X Server 10.6.2
Apple Mac Os X Server 10.6.3
Apple Mac Os X Server 10.6.1
Apple Mac Os X Server 10.6.6
Apple Mac Os X Server 10.6.7
Apple Mac Os X Server 10.6.0
Apple Mac Os X Server 10.6.5
NA
CVE-2021-43445
ONLYOFFICE all versions as of 2021-11-08 is affected by Incorrect Access Control. An attacker can authenticate with the web socket service of the ONLYOFFICE document editor which is protected by JWT auth by using a default JWT signing key.
Onlyoffice Server
6.8
CVSSv2
CVE-2010-1832
Stack-based buffer overflow in Apple Type Services (ATS) in Apple Mac OS X 10.5.8 and 10.6.x prior to 10.6.5 allows remote malicious users to execute arbitrary code via a crafted embedded font in a document.
Apple Mac Os X 10.6.2
Apple Mac Os X 10.6.1
Apple Mac Os X 10.6.3
Apple Mac Os X 10.6.0
Apple Mac Os X 10.6.4
Apple Mac Os X 10.5.8
Apple Mac Os X Server 10.6.1
Apple Mac Os X Server 10.5.8
Apple Mac Os X Server 10.6.2
Apple Mac Os X Server 10.6.4
Apple Mac Os X Server 10.6.3
Apple Mac Os X Server 10.6.0
6.8
CVSSv2
CVE-2010-1837
CoreText in Apple Mac OS X 10.5.8 and 10.6.x prior to 10.6.5 allows remote malicious users to execute arbitrary code or cause a denial of service (memory corruption) via a crafted font in a PDF document.
Apple Mac Os X 10.6.2
Apple Mac Os X 10.6.1
Apple Mac Os X 10.5.8
Apple Mac Os X 10.6.0
Apple Mac Os X 10.6.4
Apple Mac Os X 10.6.3
Apple Mac Os X Server 10.6.1
Apple Mac Os X Server 10.5.8
Apple Mac Os X Server 10.6.3
Apple Mac Os X Server 10.6.0
Apple Mac Os X Server 10.6.2
Apple Mac Os X Server 10.6.4
9.3
CVSSv2
CVE-2020-1339
A remote code execution vulnerability exists when Windows Media Audio Codec improperly handles objects. An attacker who successfully exploited the vulnerability could take control of an affected system. There are multiple ways an attacker could exploit the vulnerability, such as ...
Microsoft Windows Server 2008 R2
Microsoft Windows Server 2012 R2
Microsoft Windows 10 1607
Microsoft Windows 8.1 -
Microsoft Windows Server 2016 -
Microsoft Windows Server 2008 -
Microsoft Windows 7 -
Microsoft Windows Rt 8.1 -
Microsoft Windows Server 2012 -
Microsoft Windows 10 -
Microsoft Windows 10 1709
Microsoft Windows 10 1803
Microsoft Windows Server 2019 -
Microsoft Windows 10 1809
Microsoft Windows Server 2016 1903
Microsoft Windows 10 1903
Microsoft Windows Server 2016 1909
Microsoft Windows 10 1909
Microsoft Windows 10 2004
Microsoft Windows Server 2016 2004
1 Article
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2023-21991
CVE-2024-32674
path traversal
CVE-2023-21987
denial of service
dos
CVE-2024-4647
CVE-2024-25519
CVE-2024-33612
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
5
6
7
8
9
10
NEXT »