Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
manuel garcia cardenas vulnerabilities and exploits
(subscribe to this query)
6.1
CVSSv3
CVE-2018-8831
A Persistent XSS vulnerability exists in Kodi (formerly XBMC) up to and including 17.6 that allows the execution of arbitrary HTML/script code in the context of the victim user's browser via a playlist.
Kodi Kodi
1 EDB exploit
9.8
CVSSv3
CVE-2018-7474
An issue exists in Textpattern CMS 4.6.2 and previous versions. It is possible to inject SQL code in the variable "qty" on the page index.php.
Textpattern Textpattern
1 EDB exploit
7.5
CVSSv3
CVE-2017-17088
The Enterprise version of SyncBreeze 10.2.12 and previous versions is affected by a Remote Denial of Service vulnerability. The web server does not check bounds when reading server requests in the Host header on making a connection, resulting in a classic Buffer Overflow that cau...
Flexense Syncbreeze
1 EDB exploit
9.8
CVSSv3
CVE-2017-14125
SQL injection vulnerability in the Responsive Image Gallery plugin prior to 1.2.1 for WordPress allows remote malicious users to execute arbitrary SQL commands via the "id" parameter in an add_edit_theme task in the wpdevart_gallery_themes page to wp-admin/admin.php.
Wpdevart Responsive Image Gallery Gallery Album
9.8
CVSSv3
CVE-2016-7400
Multiple SQL injection vulnerabilities in Exponent CMS prior to 2.4.0 allow remote malicious users to execute arbitrary SQL commands via the (1) id parameter in an activate_address address controller action, (2) title parameter in a show blog controller action, or (3) content_id ...
Exponentcms Exponent Cms
1 EDB exploit
NA
CVE-2013-2586
XAMPP 1.8.1 does not properly restrict access to xampp/lang.php, which allows remote malicious users to modify xampp/lang.tmp and execute cross-site scripting (XSS) attacks via the WriteIntoLocalDisk method.
Apachefriends Xampp 1.8.1
1 EDB exploit
NA
CVE-2013-2652
CRLF injection vulnerability in help/help_language.php in WebCollab 3.30 and previous versions allows remote malicious users to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via the item parameter.
Andrew Simpson Webcollab 3.21
Andrew Simpson Webcollab 3.20
Andrew Simpson Webcollab
Andrew Simpson Webcollab 2.60
Andrew Simpson Webcollab 2.50
Andrew Simpson Webcollab 2.01
Andrew Simpson Webcollab 2.00
Andrew Simpson Webcollab 1.62
Andrew Simpson Webcollab 1.61
Andrew Simpson Webcollab 1.32
Andrew Simpson Webcollab 1.31
Andrew Simpson Webcollab 3.10
Andrew Simpson Webcollab 3.00
Andrew Simpson Webcollab 2.30
Andrew Simpson Webcollab 2.20
Andrew Simpson Webcollab 1.71a
Andrew Simpson Webcollab 1.71
Andrew Simpson Webcollab 1.51
Andrew Simpson Webcollab 1.50
Andrew Simpson Webcollab 1.42
Andrew Simpson Webcollab 2.40
Andrew Simpson Webcollab 2.31
NA
CVE-2013-2651
Multiple cross-site scripting (XSS) vulnerabilities in BoltWire 3.5 and previous versions allow remote malicious users to inject arbitrary web script or HTML via the (1) "p" or (2) content parameter to index.php.
Boltwire Boltwire 3.06
Boltwire Boltwire 3.07
Boltwire Boltwire 3.14
Boltwire Boltwire 3.15
Boltwire Boltwire 3.2.3
Boltwire Boltwire 3.2.4
Boltwire Boltwire 3.3
Boltwire Boltwire 3.3.1
Boltwire Boltwire 3.3.8
Boltwire Boltwire 3.3.9
Boltwire Boltwire 3.4.6
Boltwire Boltwire 3.4.7
Boltwire Boltwire 3.4.8
Boltwire Boltwire 3.4.15
Boltwire Boltwire 3.4.16
Boltwire Boltwire 3.04
Boltwire Boltwire 3.05
Boltwire Boltwire 3.12
Boltwire Boltwire 3.13
Boltwire Boltwire 3.2.1
Boltwire Boltwire 3.2.2
Boltwire Boltwire 3.2.10
NA
CVE-2013-3831
Unspecified vulnerability in the Oracle Portal component in Oracle Fusion Middleware 11.1.1.6.0 allows remote authenticated users to affect confidentiality and integrity via unknown vectors related to Demos.
Oracle Fusion Middleware 11.1.1.6.0
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
SSTI
CVE-2024-35863
CVE-2024-35910
man-in-the-middle
CVE-2024-35912
CVE-2024-25742
LFI
CVE-2024-32002
CVE-2024-22120
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2