Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
client vulnerabilities and exploits
(subscribe to this query)
5.3
CVSSv3
CVE-2023-34038
VMware Horizon Server contains an information disclosure vulnerability. A malicious actor with network access may be able to access information relating to the internal network configuration.
Vmware Horizon Client 2212
Vmware Horizon Client 2006
Vmware Horizon Client 2012
Vmware Horizon Client 2103
Vmware Horizon Client 2106
Vmware Horizon Client 2111
Vmware Horizon Client 2111.1
Vmware Horizon Client 2203
1 Github repository
NA
CVE-2002-1107
Cisco Virtual Private Network (VPN) Client software 2.x.x, and 3.x prior to 3.5.2B, does not generate sufficiently random numbers, which may make it vulnerable to certain attacks such as spoofing.
Cisco Vpn Client 3.5.1c
Cisco Vpn Client 3.1
Cisco Vpn Client 3.5.1
Cisco Vpn Client 3.5.2
Cisco Vpn Client 3.0
Cisco Vpn Client 2.0
Cisco Vpn Client 3.0.5
NA
CVE-2015-6305
Untrusted search path vulnerability in the CMainThread::launchDownloader function in vpndownloader.exe in Cisco AnyConnect Secure Mobility Client 2.0 up to and including 4.1 on Windows allows local users to gain privileges via a Trojan horse DLL in the current working directory, ...
Cisco Anyconnect Secure Mobility Client 2.0.0343
Cisco Anyconnect Secure Mobility Client 2.1.0.148
Cisco Anyconnect Secure Mobility Client 2.2.0133
Cisco Anyconnect Secure Mobility Client 2.2.0136
Cisco Anyconnect Secure Mobility Client 2.2.0140
Cisco Anyconnect Secure Mobility Client 2.3.0185
Cisco Anyconnect Secure Mobility Client 2.3.0254
Cisco Anyconnect Secure Mobility Client 2.3.1003
Cisco Anyconnect Secure Mobility Client 2.3.2016
Cisco Anyconnect Secure Mobility Client 2.4.0202
Cisco Anyconnect Secure Mobility Client 2.4.1012
Cisco Anyconnect Secure Mobility Client 2.5.0217
Cisco Anyconnect Secure Mobility Client 2.5.2006
Cisco Anyconnect Secure Mobility Client 2.5.2010
Cisco Anyconnect Secure Mobility Client 2.5.2011
Cisco Anyconnect Secure Mobility Client 2.5.2014
Cisco Anyconnect Secure Mobility Client 2.5.2017
Cisco Anyconnect Secure Mobility Client 2.5.2018
Cisco Anyconnect Secure Mobility Client 2.5.2019
Cisco Anyconnect Secure Mobility Client 2.5.3041
Cisco Anyconnect Secure Mobility Client 2.5.3046
Cisco Anyconnect Secure Mobility Client 2.5.3051
1 EDB exploit
1 Github repository
8.4
CVSSv3
CVE-2023-45159
1E Client installer can perform arbitrary file deletion on protected files. A non-privileged user could provide a symbolic link or Windows junction to point to a protected directory in the installer that the 1E Client would then clear on service startup. A hotfix is available fro...
1e Client 8.1.2.62
1e Client 8.4.1.159
1e Client 9.0.1.88
1e Client 23.7.1.151
8.8
CVSSv3
CVE-2023-45160
In the affected version of the 1E Client, an ordinary user could subvert downloaded instruction resource files, e.g., to substitute a harmful script. by replacing a resource script file created by an instruction at run time with a malicious script. The 1E Client's temporary...
1e Client 8.1.2.62
1e Client 8.4.1.159
1e Client 9.0.1.88
1e Client 23.7.1.151
NA
CVE-2002-1108
Cisco Virtual Private Network (VPN) Client software 2.x.x, and 3.x prior to 3.6(Rel), when configured with all tunnel mode, can be forced into acknowledging a TCP packet from outside the tunnel.
Cisco Vpn Client 3.5.1c
Cisco Vpn Client 3.1
Cisco Vpn Client 3.5.1
Cisco Vpn Client 3.0
Cisco Vpn Client 2.0
Cisco Vpn Client 3.0.5
9.8
CVSSv3
CVE-2023-41137
Symmetric encryption used to protect messages between the AppsAnywhere server and client can be broken by reverse engineering the client and used to impersonate the AppsAnywhere server.
Appsanywhere Appsanywhere Client 1.4.1
Appsanywhere Appsanywhere Client 1.5.1
Appsanywhere Appsanywhere Client 1.6.0
Appsanywhere Appsanywhere Client 2.0.0
Appsanywhere Appsanywhere Client 1.4.0
Appsanywhere Appsanywhere Client 1.5.2
6.7
CVSSv3
CVE-2023-41138
The AppsAnywhere macOS client-privileged helper can be tricked into executing arbitrary commands with elevated permissions by a local user process.
Appsanywhere Appsanywhere Client 1.4.1
Appsanywhere Appsanywhere Client 1.5.1
Appsanywhere Appsanywhere Client 1.5.2
Appsanywhere Appsanywhere Client 1.6.0
Appsanywhere Appsanywhere Client 2.0.0
Appsanywhere Appsanywhere Client 1.4.0
6.5
CVSSv3
CVE-2022-23507
Tendermint is a high-performance blockchain consensus engine for Byzantine fault tolerant applications. Versions before 0.28.0 contain a potential attack via Improper Verification of Cryptographic Signature, affecting anyone using the tendermint-light-client and related packages ...
Tendermint-light-client-js Project Tendermint-light-client-js
Tendermint-light-client Project Tendermint-light-client
Tendermint-light-client-verifier Project Tendermint-light-client-verifier
6.1
CVSSv3
CVE-2014-10398
Multiple cross-site scripting (XSS) vulnerabilities in bsi.dll in Bank Soft Systems (BSS) RBS BS-Client. Private Client (aka RBS BS-Client. Retail Client) 2.5, 2.4, and previous versions allow remote malicious users to inject arbitrary web script or HTML via the (1) DICTIONARY, (...
Bssys Rbs Bs-client. Retail Client 2.5
Bssys Rbs Bs-client. Retail Client
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-5841
file upload
man-in-the-middle
arbitrary
CVE-2024-27801
CVE-2024-28020
CVE-2024-30080
CVE-2024-30069
CVE-2024-5843
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
NEXT »