Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
nine:situations:group vulnerabilities and exploits
(subscribe to this query)
685
VMScore
CVE-2008-5749
Argument injection vulnerability in Google Chrome 1.0.154.36 on Windows XP SP3 allows remote malicious users to execute arbitrary commands via the --renderer-path option in a chromehtml: URI. NOTE: a third party disputes this issue, stating that Chrome "will ask for user per...
Google Chrome 1.0.154.36
1 EDB exploit
935
VMScore
CVE-2009-0811
Insecure method vulnerability in the SopCast SopCore ActiveX control in sopocx.ocx 3.0.3.501 allows remote malicious users to execute arbitrary programs via an executable file name in the argument to the SetExternalPlayer method.
Sopcast Sopcore Activex Control 3.0.3.501
1 EDB exploit
755
VMScore
CVE-2009-1039
Buffer overflow in CDex 1.70b2 allows remote malicious users to execute arbitrary code via a crafted Info header in an Ogg Vorbis (.ogg) file.
Cdexos Cdex 170b2
1 EDB exploit
755
VMScore
CVE-2009-1282
SQL injection vulnerability in private/system/lib-session.php in glFusion 1.1.2 and previous versions allows remote malicious users to execute arbitrary SQL commands via the glf_session cookie parameter.
Glfusion Glfusion 1.0.1
Glfusion Glfusion 1.0.0
Glfusion Glfusion 1.1.1
Glfusion Glfusion 1.1.0
Glfusion Glfusion
1 EDB exploit
935
VMScore
CVE-2009-4668
Stack-based buffer overflow in JetCast.exe 2.0.4.1109 in jetAudio 7.5.2 and 7.5.3.15 allows remote malicious users to execute arbitrary code via a long ID3 tag in an MP3 file. NOTE: some of these details are obtained from third party information.
Cowon America Jetaudio 7.5.2
Cowon America Jetaudio 7.5.3.15
1 EDB exploit
935
VMScore
CVE-2009-1087
Multiple argument injection vulnerabilities in PPLive.exe in PPLive 1.9.21 and previous versions allow remote malicious users to execute arbitrary code via a UNC share pathname in the LoadModule argument to the (1) synacast, (2) Play, (3) pplsv, or (4) ppvod URI handler. NOTE: so...
Pplive Pplive
Pplive Pplive 1.9.15
1 EDB exploit
935
VMScore
CVE-2009-1092
Use-after-free vulnerability in the LIVEAUDIO.LiveAudioCtrl.1 ActiveX control in LIVEAU~1.OCX 7.0 for GeoVision DVR systems allows remote malicious users to execute arbitrary code by calling the GetAudioPlayingTime method with certain arguments.
Geovision Liveaudio Activex Control 7.0
1 EDB exploit
685
VMScore
CVE-2009-1283
glFusion prior to 1.1.3 performs authentication with a user-provided password hash instead of a password, which allows remote malicious users to gain privileges by obtaining the hash and using it in the glf_password cookie, aka "User Masquerading." NOTE: this can be lev...
Glfusion Glfusion 1.1.0
Glfusion Glfusion 1.0.0
Glfusion Glfusion 1.0.1
Glfusion Glfusion 1.0.2
Glfusion Glfusion 1.1.1
Glfusion Glfusion
1 EDB exploit
885
VMScore
CVE-2009-0865
Directory traversal vulnerability in the SnapShotToFile method in the GeoVision LiveX (aka LiveX_v8200) ActiveX control 8.1.2 and 8.2.0 in LIVEX_~1.OCX allows remote malicious users to create or overwrite arbitrary files via a .. (dot dot) in the argument, possibly involving the ...
Geovision Livex Activex Control 8.1.2.0
Geovision Livex Activex Control 8.2.0.0
1 EDB exploit
755
VMScore
CVE-2009-1678
Directory traversal vulnerability in the saveFeed function in rss/feedcreator.class.php in Bitweaver 2.6 and previous versions allows remote malicious users to create or overwrite arbitrary files via a .. (dot dot) in the version parameter to boards/boards_rss.php.
Bitweaver Bitweaver 2.0.0
Bitweaver Bitweaver 1.3.1
Bitweaver Bitweaver 1.3
Bitweaver Bitweaver 1.2.1
Bitweaver Bitweaver
Bitweaver Bitweaver 1.1.1 Beta
Bitweaver Bitweaver 1.1
Bitweaver Bitweaver 2.5
Bitweaver Bitweaver 2.0.2
1 EDB exploit
VMScore
CVSSv2
CVSSv3
VMScore
Recommendations:
inject
CVE-2024-34001
CVE-2024-37018
LFI
CVE-2024-1275
CVE-2024-1086
CSRF
CVE-2024-31030
CVE-2024-24919
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
NEXT »