Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
silver vulnerabilities and exploits
(subscribe to this query)
6.5
CVSSv2
CVE-2020-12147
In Silver Peak Unity Orchestrator versions before 8.9.11+, 8.10.11+, or 9.0.1+, an authenticated user can make unauthorized MySQL queries against the Orchestrator database using the /sqlExecution REST API, which had been used for internal testing.
Silver-peak Unity Orchestrator
7.5
CVSSv2
CVE-2005-2478
SQL injection vulnerability in SilverNews 2.0.3 allows remote malicious users to execute arbitrary SQL commands via the user field on the login page in the Admin control panel.
Silver-scripts Silvernews 2.0.3
6.5
CVSSv2
CVE-2013-3315
The server in TIBCO Silver Mobile 1.1.0 does not properly verify access to the administrator role before executing a command, which allows authenticated users to gain privileges via unspecified vectors.
Tibco Silver Mobile 1.1.0
5
CVSSv2
CVE-2019-16100
Silver Peak EdgeConnect SD-WAN prior to 8.1.7.x allows remote malicious users to trigger a web-interface outage via slow client-side HTTP traffic from a single source.
Silver-peak Unity Edgeconnect Sd-wan Firmware 8.1.4.9 65644
5
CVSSv2
CVE-2019-16101
Silver Peak EdgeConnect SD-WAN prior to 8.1.7.x allows remote malicious users to obtain potentially sensitive stack traces by sending incorrect JSON data to the REST API, such as the rest/json/banners URI.
Silver-peak Unity Edgeconnect Sd-wan Firmware 8.1.4.9 65644
7.5
CVSSv2
CVE-2019-16102
Silver Peak EdgeConnect SD-WAN prior to 8.1.7.x has an SNMP service with a public value for rocommunity and trapcommunity.
Silver-peak Unity Edgeconnect Sd-wan Firmware 8.1.4.9 65644
9
CVSSv2
CVE-2019-16103
Silver Peak EdgeConnect SD-WAN prior to 8.1.7.x allows privilege escalation (by administrators) from the menu to a root Bash OS shell via the spsshell feature.
Silver-peak Unity Edgeconnect Sd-wan Firmware 8.1.4.9 65644
4.3
CVSSv2
CVE-2019-16104
Silver Peak EdgeConnect SD-WAN prior to 8.1.7.x has reflected XSS via the rest/json/configdb/download/ PATH_INFO.
Silver-peak Unity Edgeconnect Sd-wan Firmware 8.1.4.9 65644
4
CVSSv2
CVE-2019-16105
Silver Peak EdgeConnect SD-WAN prior to 8.1.7.x allows ..%2f directory traversal via a rest/json/configdb/download/ URI.
Silver-peak Unity Edgeconnect Sd-wan Firmware 8.1.4.9 65644
6.8
CVSSv2
CVE-2019-16099
Silver Peak EdgeConnect SD-WAN prior to 8.1.7.x allows CSRF via JSON data to a .swf file.
Silver-peak Unity Edgeconnect Sd-wan Firmware 8.1.4.9 65644
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
inject
CVE-2024-34001
CVE-2024-37018
LFI
CVE-2024-1275
CVE-2024-1086
CSRF
CVE-2024-31030
CVE-2024-24919
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
NEXT »