Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
event list vulnerabilities and exploits
(subscribe to this query)
8.6
CVSSv3
CVE-2022-20714
A vulnerability in the data plane microcode of Lightspeed-Plus line cards for Cisco ASR 9000 Series Aggregation Services Routers could allow an unauthenticated, remote malicious user to cause the line card to reset. This vulnerability is due to the incorrect handling of malformed...
Cisco Ios Xr -
4.3
CVSSv3
CVE-2021-28579
Adobe Connect version 11.2.1 (and previous versions) is affected by an Improper access control vulnerability that can lead to the elevation of privileges. An attacker with 'Learner' permissions can leverage this scenario to access the list of event participants.
Adobe Connect
NA
CVE-2024-26808
In the Linux kernel, the following vulnerability has been resolved: netfilter: nft_chain_filter: handle NETDEV_UNREGISTER for inet/ingress basechain Remove netdevice from inet/ingress basechain in case NETDEV_UNREGISTER event is reported, otherwise a stale reference to netdevice ...
NA
CVE-2008-4320
Multiple cross-site scripting (XSS) vulnerabilities in OpenNMS prior to 1.5.94 allow remote malicious users to inject arbitrary web script or HTML via (1) the j_username parameter to j_acegi_security_check, (2) the username parameter to notification/list.jsp, and (3) the filter p...
Opennms.org Opennms 1.5.93
Opennms.org Opennms 1.5.92
Opennms.org Opennms 1.3.7
Opennms.org Opennms 1.3.6
Opennms.org Opennms 1.2.4
Opennms.org Opennms 1.2.3
Opennms.org Opennms 1.2.2
Opennms.org Opennms 1.1.1
Opennms.org Opennms
Opennms.org Opennms 1.3.11
Opennms.org Opennms 1.3.10
Opennms.org Opennms 1.3.3
Opennms.org Opennms 1.3.2
Opennms.org Opennms 1.1.5
Opennms.org Opennms 1.1.4
Opennms.org Opennms 1.3.9
Opennms.org Opennms 1.3.8
Opennms.org Opennms 1.3.1
Opennms.org Opennms 1.1.3
Opennms.org Opennms 1.1.2
Opennms.org Opennms 1.5.91
Opennms.org Opennms 1.3.5
3 EDB exploits
3.5
CVSSv3
CVE-2022-0474
Full list of recipients from customer users in a contact field could be disclosed in notification emails event when the notification is set to be sent to each recipient individually. This issue affects: OTRS AG OTRSCustomContactFields 8.0.x version: 8.0.11 and prior versions.
Otrs Custom Contact Fields
8.8
CVSSv3
CVE-2017-6753
A vulnerability in Cisco WebEx browser extensions for Google Chrome and Mozilla Firefox could allow an unauthenticated, remote malicious user to execute arbitrary code with the privileges of the affected browser on an affected system. This vulnerability affects the browser extens...
Cisco Webex Event Center T31 Base
Cisco Webex Meetings Server 2.8 Base
Cisco Webex Meetings Server 2.5 Mr5
Cisco Webex Meetings Server 2.6 Mr1
Cisco Webex Meetings Server 2.5 Mr6
Cisco Webex Meetings Server 2.6 Mr2
Cisco Webex Meetings Server 2.0 Mr9 Patch 2
Cisco Webex Meetings Server 2.0 Mr7
Cisco Webex Meetings Server 2.0 Mr9 Patch 3
Cisco Webex Event Center T30 Base
Cisco Webex Meetings Server 2.5 Mr2 Patch 1
Cisco Webex Training Center T30 Base
Cisco Webex Meetings Server 1.1 Base
Cisco Webex Meetings Server 2.5.99.2
Cisco Webex Meetings Server 2.6 Mr3 Patch 2
Cisco Webex Meetings Server 2.6 Mr1 Patch 1
Cisco Webex Meetings Server 2.7 Mr1 Patch 1
Cisco Webex Meetings Server 2.6.1.39
Cisco Webex Meetings Server 2.5.1.29
Cisco Webex Meetings Server 2.0 Base
Cisco Webex Meeting Center T32 Base
Cisco Webex Meetings Server 2.5 Mr5 Patch 1
1 Article
7.5
CVSSv3
CVE-2022-31152
Synapse is an open-source Matrix homeserver written and maintained by the Matrix.org Foundation. The Matrix specification specifies a list of [event authorization rules](https://spec.matrix.org/v1.2/rooms/v9/#authorization-rules) which must be checked when determining if an event...
Matrix Synapse
NA
CVE-2023-52811
In the Linux kernel, the following vulnerability has been resolved: scsi: ibmvfc: Remove BUG_ON in the case of an empty event pool In practice the driver should never send more commands than are allocated to a queue's event pool. In the unlikely event that this happens, the ...
NA
CVE-2014-0719
The control-plane access-list implementation in Cisco IPS Software prior to 7.1(8p2)E4 and 7.2 prior to 7.2(2)E4 allows remote malicious users to cause a denial of service (MainApp process outage) via crafted packets to TCP port 7000, aka Bug ID CSCui67394.
Cisco Ips Sensor Software 7.1\\(3\\)e4
Cisco Ips Sensor Software 7.1\\(6\\)e4
Cisco Ips Sensor Software 7.1\\(8\\)e4
Cisco Ips Sensor Software 7.2\\(1\\)e4
Cisco Ips Sensor Software
Cisco Ips Sensor Software 7.1\\(2\\)e4
Cisco Ips Sensor Software 7.1\\(4\\)e4
Cisco Ips Sensor Software 7.1\\(7\\)e4
NA
CVE-2024-1053
The Event Tickets and Registration plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the 'email' action in all versions up to, and including, 5.8.1. This makes it possible for authenticated attackers, with contributor...
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-33572
CVE-2024-24919
CVE-2024-0230
CVE-2024-32714
HTML injection
local file inclusion
CVE-2024-31098
CVE-2024-31244
privilege
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
8
NEXT »