Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
file transfer appliance vulnerabilities and exploits
(subscribe to this query)
5
CVSSv2
CVE-2015-2856
Directory traversal vulnerability in the template function in function.inc in Accellion File Transfer Appliance devices before FTA_9_11_210 allows remote malicious users to read arbitrary files via a .. (dot dot) in the statecode cookie.
Accellion File Transfer Appliance
4.3
CVSSv2
CVE-2017-8304
An issue exists on Accellion FTA devices before FTA_9_12_180. courier/1000@/oauth/playground/callback.html allows XSS with a crafted URI.
Accellion File Transfer Appliance
7.5
CVSSv2
CVE-2015-2857
Accellion File Transfer Appliance before FTA_9_11_210 allows remote malicious users to execute arbitrary code via shell metacharacters in the oauth_token parameter.
Accellion File Transfer Appliance
1 EDB exploit
9
CVSSv2
CVE-2009-4646
Static code injection vulnerability in the administrative web interface in Accellion Secure File Transfer Appliance allows remote authenticated administrators to inject arbitrary shell commands by appending them to a request to update the SNMP public community string.
Accellion Secure File Transfer Appliance
7.5
CVSSv2
CVE-2019-5622
Accellion File Transfer Appliance version FTA_8_0_540 suffers from an instance of CWE-798: Use of Hard-coded Credentials.
Accellion File Transfer Appliance 8 0 540
7.5
CVSSv2
CVE-2019-5623
Accellion File Transfer Appliance version FTA_8_0_540 suffers from an instance of CWE-77: Improper Neutralization of Special Elements used in a Command ('Command Injection').
Accellion File Transfer Appliance 8 0 540
4.3
CVSSv2
CVE-2008-3850
Cross-site scripting (XSS) vulnerability in Accellion File Transfer FTA_7_0_135 allows remote malicious users to inject arbitrary web script or HTML via the PATH_INFO to courier/forgot_password.html.
Accellion Secure File Transfer Appliance 7 0 135
1 EDB exploit
4.3
CVSSv2
CVE-2016-6416
The FTP service in Cisco AsyncOS on Email Security Appliance (ESA) devices 9.6.0-000 up to and including 9.9.6-026, Web Security Appliance (WSA) devices 9.0.0-162 up to and including 9.5.0-444, and Content Security Management Appliance (SMA) devices allows remote malicious users ...
Cisco Content Security Management Appliance 9.1.0-033
Cisco Email Security Appliance 9.9 Base
Cisco Web Security Appliance 9.5.0-235
Cisco Web Security Appliance 9.5.0-284
Cisco Email Security Appliance 9.6.0-051
Cisco Email Security Appliance 9.7.1-066
Cisco Content Security Management Appliance 9.1.0-031
Cisco Email Security Appliance 9.9.6-026
Cisco Content Security Management Appliance 9.1.0-103
Cisco Content Security Management Appliance 9.6.0
Cisco Web Security Appliance 9.5 Base
Cisco Content Security Management Appliance 9.1.0-004
Cisco Content Security Management Appliance 9.1.0
Cisco Web Security Appliance 9.5.0-444
Cisco Web Security Appliance 9.1.0-000
Cisco Web Security Appliance 9.1.0-070
Cisco Web Security Appliance 9.0.0-162
Cisco Content Security Management Appliance 9.5.0
Cisco Email Security Appliance 9.6.0-000
Cisco Web Security Appliance 9.1 Base
Cisco Email Security Appliance 9.6.0-042
5
CVSSv2
CVE-2016-1440
The proxy process on Cisco Web Security Appliance (WSA) devices up to and including 9.1.0-070 allows remote malicious users to cause a denial of service (CPU consumption) by establishing an FTP session and then improperly terminating the control connection after a file transfer, ...
Cisco Web Security Appliance 8.8.0-000
Cisco Web Security Appliance 9.1.0-070
Cisco Web Security Appliance 6.0.0-000
Cisco Web Security Appliance 5.6.0-623
Cisco Web Security Appliance 8.0.6-119
Cisco Web Security Appliance 9.0.0-193
Cisco Web Security Appliance 9.0 Base
Cisco Web Security Appliance 7.5.1-000
Cisco Web Security Appliance 7.1.4
Cisco Web Security Appliance 9.1.0-000
Cisco Web Security Appliance 8.5.3-055
Cisco Web Security Appliance 8.5.2-024
Cisco Web Security Appliance 8.0.7-142
Cisco Web Security Appliance 8.5.0-497
Cisco Web Security Appliance 8.5.0.000
Cisco Web Security Appliance 7.1.3
Cisco Web Security Appliance 7.1.2
Cisco Web Security Appliance 7.7.5-835
Cisco Web Security Appliance 7.7.0-608
Cisco Web Security Appliance 8.5.1-021
Cisco Web Security Appliance 7.7.1-000
Cisco Web Security Appliance 8.0.8-mr-113
5
CVSSv2
CVE-2018-1000180
Bouncy Castle BC 1.54 - 1.59, BC-FJA 1.0.0, BC-FJA 1.0.1 and previous versions have a flaw in the Low-level interface to RSA key pair generator, specifically RSA Key Pairs generated in low-level API with added certainty may have less M-R tests than expected. This appears to be fi...
Bouncycastle Fips Java Api
Bouncycastle Legion-of-the-bouncy-castle-java-crytography-api
Debian Debian Linux 9.0
Oracle Retail Xstore Point Of Service 7.1
Oracle Api Gateway 11.1.2.4.0
Oracle Weblogic Server 12.1.3.0.0
Oracle Enterprise Repository 12.1.3.0.0
Oracle Retail Xstore Point Of Service 7.0
Oracle Peoplesoft Enterprise Peopletools 8.55
Oracle Peoplesoft Enterprise Peopletools 8.56
Oracle Webcenter Portal 12.2.1.3.0
Oracle Webcenter Portal 11.1.1.9.0
Oracle Business Process Management Suite 12.1.3.0.0
Oracle Business Process Management Suite 12.2.1.3.0
Oracle Business Process Management Suite 11.1.1.9.0
Oracle Soa Suite 12.1.3.0.0
Oracle Soa Suite 12.2.1.3.0
Oracle Peoplesoft Enterprise Peopletools 8.57
Oracle Managed File Transfer 12.2.1.3.0
Oracle Communications Converged Application Server
Oracle Communications Webrtc Session Controller
Oracle Retail Convenience And Fuel Pos Software 2.8.1
1 Github repository
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2006-4304
CVE-2024-4240
arbitrary
CVE-2024-31601
XSS
CVE-2023-20198
CVE-2024-4256
CVE-2024-3342
encryption
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
NEXT »