Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
document server vulnerabilities and exploits
(subscribe to this query)
231
VMScore
CVE-2006-1787
Adobe Document Server for Reader Extensions 6.0 includes a user's session (jsession) ID in the HTTP Referer header, which allows remote malicious users to gain access to PDF files that are being processed within that session.
Adobe Document Server 6.0
668
VMScore
CVE-2020-11535
An issue exists in ONLYOFFICE Document Server 5.5.0. An attacker can craft a malicious .docx file, and exploit XML injection to enter an attacker-controlled parameter into the x2t binary, to rewrite this binary and/or libxcb.so.1, and execute code on a victim's server.
Onlyoffice Document Server 5.5.0
668
VMScore
CVE-2022-29777
Onlyoffice Document Server v6.0.0 and below and Core 6.1.0.26 and below were discovered to contain a heap overflow via the component DesktopEditor/fontengine/fontconverter/FontFileBase.h.
Onlyoffice Core
Onlyoffice Document Server
1 Github repository
668
VMScore
CVE-2022-29776
Onlyoffice Document Server v6.0.0 and below and Core 6.1.0.26 and below were discovered to contain a stack overflow via the component DesktopEditor/common/File.cpp.
Onlyoffice Core
Onlyoffice Document Server
1 Github repository
668
VMScore
CVE-2005-1936
Unknown vulnerability in the web server for the ESS/ Network Controller for Xerox Document Centre 240 through 555 running System Software 27.18.017 and previous versions allows malicious users to "gain unauthorized access."
Xerox Document Centre 255
Xerox Document Centre 265
Xerox Document Centre 432
Xerox Document Centre 440
Xerox Document Centre 555
Xerox Document Centre 220
Xerox Document Centre 420
Xerox Document Centre 425
Xerox Document Centre 480
Xerox Document Centre 490
Xerox Document Centre 230
Xerox Document Centre 240
Xerox Document Centre 426
Xerox Document Centre 430
Xerox Document Centre 535
Xerox Document Centre 545
Xerox Document Centre 332
Xerox Document Centre 340
Xerox Document Centre 460
Xerox Document Centre 470
570
VMScore
CVE-2005-2646
Unknown vulnerability in Xerox MicroServer Web Server in Document Centre 220 through 265, 332 and 340, 420 through 490, and 535 through 555 allows remote malicious users to cause a denial of service or read files via unknown vectors involving crafted HTTP requests.
Xerox Document Centre 230
Xerox Document Centre 255
Xerox Document Centre 425
Xerox Document Centre 430
Xerox Document Centre 535
Xerox Document Centre 555
Xerox Document Centre 440
Xerox Document Centre 460
Xerox Document Centre 470
Xerox Document Centre 480
Xerox Document Centre 265
Xerox Document Centre 332
Xerox Document Centre 340
Xerox Document Centre 420
Xerox Document Centre 220
Xerox Document Centre 240
Xerox Document Centre 426
Xerox Document Centre 432
Xerox Document Centre 490
Xerox Document Centre 545
668
VMScore
CVE-2019-5019
A heap-based overflow vulnerability exists in the PowerPoint document conversion function of Rainbow PDF Office Server Document Converter V7.0 Pro R1 (7,0,2018,1113). While parsing Document Summary Property Set stream, the getSummaryInformation function is incorrectly checking th...
Rainbowpdf Office Server Document Converter 7.0
668
VMScore
CVE-2005-2645
Unknown vulnerability in Xerox MicroServer Web Server in Document Centre 220 through 265, 332 and 340, 420 through 490, and 535 through 555 allows remote malicious users to bypass authentication.
Xerox Document Centre 265
Xerox Document Centre 340
Xerox Document Centre 420
Xerox Document Centre 490
Xerox Document Centre 535
Xerox Document Centre 555
Xerox Document Centre 332
383
VMScore
CVE-2005-2647
Cross-site scripting (XSS) vulnerability in Xerox MicroServer Web Server in Document Centre 220 through 265, 332 and 340, 420 through 490, and 535 through 555 allows remote malicious users to inject arbitrary web script or HTML and modify web pages via unknown vectors.
Xerox Document Centre 420
Xerox Document Centre 535
Xerox Document Centre 265
Xerox Document Centre 332
Xerox Document Centre 340
Xerox Document Centre 490
Xerox Document Centre 555
605
VMScore
CVE-2019-5030
A buffer overflow vulnerability exists in the PowerPoint document conversion function of Rainbow PDF Office Server Document Converter V7.0 Pro MR1 (7,0,2019,0220). While parsing a document text info container, the TxMasterStyleAtom::parse function is incorrectly checking the boun...
Antennahouse Rainbow Pdf Office Server Document Converter 7.0.2019.0220
VMScore
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-33228
CVE-2024-20361
log injection
bypass
CVE-2024-4985
CVE-2024-35223
CVE-2024-29849
CVE-2024-31893
IMAP
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
8
NEXT »