Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
trustwave.com vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2010-4232
The web-based administration interface on the Camtron CMNC-200 Full HD IP Camera and TecVoz CMNC-200 Megapixel IP Camera with firmware 1.102A-008 allows remote malicious users to bypass authentication via a // (slash slash) at the beginning of a URI, as demonstrated by the //syst...
Camtron Cmnc-200 Firmware 1.102a-008
Camtron Cmnc-200
Tecvoz Cmnc-200 Firmware 1.102a-008
Tecvoz Cmnc-200
1 EDB exploit
NA
CVE-2010-4234
The web server on the Camtron CMNC-200 Full HD IP Camera and TecVoz CMNC-200 Megapixel IP Camera with firmware 1.102A-008 allows remote malicious users to cause a denial of service (device reboot) via a large number of requests in a short time interval.
Camtron Cmnc-200 Firmware 1.102a-008
Camtron Cmnc-200
Tecvoz Cmnc-200 Firmware 1.102a-008
Tecvoz Cmnc-200
1 EDB exploit
8.1
CVSSv3
CVE-2013-4859
INSTEON Hub 2242-222 lacks Web and API authentication
Insteon Hub Firmware 2242-222
1 EDB exploit
NA
CVE-2011-4898
wp-admin/setup-config.php in the installation component in WordPress 3.3.1 and previous versions generates different error messages for requests lacking a dbname parameter depending on whether the MySQL credentials are valid, which makes it easier for remote malicious users to co...
Wordpress Wordpress 3.0.5
Wordpress Wordpress 2.0.11
Wordpress Wordpress 2.8.6
Wordpress Wordpress 2.0
Wordpress Wordpress 2.1.1
Wordpress Wordpress 2.2.3
Wordpress Wordpress 2.0.2
Wordpress Wordpress 2.1
Wordpress Wordpress 2.0.6
Wordpress Wordpress 2.0.1
Wordpress Wordpress 2.8.4
Wordpress Wordpress 2.0.4
Wordpress Wordpress 3.0.2
Wordpress Wordpress 3.2.1
Wordpress Wordpress 0.711
Wordpress Wordpress 3.1.4
Wordpress Wordpress 2.2
Wordpress Wordpress 1.2.1
Wordpress Wordpress 0.7
Wordpress Wordpress 2.1.3
Wordpress Wordpress 3.0
Wordpress Wordpress 2.8
1 EDB exploit
NA
CVE-2013-7246
Buffer overflow in the IconCreate method in an ActiveX control in the DaumGame ActiveX plugin 1.1.0.4 and 1.1.0.5 allows remote malicious users to execute arbitrary code via a long string, as exploited in the wild in January 2014.
Daum Communications Daumgame Activex Control 1.1.0.5
Daum Communications Daumgame Activex Control 1.1.0.4
1 EDB exploit
NA
CVE-2013-4884
Cross-site scripting (XSS) vulnerability in McAfee SuperScan 4.0 allows remote malicious users to inject arbitrary web script or HTML via UTF-7 encoded sequences in a server response, which is not properly handled in the SuperScan HTML report.
Mcafee Superscan 4.0
1 EDB exploit
NA
CVE-2013-5688
Multiple directory traversal vulnerabilities in index.php in AjaXplorer 5.0.2 and previous versions allow remote authenticated users to read arbitrary files via a ../%00 (dot dot backslash encoded null byte) in the file parameter in a (1) download or (2) get_content action, or (3...
Ajaxplorer Ajaxplorer 4.0.4
Ajaxplorer Ajaxplorer 3.2
Ajaxplorer Ajaxplorer 3.1.1
Ajaxplorer Ajaxplorer 3.1
Ajaxplorer Ajaxplorer 3.0.3
Ajaxplorer Ajaxplorer 5.0.1
Ajaxplorer Ajaxplorer 5.0.0
Ajaxplorer Ajaxplorer 4.2.3
Ajaxplorer Ajaxplorer 4.2.2
Ajaxplorer Ajaxplorer 3.3.4
Ajaxplorer Ajaxplorer 3.3.3
Ajaxplorer Ajaxplorer 3.3.2
Ajaxplorer Ajaxplorer 3.2.5
Ajaxplorer Ajaxplorer 2.7.2
Ajaxplorer Ajaxplorer 2.7.1
Ajaxplorer Ajaxplorer 2.6.0
Ajaxplorer Ajaxplorer 2.5.5
Ajaxplorer Ajaxplorer 4.0.3
Ajaxplorer Ajaxplorer 4.0.1
Ajaxplorer Ajaxplorer 3.3.5
Ajaxplorer Ajaxplorer 3.2.4
Ajaxplorer Ajaxplorer 3.2.2
1 EDB exploit
6.5
CVSSv3
CVE-2012-1258
cgi-bin/userprefs.cgi in Plixer International Scrutinizer NetFlow & sFlow Analyzer prior to 9.0.1.19899 does not validate user permissions, which allow remote malicious users to add user accounts with administrator privileges via the newuser, pwd, and selectedUserGroup parame...
Plixer Scrutinizer Netflow \\& Sflow Analyzer
1 EDB exploit
9.8
CVSSv3
CVE-2012-1259
Multiple SQL injection vulnerabilities in Plixer International Scrutinizer NetFlow & sFlow Analyzer 8.6.2.16204, and possibly other versions prior to 9.0.1.19899, allow remote malicious users to execute arbitrary SQL commands via the (1) addip parameter to cgi-bin/scrut_fa_ex...
Plixer Scrutinizer Netflow \\& Sflow Analyzer
1 EDB exploit
6.1
CVSSv3
CVE-2012-1260
Cross-site scripting (XSS) vulnerability in cgi-bin/userprefs.cgi in Plixer International Scrutinizer NetFlow & sFlow Analyzer 8.6.2.16204, and possibly other versions prior to 9.0.1.19899, allows remote malicious users to inject arbitrary web script or HTML via the newUser p...
Plixer Scrutinizer Netflow \\& Sflow Analyzer
1 EDB exploit
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
blind SQL injection
SSRF
buffer overflow
CVE-2023-28952
CVE-2023-41822
CVE-2024-27956
CVE-2023-7028
CVE-2024-34447
CVE-2024-34460
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
NEXT »