Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
anchor vulnerabilities and exploits
(subscribe to this query)
668
VMScore
CVE-2019-8531
A validation issue existed in Trust Anchor Management. This issue was addressed with improved validation. This issue is fixed in watchOS 5.2, macOS Mojave 10.14.4, Security Update 2019-002 High Sierra, Security Update 2019-002 Sierra, iOS 12.2. An untrusted radius server certific...
Apple Iphone Os
Apple Mac Os X
Apple Watchos
668
VMScore
CVE-2010-3076
The filter function in php/src/include.php in Simple Management for BIND (aka smbind) prior to 0.4.8 does not anchor a certain regular expression, which allows remote malicious users to conduct SQL injection attacks and execute arbitrary SQL commands via the username parameter to...
Blentz Smbind
Blentz Smbind 0.4
Blentz Smbind 0.3.1
Blentz Smbind 0.2.1
Blentz Smbind 0.4.4
Blentz Smbind 0.4.3
Blentz Smbind 0.4.2
Blentz Smbind 0.4.1
Blentz Smbind 0.4.6
Blentz Smbind 0.4.5
Blentz Smbind 0.2
641
VMScore
CVE-2019-1649
A vulnerability in the logic that handles access control to one of the hardware components in Cisco's proprietary Secure Boot implementation could allow an authenticated, local malicious user to write a modified firmware image to the component. This vulnerability affects mul...
Cisco Asa 5500 Firmware
Cisco Firepower 2100 Firmware
Cisco Firepower 4000 Firmware
Cisco Firepower 9000 Firmware
Cisco Ons 15454 Mstp Firmware
Cisco Analog Voice Network Interface Modules Firmware
Cisco Integrated Services Router T1\\/e1 Voice And Wan Network Interface Modules Firmware
Cisco Supervisor A\\+ Firmware
Cisco Supervisor B\\+ Firmware
Cisco 15454-m-wse-k9 Firmware
Cisco Ios Xe
Cisco Ios
Cisco Industrial Security Appliances 3000 Firmware
Cisco Integrated Services Router 4200 Firmware
Cisco Integrated Services Router 4300 Firmware
Cisco Integrated Services Router 4400 Firmware
Cisco Asr 1000 Series Firmware
Cisco Asr 1001 Firmware 16.0.0
Cisco Ios Xr 7.0.1
Cisco Catalyst 9800-40 Wireless Controller Firmware -
Cisco Catalyst 9800-80 Wireless Controller Firmware -
Cisco Ic3000-k9 Firmware
2 Articles
383
VMScore
CVE-2015-1796
The PKIX trust engines in Shibboleth Identity Provider prior to 2.4.4 and OpenSAML Java (OpenSAML-J) prior to 2.6.5 trust candidate X.509 credentials when no trusted names are available for the entityID, which allows remote malicious users to impersonate an entity via a certifica...
Shibboleth Identity Provider
Shibboleth Opensaml Java
605
VMScore
CVE-2017-11173
Missing anchor in generated regex for rack-cors prior to 0.4.1 allows a malicious third-party site to perform CORS requests. If the configuration were intended to allow only the trusted example.com domain name and not the malicious example.net domain name, then example.com.exampl...
Rack-cors Project Rack-cors
Debian Debian Linux 9.0
383
VMScore
CVE-2015-7772
Cross-site scripting (XSS) vulnerability in the runtime engine in the Newphoria applican framework prior to 1.13.0 for Android and iOS allows remote malicious users to inject arbitrary web script or HTML via a crafted URL that triggers WebView anchor attachment in an applican app...
Newphoria Corporation Applican
383
VMScore
CVE-2017-15533
Symantec SSL Visibility (SSLV) 3.8.4FC, 3.10 before 3.10.4.1, 3.11, and 3.12 before 3.12.2.1 are vulnerable to the Return of the Bleichenbacher Oracle Threat (ROBOT) attack. All affected SSLV versions act as weak oracles according the oracle classification used in the ROBOT resea...
Broadcom Ssl Visibility Appliance 3.10
Broadcom Ssl Visibility Appliance 3.12
Broadcom Ssl Visibility Appliance 3.8.4fc
Broadcom Ssl Visibility Appliance 3.11
505
VMScore
CVE-2007-1377
AcroPDF.DLL in Adobe Reader 8.0, when accessed from Mozilla Firefox, Netscape, or Opera, allows remote malicious users to cause a denial of service (unspecified resource consumption) via a .pdf URL with an anchor identifier that begins with search= followed by many %n sequences, ...
Adobe Acrobat Reader 8.0
Mozilla Firefox 2.0.0.3
Netscape Navigator
Opera Opera Browser 9.2
1 EDB exploit
NA
CVE-2024-26269
Cross-site scripting (XSS) vulnerability in the Frontend JS module's portlet.js in Liferay Portal 7.2.0 up to and including 7.4.3.37, and Liferay DXP 7.4 before update 38, 7.3 before update 11, 7.2 before fix pack 20, and older unsupported versions allows remote malicious us...
NA
CVE-2023-24620
An issue exists in Esoteric YamlBeans up to and including 1.15. A crafted YAML document is able perform am XML Entity Expansion attack against YamlBeans YamlReader. By exploiting the Anchor feature in YAML, it is possible to generate a small YAML document that, when read, is expa...
Esotericsoftware Yamlbeans
VMScore
CVSSv2
CVSSv3
VMScore
Recommendations:
inject
CVE-2024-34001
CVE-2024-37018
LFI
CVE-2024-1275
CVE-2024-1086
CSRF
CVE-2024-31030
CVE-2024-24919
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
8
9
10
NEXT »