Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
aware vulnerabilities and exploits
(subscribe to this query)
830
VMScore
CVE-2021-30807
A memory corruption issue was addressed with improved memory handling. This issue is fixed in macOS Big Sur 11.5.1, iOS 14.7.1 and iPadOS 14.7.1, watchOS 7.6.1. An application may be able to execute arbitrary code with kernel privileges. Apple is aware of a report that this issue...
Apple Watchos
Apple Iphone Os
Apple Ipad Os
Apple Macos
5 Github repositories
1 Article
NA
CVE-2024-23837
LibHTP is a security-aware parser for the HTTP protocol. Crafted traffic can cause excessive processing time of HTTP headers, leading to denial of service. This issue is addressed in 0.5.46.
890
VMScore
CVE-2022-22587
A memory corruption issue was addressed with improved input validation. This issue is fixed in iOS 15.3 and iPadOS 15.3, macOS Big Sur 11.6.3, macOS Monterey 12.2. A malicious application may be able to execute arbitrary code with kernel privileges. Apple is aware of a report tha...
Apple Ipados
Apple Iphone Os
Apple Macos
1 Github repository
383
VMScore
CVE-2021-1879
This issue was addressed by improved management of object lifetimes. This issue is fixed in iOS 12.5.2, iOS 14.4.2 and iPadOS 14.4.2, watchOS 7.3.3. Processing maliciously crafted web content may lead to universal cross site scripting. Apple is aware of a report that this issue m...
Apple Watchos
Apple Iphone Os
Apple Ipados
1 Github repository
1 Article
NA
CVE-2023-20002
A vulnerability in Cisco TelePresence CE and RoomOS Software could allow an authenticated, local malicious user to bypass access controls and conduct an SSRF attack through an affected device. This vulnerability is due to improper validation of user-supplied input. An attacker co...
Cisco Roomos 10.3.2.0
Cisco Roomos 10.3.4.0
Cisco Roomos 10.8.2.5
Cisco Roomos 10.11.5.2
Cisco Roomos 10.8.4.0
Cisco Roomos 10.11.3.0
Cisco Roomos 10.15.3.0
Cisco Telepresence Collaboration Endpoint 8.1.1
Cisco Telepresence Collaboration Endpoint 8.3.0
Cisco Telepresence Collaboration Endpoint 8.3.5
Cisco Telepresence Collaboration Endpoint 9.0.1
Cisco Telepresence Collaboration Endpoint 9.1.1
Cisco Telepresence Collaboration Endpoint 9.1.2
Cisco Telepresence Collaboration Endpoint 9.1.3
Cisco Telepresence Collaboration Endpoint 9.1.4
Cisco Telepresence Collaboration Endpoint 9.1.5
Cisco Telepresence Collaboration Endpoint 9.1.6
Cisco Telepresence Collaboration Endpoint 9.10.1
Cisco Telepresence Collaboration Endpoint 9.10.2
Cisco Telepresence Collaboration Endpoint 9.10.3
Cisco Telepresence Collaboration Endpoint 9.12.4
Cisco Telepresence Collaboration Endpoint 9.12.5
668
VMScore
CVE-2015-8212
CGI handling flaw in bozohttpd in NetBSD 6.0 up to and including 6.0.6, 6.1 up to and including 6.1.5, and 7.0 allows remote malicious users to execute arbitrary code via crafted arguments, which are handled by a non-CGI aware program.
Netbsd Netbsd 6.0.6
Netbsd Netbsd 6.1
Netbsd Netbsd 6.1.1
Netbsd Netbsd 6.1.2
Netbsd Netbsd 7.0
Netbsd Netbsd 6.0
Netbsd Netbsd 6.0.1
Netbsd Netbsd 6.0.3
Netbsd Netbsd 6.0.5
Netbsd Netbsd 6.1.3
Netbsd Netbsd 6.1.5
Netbsd Netbsd 6.0.2
Netbsd Netbsd 6.0.4
Netbsd Netbsd 6.1.4
445
VMScore
CVE-2021-27424
GE UR firmware versions prior to version 8.1x shares MODBUS memory map as part of the communications guide. GE was made aware a “Last-key pressed” MODBUS register can be used to gain unauthorized information.
Ge Multilin B30 Firmware
Ge Multilin B90 Firmware
Ge Multilin C60 Firmware
Ge Multilin C70 Firmware
Ge Multilin C95 Firmware
Ge Multilin D30 Firmware
Ge Multilin D60 Firmware
Ge Multilin F35 Firmware
Ge Multilin F60 Firmware
Ge Multilin G30 Firmware
Ge Multilin G60 Firmware
Ge Multilin L30 Firmware
Ge Multilin L60 Firmware
Ge Multilin L90 Firmware
Ge Multilin M60 Firmware
Ge Multilin N60 Firmware
Ge Multilin T35 Firmware
Ge Multilin T60 Firmware
Ge Multilin C30 Firmware
NA
CVE-2023-33189
Pomerium is an identity and context-aware access proxy. With specially crafted requests, incorrect authorization decisions may be made by Pomerium. This issue has been patched in versions 0.17.4, 0.18.1, 0.19.2, 0.20.1, 0.21.4 and 0.22.2.
Pomerium Pomerium
Pomerium Pomerium 0.20.0
Pomerium Pomerium 0.18.0
NA
CVE-2022-32917
The issue was addressed with improved bounds checks. This issue is fixed in macOS Monterey 12.6, iOS 15.7 and iPadOS 15.7, iOS 16, macOS Big Sur 11.7. An application may be able to execute arbitrary code with kernel privileges. Apple is aware of a report that this issue may have ...
Apple Ipados
Apple Iphone Os
Apple Macos
1 Article
668
VMScore
CVE-2021-1628
MuleSoft is aware of a XML External Entity (XXE) vulnerability affecting certain versions of a Mule runtime component that may affect both CloudHub and on-premise customers. Affected versions: Mule 4.x runtime released before February 2, 2021.
Salesforce Mule
VMScore
CVSSv2
CVSSv3
VMScore
Recommendations:
authentication bypass
CVE-2024-30043
camera
CVE-2023-40404
CVE-2024-2793
client side
CVE-2024-4469
CVE-2024-3565
CVE-2024-29825
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
8
9
10
NEXT »