Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
disclosure management vulnerabilities and exploits
(subscribe to this query)
2.1
CVSSv2
CVE-2016-7442
The Frontend component in Sophos UTM with firmware 9.405-5 and previous versions allows local administrators to obtain sensitive password information by reading the "value" field of the proxy user settings in "system settings / scan settings / anti spam" confi...
Sophos Unified Threat Management Software
2.1
CVSSv2
CVE-2016-7397
The Frontend component in Sophos UTM with firmware 9.405-5 and previous versions allows local administrators to obtain sensitive password information by reading the "value" field of the SMTP user settings in the notifications configuration tab.
Sophos Unified Threat Management Software
3.5
CVSSv2
CVE-2016-9979
IBM Curam Social Program Management 5.2, 6.0, and 7.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted se...
Ibm Curam Social Program Management 6.0.4.7
Ibm Curam Social Program Management 6.0.4.8
Ibm Curam Social Program Management 6.0.4.4
Ibm Curam Social Program Management 6.0.4.5
Ibm Curam Social Program Management 6.0.4.6
Ibm Curam Social Program Management 6.0.4.2
Ibm Curam Social Program Management 6.0.4.3
Ibm Curam Social Program Management 6.0.4.0
Ibm Curam Social Program Management 6.0.4.1
Ibm Curam Social Program Management 6.0.5.1
Ibm Curam Social Program Management 6.0.5.2
Ibm Curam Social Program Management 6.0.5.9
Ibm Curam Social Program Management 6.0.5
Ibm Curam Social Program Management 6.0.5.0
Ibm Curam Social Program Management 6.0.5.7
Ibm Curam Social Program Management 6.0.5.8
Ibm Curam Social Program Management 6.0.5.5
Ibm Curam Social Program Management 6.0.5.6
Ibm Curam Social Program Management 6.0.5.3
Ibm Curam Social Program Management 6.0.5.4
Ibm Curam Social Program Management 6.1.0.0
Ibm Curam Social Program Management 6.1.0.3
3.5
CVSSv2
CVE-2016-6021
IBM Emptoris Strategic Supply Management Platform 10.0 and 10.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a ...
Ibm Emptoris Strategic Supply Management 10.0.2.4
Ibm Emptoris Strategic Supply Management 10.0.2.5
Ibm Emptoris Strategic Supply Management 10.0.2.6
Ibm Emptoris Strategic Supply Management 10.0.2.7
Ibm Emptoris Strategic Supply Management 10.1.0.3
Ibm Emptoris Strategic Supply Management 10.1.0.4
Ibm Emptoris Strategic Supply Management 10.1.0.5
Ibm Emptoris Strategic Supply Management 10.1.0.6
Ibm Emptoris Strategic Supply Management 10.1.0.7
Ibm Emptoris Strategic Supply Management 10.0.1.0
Ibm Emptoris Strategic Supply Management 10.0.1.1
Ibm Emptoris Strategic Supply Management 10.0.1.3
Ibm Emptoris Strategic Supply Management 10.0.1.4
Ibm Emptoris Strategic Supply Management 10.0.2.12
Ibm Emptoris Strategic Supply Management 10.0.2.13
Ibm Emptoris Strategic Supply Management 10.0.2.14
Ibm Emptoris Strategic Supply Management 10.0.2.15
Ibm Emptoris Strategic Supply Management 10.1.1.1
Ibm Emptoris Strategic Supply Management 10.1.1.2
Ibm Emptoris Strategic Supply Management 10.1.1.3
Ibm Emptoris Strategic Supply Management 10.1.1.4
Ibm Emptoris Strategic Supply Management 10.0.0.1
3.5
CVSSv2
CVE-2017-1740
IBM Curam Social Program Management 6.0.5, 6.1.1, 6.2.0, 7.0.1, and 7.0.2 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure...
Ibm Curam Social Program Management 6.0.5.4
Ibm Curam Social Program Management 6.0.5.5
Ibm Curam Social Program Management 6.0.5.6
Ibm Curam Social Program Management 6.0.5.7
Ibm Curam Social Program Management 6.0.5.0
Ibm Curam Social Program Management 6.0.5.2
Ibm Curam Social Program Management 6.0.5.9
Ibm Curam Social Program Management 6.0.5
Ibm Curam Social Program Management 6.0.5.1
Ibm Curam Social Program Management 6.0.5.3
Ibm Curam Social Program Management 6.0.5.8
Ibm Curam Social Program Management 6.0.5.10
Ibm Curam Social Program Management 6.1.1.3
Ibm Curam Social Program Management 6.1.1.4
Ibm Curam Social Program Management 6.1.1.5
Ibm Curam Social Program Management 6.1.1.6
Ibm Curam Social Program Management 6.1.0.4
Ibm Curam Social Program Management 6.1.1.0
Ibm Curam Social Program Management 6.1.1.2
Ibm Curam Social Program Management 6.1.0.0
Ibm Curam Social Program Management 6.1.0.1
Ibm Curam Social Program Management 6.1.0.2
3.5
CVSSv2
CVE-2016-6121
IBM Emptoris Supplier Lifecycle Management 10.0.x and 10.1.x is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a tru...
Ibm Emptoris Strategic Supply Management 10.0.0.0
Ibm Emptoris Strategic Supply Management 10.0.2.5
Ibm Emptoris Strategic Supply Management 10.0.2.6
Ibm Emptoris Strategic Supply Management 10.0.2.7
Ibm Emptoris Strategic Supply Management 10.0.2.8
Ibm Emptoris Strategic Supply Management 10.1.0.2
Ibm Emptoris Strategic Supply Management 10.1.0.3
Ibm Emptoris Strategic Supply Management 10.1.0.4
Ibm Emptoris Strategic Supply Management 10.1.0.5
Ibm Emptoris Strategic Supply Management 10.1.0.6
Ibm Emptoris Strategic Supply Management 10.1.1.7
Ibm Emptoris Strategic Supply Management 10.1.1.8
Ibm Emptoris Strategic Supply Management 10.1.1.9
Ibm Emptoris Strategic Supply Management 10.1.1.10
Ibm Emptoris Strategic Supply Management 10.0.1.1
Ibm Emptoris Strategic Supply Management 10.0.1.2
Ibm Emptoris Strategic Supply Management 10.0.1.3
Ibm Emptoris Strategic Supply Management 10.0.1.4
Ibm Emptoris Strategic Supply Management 10.0.2.13
Ibm Emptoris Strategic Supply Management 10.0.2.14
Ibm Emptoris Strategic Supply Management 10.0.2.15
Ibm Emptoris Strategic Supply Management 10.0.2.16
3.5
CVSSv2
CVE-2017-1106
IBM Curam Social Program Management 5.2, 6.0, and 7.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted se...
Ibm Curam Social Program Management 5.2
Ibm Curam Social Program Management 6.0
Ibm Curam Social Program Management 6.0.0
Ibm Curam Social Program Management 6.0.4.6
Ibm Curam Social Program Management 6.0.4.7
Ibm Curam Social Program Management 6.0.4.8
Ibm Curam Social Program Management 6.0.4.9
Ibm Curam Social Program Management 6.0.4.0
Ibm Curam Social Program Management 6.0.4.1
Ibm Curam Social Program Management 6.0.4.3
Ibm Curam Social Program Management 6.0.4.5
Ibm Curam Social Program Management 6.0.4.2
Ibm Curam Social Program Management 6.0.4.4
Ibm Curam Social Program Management 6.0.5.3
Ibm Curam Social Program Management 6.0.5.4
Ibm Curam Social Program Management 6.0.5.5
Ibm Curam Social Program Management 6.0.5.6
Ibm Curam Social Program Management 6.0.5.10
Ibm Curam Social Program Management 6.0.5.0
Ibm Curam Social Program Management 6.0.5.2
Ibm Curam Social Program Management 6.0.5.7
Ibm Curam Social Program Management 6.0.5.9
6.8
CVSSv2
CVE-2008-2217
Directory traversal vulnerability in cm/graphie.php in Content Management System 0.6.1 for Phprojekt allows remote malicious users to include and execute arbitrary local files via a .. (dot dot) in the cm_imgpath parameter.
Mario Valdez Content Management System 0.6.1
1 EDB exploit
7.8
CVSSv2
CVE-2012-4933
The rtrlet web application in the Web Console in Novell ZENworks Asset Management (ZAM) 7.5 uses a hard-coded username of Ivanhoe and a hard-coded password of Scott for the (1) GetFile_Password and (2) GetConfigInfo_Password operations, which allows remote malicious users to obta...
Novell Zenworks Asset Management 7.5
3.5
CVSSv2
CVE-2016-8952
IBM Emptoris Strategic Supply Management Platform 10.0.0.x up to and including 10.1.1.x is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credenti...
Ibm Emptoris Strategic Supply Management 10.0.1.2
Ibm Emptoris Strategic Supply Management 10.0.1.3
Ibm Emptoris Strategic Supply Management 10.0.1.4
Ibm Emptoris Strategic Supply Management 10.0.2.0
Ibm Emptoris Strategic Supply Management 10.0.2.14
Ibm Emptoris Strategic Supply Management 10.0.2.15
Ibm Emptoris Strategic Supply Management 10.0.2.16
Ibm Emptoris Strategic Supply Management 10.0.2.17
Ibm Emptoris Strategic Supply Management 10.1.0.11
Ibm Emptoris Strategic Supply Management 10.1.0.12
Ibm Emptoris Strategic Supply Management 10.1.1.0
Ibm Emptoris Strategic Supply Management 10.1.1.1
Ibm Emptoris Strategic Supply Management 10.0.0.2
Ibm Emptoris Strategic Supply Management 10.0.1.0
Ibm Emptoris Strategic Supply Management 10.0.2.2
Ibm Emptoris Strategic Supply Management 10.0.2.4
Ibm Emptoris Strategic Supply Management 10.0.2.9
Ibm Emptoris Strategic Supply Management 10.0.2.11
Ibm Emptoris Strategic Supply Management 10.0.2.13
Ibm Emptoris Strategic Supply Management 10.0.4.0
Ibm Emptoris Strategic Supply Management 10.1.0.1
Ibm Emptoris Strategic Supply Management 10.1.0.8
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-5248
CVE-2024-3110
CVE-2024-5552
CVE-2024-29415
HTML injection
CVE-2024-3095
TCP
type confusion
CVE-2024-1800
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
8
9
10
NEXT »