Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
high-tech bridge sa vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2012-3805
Multiple cross-site scripting (XSS) vulnerabilities in the getAllPassedParams function in system/functions.php in Kajona prior to 3.4.2 allow remote malicious users to inject arbitrary web script or HTML via the (1) absender_name, (2) absender_email, or (3) absender_nachricht par...
Kajona Kajona 3.2.0
Kajona Kajona 3.1.0
Kajona Kajona
Kajona Kajona 3.4.0
Kajona Kajona 3.2.1
Kajona Kajona 3.1.1
Kajona Kajona 3.3.1
Kajona Kajona 3.3.0
1 EDB exploit
NA
CVE-2012-1934
SQL injection vulnerability in admin/country/edit.php in Newscoop prior to 3.5.5 and 4.x prior to 4 RC4 allows remote malicious users to execute arbitrary SQL commands via the f_country_code parameter.
Sourcefabric Newscoop 3.5.2
Sourcefabric Newscoop 3.5.4
Sourcefabric Newscoop 4
Sourcefabric Newscoop 3.5.0
Sourcefabric Newscoop 3.5.3
Sourcefabric Newscoop 3.5.1
1 EDB exploit
NA
CVE-2012-1935
Multiple cross-site scripting (XSS) vulnerabilities in Newscoop 3.5.x prior to 3.5.5 and 4.x prior to 4 RC4 allow remote malicious users to inject arbitrary web script or HTML via the (1) Back parameter to admin/ad.php, or the (2) token or (3) f_email parameter to admin/password_...
Sourcefabric Newscoop 4
Sourcefabric Newscoop 3.5.0
Sourcefabric Newscoop 3.5.3
Sourcefabric Newscoop 3.5.1
Sourcefabric Newscoop 3.5.2
Sourcefabric Newscoop 3.5.4
1 EDB exploit
NA
CVE-2015-2295
Cross-site request forgery (CSRF) vulnerability in system_firmware_restorefullbackup.php in the WebGUI in pfSense prior to 2.2.1 allows remote malicious users to hijack the authentication of administrators for requests that delete arbitrary files via the deletefile parameter.
Netgate Pfsense
1 EDB exploit
NA
CVE-2012-4771
Multiple cross-site scripting (XSS) vulnerabilities in Subrion CMS prior to 2.2.3 allow remote malicious users to inject arbitrary web script or HTML via the id parameter to (1) admin/accounts/, (2) admin/manage/, or (3) admin/manage/blocks/edit/; or (4) group parameter to admin/...
Intelliants Subrion Cms 2.2.0
Intelliants Subrion Cms 2.0.4
Intelliants Subrion Cms
Intelliants Subrion Cms 2.2.1
1 EDB exploit
NA
CVE-2013-2713
Cross-site request forgery (CSRF) vulnerability in users_maint.html in KrisonAV CMS prior to 3.0.2 allows remote malicious users to hijack the authentication of administrators for requests that create user accounts via a crafted request.
Krisonav Krisonav 0.9.7
Krisonav Krisonav 0.9.6
Krisonav Krisonav 0.9.5
Krisonav Krisonav 0.9.4
Krisonav Krisonav 2.1.6
Krisonav Krisonav 2.1.5
Krisonav Krisonav 2.1.3
Krisonav Krisonav 2.0.1
Krisonav Krisonav 3.0.0
Krisonav Krisonav 1.1.35
Krisonav Krisonav 1.0.1
Krisonav Krisonav
Krisonav Krisonav 1.0.2
Krisonav Krisonav 1.0.0
Krisonav Krisonav 0.9.3
1 EDB exploit
NA
CVE-2013-1466
Multiple cross-site scripting (XSS) vulnerabilities in glFusion prior to 1.2.2.pl4 allow remote malicious users to inject arbitrary web script or HTML via the (1) subject parameter to profiles.php; (2) address1, (3) address2, (4) calendar_type, (5) city, (6) state, (7) title, (8)...
Glfusion Glfusion 1.2.0.pl4
Glfusion Glfusion 1.2.0.pl5
Glfusion Glfusion 1.1.8.pl4
Glfusion Glfusion 1.1.8.pl3
Glfusion Glfusion 1.1.6.pl2
Glfusion Glfusion 1.1.6.pl1
Glfusion Glfusion 1.1.4.pl3
Glfusion Glfusion 1.1.4.pl2
Glfusion Glfusion 1.0.2
Glfusion Glfusion 1.0.1
Glfusion Glfusion 1.2.0
Glfusion Glfusion 1.2.0.pl1
Glfusion Glfusion 1.2.2
Glfusion Glfusion 1.2.2.pl1
Glfusion Glfusion 1.2.2.pl2
Glfusion Glfusion 1.1.8
Glfusion Glfusion 1.1.7
Glfusion Glfusion 1.1.5.pl2
Glfusion Glfusion 1.1.5.pl1
Glfusion Glfusion 1.1.2
Glfusion Glfusion 1.1.1
Glfusion Glfusion 1.0.0
1 EDB exploit
7.5
CVSSv3
CVE-2013-2474
Directory traversal vulnerability in AWS XMS 2.5 allows remote malicious users to view arbitrary files via the 'what' parameter.
Aws-dms Aws Xms 2.5
1 EDB exploit
9
CVSSv3
CVE-2015-8351
PHP remote file inclusion vulnerability in the Gwolle Guestbook plugin prior to 1.5.4 for WordPress, when allow_url_include is enabled, allows remote authenticated users to execute arbitrary PHP code via a URL in the abspath parameter to frontend/captcha/ajaxresponse.php. NOTE: t...
Gwolle Guestbook Project Gwolle Guestbook
1 EDB exploit
9.8
CVSSv3
CVE-2015-8352
Directory traversal vulnerability in Zen Cart 1.5.4 allows remote malicious users to include and execute arbitrary local files via a .. (dot dot) in the act parameter to ajax.php.
Zen-cart Zen Cart 1.5.4
1 EDB exploit
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-32976
CVE-2024-33557
CVE-2024-36801
CVE-2024-35654
authentication bypass
CVE-2024-24919
CSRF
code execution
CVE-2024-27348
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
8
9
10
NEXT »