Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
web port vulnerabilities and exploits
(subscribe to this query)
4.9
CVSSv3
CVE-2022-20949
A vulnerability in the management web server of Cisco Firepower Threat Defense (FTD) Software could allow an authenticated, remote attacker with high privileges to execute configuration commands on an affected system. This vulnerability exists because access to HTTPS endpoints is...
Cisco Firepower Threat Defense 6.2.1
Cisco Firepower Threat Defense
Cisco Firepower Threat Defense 7.1.0.0
Cisco Firepower Threat Defense 7.2.0.1
Cisco Firepower Threat Defense 7.1.0.1
Cisco Firepower Threat Defense 7.1.0.2
Cisco Firepower Threat Defense 7.2.0
NA
CVE-2001-1030
Squid prior to 2.3STABLE5 in HTTP accelerator mode does not enable access control lists (ACLs) when the httpd_accel_host and http_accel_with_proxy off settings are used, which allows malicious users to bypass the ACLs and conduct unauthorized activities such as port scanning.
Immunix Immunix 7.0 Beta
Mandrakesoft Mandrake Single Network Firewall 7.2
Immunix Immunix 6.2
Immunix Immunix 7.0
Squid Squid Web Proxy 2.3stable3
Squid Squid Web Proxy 2.3stable4
Caldera Openlinux Server 3.1
Redhat Linux 7.0
Trustix Secure Linux 1.01
Mandrakesoft Mandrake Linux 7.2
Mandrakesoft Mandrake Linux 8.0
Mandrakesoft Mandrake Linux Corporate Server 1.0.1
Trustix Secure Linux 1.1
Trustix Secure Linux 1.2
Mandrakesoft Mandrake Linux 7.1
NA
CVE-2013-1147
The Protocol Translation (PT) functionality in Cisco IOS 12.3 up to and including 12.4 and 15.0 up to and including 15.3, when one-step port-23 translation or a Telnet-to-PAD ruleset is configured, does not properly validate TCP connection information, which allows remote malicio...
Cisco Ios 15.0
Cisco Ios 15.1
Cisco Ios 15.2
Cisco Ios 15.3
Cisco Ios 12.4
Cisco Ios 12.3
NA
CVE-2013-5473
Memory leak in Cisco IOS 12.2, 15.1, and 15.2; IOS XE 3.4.2S up to and including 3.4.5S; and IOS XE 3.6.xS prior to 3.6.1S allows remote malicious users to cause a denial of service (memory consumption or device reload) via malformed IKEv1 packets, aka Bug ID CSCtx66011.
Cisco Ios 15.2
Cisco Ios 15.1
Cisco Ios 12.2
Cisco Ios Xe 3.4.3s
Cisco Ios Xe 3.4.4s
Cisco Ios Xe 3.4.5s
Cisco Ios Xe 3.4.2s
Cisco Ios Xe 3.6.0s
4.8
CVSSv3
CVE-2019-1956
A vulnerability in the web-based interface of the Cisco SPA112 2-Port Phone Adapter could allow an authenticated, remote malicious user to conduct a cross-site scripting (XSS) attack against another user of the device. The vulnerability is due to insufficient validation of user-s...
Cisco Spa112 2-port Phone Adapter Firmware
8
CVSSv3
CVE-2019-15240
Multiple vulnerabilities in Cisco SPA100 Series Analog Telephone Adapters (ATAs) could allow an authenticated, adjacent malicious user to execute arbitrary code with elevated privileges. The vulnerabilities are due to improper validation of user-supplied input to the web-based ma...
Cisco Spa112 Firmware 1.4.1
Cisco Spa112 Firmware
Cisco Spa122 Firmware 1.4.1
Cisco Spa122 Firmware
8
CVSSv3
CVE-2019-15241
Multiple vulnerabilities in Cisco SPA100 Series Analog Telephone Adapters (ATAs) could allow an authenticated, adjacent malicious user to execute arbitrary code with elevated privileges. The vulnerabilities are due to improper validation of user-supplied input to the web-based ma...
Cisco Spa112 Firmware 1.4.1
Cisco Spa112 Firmware
Cisco Spa122 Firmware 1.4.1
Cisco Spa122 Firmware
8
CVSSv3
CVE-2019-15242
Multiple vulnerabilities in Cisco SPA100 Series Analog Telephone Adapters (ATAs) could allow an authenticated, adjacent malicious user to execute arbitrary code with elevated privileges. The vulnerabilities are due to improper validation of user-supplied input to the web-based ma...
Cisco Spa112 Firmware
Cisco Spa112 Firmware 1.4.1
Cisco Spa122 Firmware 1.4.1
Cisco Spa122 Firmware
8
CVSSv3
CVE-2019-15243
Multiple vulnerabilities in Cisco SPA100 Series Analog Telephone Adapters (ATAs) could allow an authenticated, adjacent malicious user to execute arbitrary code with elevated privileges. The vulnerabilities are due to improper validation of user-supplied input to the web-based ma...
Cisco Spa112 Firmware
Cisco Spa112 Firmware 1.4.1
Cisco Spa122 Firmware 1.4.1
Cisco Spa122 Firmware
8
CVSSv3
CVE-2019-15244
Multiple vulnerabilities in Cisco SPA100 Series Analog Telephone Adapters (ATAs) could allow an authenticated, adjacent malicious user to execute arbitrary code with elevated privileges. The vulnerabilities are due to improper validation of user-supplied input to the web-based ma...
Cisco Spa112 Firmware 1.4.1
Cisco Spa112 Firmware
Cisco Spa122 Firmware
Cisco Spa122 Firmware 1.4.1
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-32976
CVE-2024-33557
CVE-2024-36801
CVE-2024-35654
authentication bypass
CVE-2024-24919
CSRF
code execution
CVE-2024-27348
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
8
9
10
NEXT »