Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
event list vulnerabilities and exploits
(subscribe to this query)
5
CVSSv2
CVE-2012-5424
Cisco Secure Access Control System (ACS) 5.x prior to 5.2 Patch 11 and 5.3 prior to 5.3 Patch 7, when a certain configuration involving TACACS+ and LDAP is used, does not properly validate passwords, which allows remote malicious users to bypass authentication by sending a valid ...
Cisco Secure Access Control Server 5.1
Cisco Secure Access Control Server 5.2
Cisco Secure Access Control Server 5.0
Cisco Secure Access Control Server 5.3
5
CVSSv2
CVE-2020-3189
A vulnerability in the VPN System Logging functionality for Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote malicious user to cause a memory leak that can deplete system memory over time, which can cause unexpected system behaviors or device c...
Cisco Firepower Threat Defense 6.2.3.12
Cisco Firepower Threat Defense 6.2.3.13
Cisco Firepower Threat Defense 6.2.3.14
Cisco Firepower Threat Defense 6.2.3.15
Cisco Asa 5505 Firmware 9.9\\(2\\)
Cisco Asa 5505 Firmware 9.9\\(2.21\\)
Cisco Asa 5505 Firmware 9.9\\(2.52\\)
Cisco Asa 5505 Firmware 9.9\\(2.55\\)
Cisco Asa 5510 Firmware 9.9\\(2\\)
Cisco Asa 5510 Firmware 9.9\\(2.21\\)
Cisco Asa 5510 Firmware 9.9\\(2.52\\)
Cisco Asa 5510 Firmware 9.9\\(2.55\\)
Cisco Asa 5512-x Firmware 9.9\\(2\\)
Cisco Asa 5512-x Firmware 9.9\\(2.21\\)
Cisco Asa 5512-x Firmware 9.9\\(2.52\\)
Cisco Asa 5512-x Firmware 9.9\\(2.55\\)
Cisco Asa 5515-x Firmware 9.9\\(2\\)
Cisco Asa 5515-x Firmware 9.9\\(2.21\\)
Cisco Asa 5515-x Firmware 9.9\\(2.52\\)
Cisco Asa 5515-x Firmware 9.9\\(2.55\\)
Cisco Asa 5520 Firmware 9.9\\(2\\)
Cisco Asa 5520 Firmware 9.9\\(2.21\\)
1 Article
7.8
CVSSv2
CVE-2019-12655
A vulnerability in the FTP application layer gateway (ALG) functionality used by Network Address Translation (NAT), NAT IPv6 to IPv4 (NAT64), and the Zone-Based Policy Firewall (ZBFW) in Cisco IOS XE Software could allow an unauthenticated, remote malicious user to cause an affec...
Cisco Ios 16.6.5
Cisco Ios 16.9.1
Cisco Ios 16.9.2
Cisco Ios
Cisco Ios 16.6.4
7.8
CVSSv2
CVE-2013-5479
The DNS-over-TCP implementation in Cisco IOS 12.2 and 15.0 up to and including 15.3, when NAT is used, allows remote malicious users to cause a denial of service (device reload) via a crafted IPv4 DNS TCP stream, aka Bug ID CSCtn53730.
Cisco Ios 12.2
Cisco Ios 15.2
Cisco Ios 15.0
Cisco Ios 15.3
Cisco Ios 15.1
7.8
CVSSv2
CVE-2013-5480
The DNS-over-TCP implementation in Cisco IOS 12.2 and 15.0 up to and including 15.3, when NAT is used, allows remote malicious users to cause a denial of service (device reload) via a crafted IPv4 DNS TCP stream, aka Bug ID CSCuf28733.
Cisco Ios 15.3
Cisco Ios 15.2
Cisco Ios 15.1
Cisco Ios 12.2
Cisco Ios 15.0
7.1
CVSSv2
CVE-2013-5481
The PPTP implementation in Cisco IOS 12.2 and 15.0 up to and including 15.3, when NAT is used, allows remote malicious users to cause a denial of service (device reload) via crafted TCP port-1723 packets, aka Bug ID CSCtq14817.
Cisco Ios 15.3
Cisco Ios 15.2
Cisco Ios 15.1
Cisco Ios 15.0
Cisco Ios 12.2
7.5
CVSSv2
CVE-2022-24766
mitmproxy is an interactive, SSL/TLS-capable intercepting proxy. In mitmproxy 7.0.4 and below, a malicious client or server is able to perform HTTP request smuggling attacks through mitmproxy. This means that a malicious client/server could smuggle a request/response through mitm...
Mitmproxy Mitmproxy
9.3
CVSSv2
CVE-2015-0040
Microsoft Internet Explorer 11 allows remote malicious users to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2015-0018, CVE-201...
Microsoft Internet Explorer 11
1 EDB exploit
NA
CVE-2023-40013
SVG Loader is a javascript library that fetches SVGs using XMLHttpRequests and injects the SVG code in the tag's place. According to the docs, svg-loader will strip all JS code before injecting the SVG file for security reasons but the input sanitization logic is not suffici...
Shubhamjain Svg Loader
NA
CVE-2022-20837
A vulnerability in the DNS application layer gateway (ALG) functionality that is used by Network Address Translation (NAT) in Cisco IOS XE Software could allow an unauthenticated, remote malicious user to cause an affected device to reload. This vulnerability is due to a logic er...
Cisco Ios Xe -
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2022-48700
CVE-2022-48689
CVE-2024-27956
CVE-2023-6363
SQL
NULL pointer dereference
CVE-2023-41830
CVE-2015-2051
arbitrary
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
8
9
10
NEXT »