Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
web port vulnerabilities and exploits
(subscribe to this query)
8.8
CVSSv3
CVE-2022-42826
A use after free issue was addressed with improved memory management. This issue is fixed in macOS Ventura 13, iOS 16.1 and iPadOS 16, Safari 16.1. Processing maliciously crafted web content may lead to arbitrary code execution.
Apple Macos
Apple Iphone Os
Apple Ipados
Apple Safari
8.8
CVSSv3
CVE-2023-23517
The issue was addressed with improved memory handling. This issue is fixed in macOS Monterey 12.6.3, macOS Ventura 13.2, watchOS 9.3, macOS Big Sur 11.7.3, Safari 16.3, tvOS 16.3, iOS 16.3 and iPadOS 16.3. Processing maliciously crafted web content may lead to arbitrary code exec...
Apple Macos
Apple Watchos
Apple Tvos
Apple Safari
Apple Ipados
Apple Iphone Os
8.8
CVSSv3
CVE-2023-23518
The issue was addressed with improved memory handling. This issue is fixed in macOS Monterey 12.6.3, macOS Ventura 13.2, watchOS 9.3, macOS Big Sur 11.7.3, Safari 16.3, tvOS 16.3, iOS 16.3 and iPadOS 16.3. Processing maliciously crafted web content may lead to arbitrary code exec...
Apple Macos
Apple Watchos
Apple Tvos
Apple Safari
Apple Ipados
Apple Iphone Os
5.3
CVSSv3
CVE-2023-0595
A CWE-117: Improper Output Neutralization for Logs vulnerability exists that could cause the misinterpretation of log files when malicious packets are sent to the Geo SCADA server's database web port (default 443). Affected products: EcoStruxure Geo SCADA Expert 2019, EcoStr...
Schneider-electric Clearscada
Schneider-electric Ecostruxure Geo Scada Expert 2019 -
Schneider-electric Ecostruxure Geo Scada Expert 2020 -
Schneider-electric Ecostruxure Geo Scada Expert 2021 84.8108.1
Schneider-electric Ecostruxure Geo Scada Expert 2021 84.8120.1
Schneider-electric Ecostruxure Geo Scada Expert 2021 84.8158.1
Schneider-electric Ecostruxure Geo Scada Expert 2021 84.8182.1
Schneider-electric Ecostruxure Geo Scada Expert 2021 84.8197.1
Schneider-electric Ecostruxure Geo Scada Expert 2021 84.8218.1
Schneider-electric Ecostruxure Geo Scada Expert 2021 84.8269.1
Schneider-electric Ecostruxure Geo Scada Expert 2021 84.8027.1
Schneider-electric Ecostruxure Geo Scada Expert 2019 81.7268.1
Schneider-electric Ecostruxure Geo Scada Expert 2019 81.7322.1
Schneider-electric Ecostruxure Geo Scada Expert 2019 81.7429.2
Schneider-electric Ecostruxure Geo Scada Expert 2019 81.7457.1
Schneider-electric Ecostruxure Geo Scada Expert 2019 81.7488.1
Schneider-electric Ecostruxure Geo Scada Expert 2019 81.7522.1
Schneider-electric Ecostruxure Geo Scada Expert 2019 81.7545.1
Schneider-electric Ecostruxure Geo Scada Expert 2019 81.7578.1
Schneider-electric Ecostruxure Geo Scada Expert 2019 81.7613.1
Schneider-electric Ecostruxure Geo Scada Expert 2019 81.7641.1
Schneider-electric Ecostruxure Geo Scada Expert 2019 81.7690.1
9.8
CVSSv3
CVE-2023-22855
Kardex Mlog MCC 5.7.12+0-a203c2a213-master allows remote code execution. It spawns a web interface listening on port 8088. A user-controllable path is handed to a path-concatenation method (Path.Combine from .NET) without proper sanitisation. This yields the possibility of includ...
Kardex Kardex Control Center 5.7.12\\+0-a203c2a213-master
2 Github repositories
6.5
CVSSv3
CVE-2021-37498
An SSRF issue exists in Reprise License Manager (RLM) web interface up to and including 14.2BL4 that allows remote malicious users to trigger outbound requests to intranet servers, conduct port scans via the actserver parameter in License Activation function.
Reprisesoftware Reprise License Manager
7.5
CVSSv3
CVE-2022-43975
An issue exists in FC46-WebBridge on GE Grid Solutions MS3000 devices prior to 3.7.6.25p0_3.2.2.17p0_4.7p0. A vulnerability in the web server allows arbitrary files and configurations to be read via directory traversal over TCP port 8888.
Ge Ms 3000 Firmware
8.8
CVSSv3
CVE-2022-46691
A memory consumption issue was addressed with improved memory handling. This issue is fixed in Safari 16.2, tvOS 16.2, macOS Ventura 13.1, iOS 15.7.2 and iPadOS 15.7.2, iOS 16.2 and iPadOS 16.2, watchOS 9.2. Processing maliciously crafted web content may lead to arbitrary code ex...
Apple Watchos
Apple Ipados
Apple Iphone Os
Apple Tvos
Apple Macos
Apple Safari
5.5
CVSSv3
CVE-2022-46692
A logic issue was addressed with improved state management. This issue is fixed in Safari 16.2, tvOS 16.2, iCloud for Windows 14.1, iOS 15.7.2 and iPadOS 15.7.2, macOS Ventura 13.1, iOS 16.2 and iPadOS 16.2, watchOS 9.2. Processing maliciously crafted web content may bypass Same ...
Apple Watchos
Apple Ipados
Apple Iphone Os
Apple Tvos
Apple Macos
Apple Safari
Apple Icloud
6.5
CVSSv3
CVE-2022-46698
A logic issue was addressed with improved checks. This issue is fixed in Safari 16.2, tvOS 16.2, iCloud for Windows 14.1, macOS Ventura 13.1, iOS 16.2 and iPadOS 16.2, watchOS 9.2. Processing maliciously crafted web content may disclose sensitive user information.
Apple Ipados
Apple Iphone Os
Apple Watchos
Apple Tvos
Apple Macos
Apple Safari
Apple Icloud
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2023-30310
CVE-2024-21683
CVE-2024-22187
chrome
deserialization
XPath injection
CVE-2024-27842
denial of service
CVE-2024-24851
google
CVE-2024-35400
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
8
9
10
NEXT »