Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
fedoraproject fedora 19 vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2014-2328
lib/graph_export.php in Cacti 0.8.7g, 0.8.8b, and previous versions allows remote authenticated users to execute arbitrary commands via shell metacharacters in unspecified vectors.
Cacti Cacti
Fedoraproject Fedora 20
Fedoraproject Fedora 19
Opensuse Opensuse 13.2
Opensuse Opensuse 13.1
Debian Debian Linux 7.0
NA
CVE-2014-1517
The login form in Bugzilla 2.x, 3.x, 4.x prior to 4.4.3, and 4.5.x prior to 4.5.3 does not properly handle a correctly authenticated but unintended login attempt, which makes it easier for remote authenticated users to obtain sensitive information by arranging for a victim to log...
Mozilla Bugzilla 3.0.4
Mozilla Bugzilla 3.0
Mozilla Bugzilla 3.6.9
Mozilla Bugzilla 4.1.1
Mozilla Bugzilla 3.1.3
Mozilla Bugzilla 2.0
Mozilla Bugzilla 2.18.6\\+
Mozilla Bugzilla 2.16.8
Mozilla Bugzilla 4.3.1
Mozilla Bugzilla 3.0.0
Mozilla Bugzilla 2.22.7
Mozilla Bugzilla 3.7.2
Mozilla Bugzilla 3.4.3
Mozilla Bugzilla 3.3.2
Mozilla Bugzilla 4.3.2
Mozilla Bugzilla 3.0.1
Mozilla Bugzilla 2.18.8
Mozilla Bugzilla 2.17.6
Mozilla Bugzilla 2.16
Mozilla Bugzilla 4.2
Mozilla Bugzilla 3.2
Mozilla Bugzilla 2.18.5
NA
CVE-2014-2286
main/http.c in Asterisk Open Source 1.8.x prior to 1.8.26.1, 11.8.x prior to 11.8.1, and 12.1.x prior to 12.1.1, and Certified Asterisk 1.8.x prior to 1.8.15-cert5 and 11.6 prior to 11.6-cert2, allows remote malicious users to cause a denial of service (stack consumption) and pos...
Digium Asterisk 12.1.0
Digium Asterisk 1.8.26.0
Digium Asterisk 1.8.25.0
Digium Asterisk 1.8.22.0
Digium Asterisk 1.8.21.0
Digium Asterisk 1.8.15.0
Digium Asterisk 1.8.14.1
Digium Asterisk 1.8.14.0
Digium Asterisk 1.8.0
Digium Asterisk 1.8.10.0
Digium Asterisk 1.8.10.1
Digium Asterisk 1.8.11.0
Digium Asterisk 1.8.15.1
Digium Asterisk 1.8.19.0
Digium Asterisk 1.8.19.1
Digium Asterisk 1.8.2
Digium Asterisk 1.8.2.1
Digium Asterisk 1.8.4
Digium Asterisk 1.8.4.1
Digium Asterisk 1.8.4.2
Digium Asterisk 1.8.8.0
Fedoraproject Fedora 19
NA
CVE-2014-2287
channels/chan_sip.c in Asterisk Open Source 1.8.x prior to 1.8.26.1, 11.8.x prior to 11.8.1, and 12.1.x prior to 12.1.1, and Certified Asterisk 1.8.15 prior to 1.8.15-cert5 and 11.6 prior to 11.6-cert2, when chan_sip has a certain configuration, allows remote authenticated users ...
Digium Certified Asterisk 11.6.0
Digium Certified Asterisk 1.8.15
Digium Certified Asterisk 1.8.12.0
Digium Certified Asterisk 1.8.10.0
Digium Certified Asterisk 1.8.8.0
Digium Certified Asterisk 1.8.6.0
Digium Certified Asterisk 1.8.4.0
Digium Certified Asterisk 1.8.3.0
Digium Certified Asterisk 1.8.1.0
Digium Certified Asterisk 1.8.0.0
Digium Certified Asterisk 11.6
Digium Certified Asterisk 1.8.14.0
Digium Certified Asterisk 1.8.13.0
Digium Certified Asterisk 1.8.9.0
Digium Certified Asterisk 1.8.5.0
Digium Certified Asterisk 1.8.11.0
Digium Certified Asterisk 1.8.7.0
Digium Certified Asterisk 1.8.2.0
Digium Asterisk 12.1.0
Digium Asterisk 1.8.25.0
Digium Asterisk 1.8.24.1
Digium Asterisk 1.8.23.0
NA
CVE-2010-5298
Race condition in the ssl3_read_bytes function in s3_pkt.c in OpenSSL up to and including 1.0.1g, when SSL_MODE_RELEASE_BUFFERS is enabled, allows remote malicious users to inject data across sessions or cause a denial of service (use-after-free and parsing error) via an SSL conn...
Openssl Openssl
Mariadb Mariadb
Fedoraproject Fedora 20
Fedoraproject Fedora 19
Suse Linux Enterprise Server 12
Suse Linux Enterprise Software Development Kit 12
Suse Linux Enterprise Desktop 12
Suse Linux Enterprise Workstation Extension 12
1 Article
7.5
CVSSv3
CVE-2014-0160
The (1) TLS and (2) DTLS implementations in OpenSSL 1.0.1 prior to 1.0.1g do not properly handle Heartbeat Extension packets, which allows remote malicious users to obtain sensitive information from process memory via crafted packets that trigger a buffer over-read, as demonstrat...
Openssl Openssl
Filezilla-project Filezilla Server
Siemens Application Processing Engine Firmware 2.0
Siemens Cp 1543-1 Firmware 1.1
Siemens Simatic S7-1500 Firmware 1.5
Siemens Simatic S7-1500t Firmware 1.5
Siemens Elan-8.2
Siemens Wincc Open Architecture 3.12
Intellian V100 Firmware 1.20
Intellian V100 Firmware 1.21
Intellian V100 Firmware 1.24
Intellian V60 Firmware 1.15
Intellian V60 Firmware 1.25
Mitel Micollab 6.0
Mitel Micollab 7.0
Mitel Micollab 7.1
Mitel Micollab 7.2
Mitel Micollab 7.3.0.104
Mitel Micollab 7.3
Mitel Mivoice 1.1.3.3
Mitel Mivoice 1.2.0.11
Mitel Mivoice 1.3.2.2
4 EDB exploits
2 Nmap scripts
305 Github repositories
4 Articles
NA
CVE-2014-2326
Cross-site scripting (XSS) vulnerability in cdef.php in Cacti 0.8.7g, 0.8.8b, and previous versions allows remote malicious users to inject arbitrary web script or HTML via unspecified vectors.
Fedoraproject Fedora 19
Fedoraproject Fedora 20
Opensuse Opensuse 13.2
Opensuse Opensuse 13.1
Cacti Cacti 0.8.7g
Debian Debian Linux 7.0
NA
CVE-2014-0019
Stack-based buffer overflow in socat 1.3.0.0 up to and including 1.7.2.2 and 2.0.0-b1 up to and including 2.0.0-b6 allows local users to cause a denial of service (segmentation fault) via a long server name in the PROXY-CONNECT address in the command line.
Dest-unreach Socat 2.0.0
Fedoraproject Fedora 20
Fedoraproject Fedora 19
Opensuse Opensuse 13.1
Dest-unreach Socat 1.3.1.0
Dest-unreach Socat 1.3.2.1
Dest-unreach Socat 1.4.2.0
Dest-unreach Socat 1.5.0.0
Dest-unreach Socat 1.7.1.0
Dest-unreach Socat 1.7.1.2
Dest-unreach Socat 1.4.3.0
Dest-unreach Socat 1.7.2.2
Dest-unreach Socat 1.3.0.0
Dest-unreach Socat 1.6.0.0
Dest-unreach Socat 1.6.0.1
Dest-unreach Socat 1.7.0.0
Dest-unreach Socat 1.7.0.1
Dest-unreach Socat 1.3.2.2
Dest-unreach Socat 1.4.0.0
Dest-unreach Socat 1.4.0.1
Dest-unreach Socat 1.4.0.2
Dest-unreach Socat 1.4.0.3
NA
CVE-2014-0010
Multiple cross-site request forgery (CSRF) vulnerabilities in user/profile/index.php in Moodle up to and including 2.2.11, 2.3.x prior to 2.3.11, 2.4.x prior to 2.4.8, 2.5.x prior to 2.5.4, and 2.6.x prior to 2.6.1 allow remote malicious users to hijack the authentication of admi...
Moodle Moodle 2.4.2
Moodle Moodle 2.4.4
Moodle Moodle 2.4.6
Moodle Moodle 2.4.7
Moodle Moodle 2.4.0
Moodle Moodle 2.4.1
Moodle Moodle 2.4.3
Moodle Moodle 2.4.5
Fedoraproject Fedora 20
Fedoraproject Fedora 19
Moodle Moodle 2.6.0
Moodle Moodle 2.5.1
Moodle Moodle 2.5.2
Moodle Moodle 2.5.3
Moodle Moodle 2.5.0
Moodle Moodle 2.0.1
Moodle Moodle 2.0.3
Moodle Moodle 2.0.8
Moodle Moodle 2.1.0
Moodle Moodle 2.1.6
Moodle Moodle 2.1.8
Moodle Moodle 2.2.3
NA
CVE-2013-2139
Buffer overflow in srtp.c in libsrtp in srtp 1.4.5 and previous versions allows remote malicious users to cause a denial of service (crash) via vectors related to a length inconsistency in the crypto_policy_set_from_profile_for_rtp and srtp_protect functions.
Opensuse Opensuse 12.3
Fedoraproject Fedora 18
Fedoraproject Fedora 20
Fedoraproject Fedora 19
Opensuse Opensuse 13.1
Cisco Libsrtp
Cisco Libsrtp 1.4.4
Cisco Libsrtp 1.4.2
Cisco Libsrtp 1.0.5
Cisco Libsrtp 1.0.4
Cisco Libsrtp 1.0.2
Cisco Libsrtp 1.0.1
Cisco Libsrtp 1.4.0
Cisco Libsrtp 1.0.6
Cisco Libsrtp 1.4.1
Cisco Libsrtp 1.3.20
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
blind SQL injection
SSRF
buffer overflow
CVE-2023-28952
CVE-2023-41822
CVE-2024-27956
CVE-2023-7028
CVE-2024-34447
CVE-2024-34460
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
4
5
6
7
8
9
10
NEXT »