Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
404 not found vulnerabilities and exploits
(subscribe to this query)
6.1
CVSSv3
CVE-2019-10227
openITCOCKPIT prior to 3.7.1 has reflected XSS in the 404-not-found component.
It-novum Openitcockpit
1 EDB exploit
6.1
CVSSv3
CVE-2018-10547
An issue exists in ext/phar/phar_object.c in PHP prior to 5.6.36, 7.0.x prior to 7.0.30, 7.1.x prior to 7.1.17, and 7.2.x prior to 7.2.5. There is Reflected XSS on the PHAR 403 and 404 error pages via request data of a request for a .phar file. NOTE: this vulnerability exists bec...
Php Php
Canonical Ubuntu Linux 12.04
Canonical Ubuntu Linux 16.04
Canonical Ubuntu Linux 18.04
Canonical Ubuntu Linux 14.04
Canonical Ubuntu Linux 17.10
Debian Debian Linux 7.0
Debian Debian Linux 8.0
Debian Debian Linux 9.0
Netapp Storage Automation Store -
5.5
CVSSv3
CVE-2022-21166
Incomplete cleanup in specific special register write operations for some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.
Xen Xen
Fedoraproject Fedora 35
Fedoraproject Fedora 36
Intel Sgx Dcap
Intel Sgx Psw
Intel Sgx Sdk
Vmware Esxi 7.0
Debian Debian Linux 9.0
Debian Debian Linux 10.0
Debian Debian Linux 11.0
5.5
CVSSv3
CVE-2022-21123
Incomplete cleanup of multi-core shared buffers for some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.
Xen Xen
Fedoraproject Fedora 35
Fedoraproject Fedora 36
Intel Sgx Dcap
Intel Sgx Psw
Intel Sgx Sdk
Vmware Esxi 7.0
Debian Debian Linux 9.0
Debian Debian Linux 10.0
Debian Debian Linux 11.0
5.5
CVSSv3
CVE-2022-21125
Incomplete cleanup of microarchitectural fill buffers on some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.
Xen Xen
Fedoraproject Fedora 35
Fedoraproject Fedora 36
Intel Sgx Dcap
Intel Sgx Psw
Intel Sgx Sdk
Vmware Esxi 7.0
Debian Debian Linux 9.0
Debian Debian Linux 10.0
Debian Debian Linux 11.0
5.4
CVSSv3
CVE-2022-39348
Twisted is an event-based framework for internet applications. Started with version 0.9.4, when the host header does not match a configured host `twisted.web.vhost.NameVirtualHost` will return a `NoResource` resource which renders the Host header unescaped into the 404 response a...
Twistedmatrix Twisted
Debian Debian Linux 10.0
5.3
CVSSv3
CVE-2019-13927
A vulnerability has been identified in Desigo PX automation controllers PXC00-E.D, PXC50-E.D, PXC100-E.D, PXC200-E.D with Desigo PX Web modules PXA40-W0, PXA40-W1, PXA40-W2 (All firmware versions < V6.00.320), Desigo PX automation controllers PXC00-U, PXC64-U, PXC128-U with De...
Siemens Pxc00-e.d Firmware
Siemens Pxc50-e.d Firmware
Siemens Pxc100-e.d Firmware
Siemens Pxc200-e.d Firmware
Siemens Pxa40-w0 Firmware
Siemens Pxa40-w1 Firmware
Siemens Pxa40-w2 Firmware
Siemens Pxc00-u Firmware
Siemens Pxc64-u Firmware
Siemens Pxc128-u Firmware
Siemens Pxa30-w0 Firmware
Siemens Pxa30-w1 Firmware
Siemens Pxa30-w2 Firmware
Siemens Pxc22.1-e.d Firmware
Siemens Pxc36-e.d Firmware
Siemens Pxc36.1-e.d Firmware
NA
CVE-2022-23816
Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate is unused by its CNA. Notes: none.
1 Article
NA
CVE-2015-0895
Cross-site request forgery (CSRF) vulnerability in the All In One WP Security & Firewall plugin prior to 3.9.0 for WordPress allows remote malicious users to hijack the authentication of administrators for requests that delete logs of 404 (aka Not Found) HTTP status codes.
Tips And Tricks Hq All In One Wordpress Security And Firewall
NA
CVE-2014-9361
The LoginToboggan module 7.x-1.x prior to 7.x-1.4 for Drupal does not properly unset the authorized user role for certain users, which allows remote attackers with the pre-authorized role to gain privileges and possibly obtain sensitive information by accessing a Page Not Found (...
Logintoboggan Project Logintoboggan 7.x-1.2
Logintoboggan Project Logintoboggan 7.x-1.1
Logintoboggan Project Logintoboggan 7.x-1.0
Logintoboggan Project Logintoboggan 7.x-1.3
Logintoboggan Project Logintoboggan 7.x-1.x
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
NULL pointer dereference
CVE-2023-52689
CVE-2024-23803
client side
CVE-2023-52696
information disclosure
CVE-2024-35843
CVE-2024-27130
CVE-2023-52697
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
NEXT »