Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
a-link vulnerabilities and exploits
(subscribe to this query)
516
VMScore
CVE-2017-18891
An issue exists in Mattermost Server prior to 4.2.0, 4.1.1, and 4.0.5. It allows Phishing because an error page can have a link.
Mattermost Mattermost Server
Mattermost Mattermost Server 4.2.0
383
VMScore
CVE-2020-28249
Joplin 1.2.6 for Desktop allows XSS via a LINK element in a note.
Joplin Project Joplin 1.2.6
1 Github repository
505
VMScore
CVE-2002-0974
Help and Support Center for Windows XP allows remote malicious users to delete arbitrary files via a link to the hcp: protocol that accesses uplddrvinfo.htm.
Microsoft Windows Xp
1 EDB exploit
668
VMScore
CVE-2018-11545
md4c 0.2.5 has a heap-based buffer overflow in md_merge_lines because md_is_link_label mishandles the case of a link label composed solely of backslash escapes.
Md4c Project Md4c 0.2.5
570
VMScore
CVE-2006-5913
Microsoft Internet Explorer 7 allows remote malicious users to (1) cause a security certificate from a secure web site to appear invalid via a link to res://ieframe.dll/sslnavcancel.htm with the target site in the anchor identifier, which displays the site's URL in the addre...
Microsoft Ie 7.0
383
VMScore
CVE-2021-22223
Client-Side code injection through Feature Flag name in GitLab CE/EE starting with 11.9 allows a specially crafted feature flag name to PUT requests on behalf of other users via clicking on a link
Gitlab Gitlab
561
VMScore
CVE-2011-1136
In tesseract 2.03 and 2.04, an attacker can rewrite an arbitrary user file by guessing the PID and creating a link to the user's file.
Tesseract Project Tesseract 2.03
Tesseract Project Tesseract 2.04
Debian Debian Linux 8.0
Debian Debian Linux 9.0
Debian Debian Linux 10.0
668
VMScore
CVE-2002-0989
The URL handler in the manual browser option for Gaim prior to 0.59.1 allows remote malicious users to execute arbitrary script via shell metacharacters in a link.
Rob Flynn Gaim 0.51
Rob Flynn Gaim 0.52
Rob Flynn Gaim 0.59
Rob Flynn Gaim 0.57
Rob Flynn Gaim 0.58
Rob Flynn Gaim 0.53
Rob Flynn Gaim 0.54
Rob Flynn Gaim 0.55
Rob Flynn Gaim 0.56
383
VMScore
CVE-2015-1370
Incomplete blacklist vulnerability in marked 0.3.2 and previous versions for Node.js allows remote malicious users to conduct cross-site scripting (XSS) attacks via a vbscript tag in a link.
Marked Project Marked
755
VMScore
CVE-2005-1674
Cross-Site Request Forgery (CSRF) vulnerability in Help Center Live allows remote malicious users to perform actions as the administrator via a link or IMG tag to view.php.
Helpcenterlive Help Center Live -
1 EDB exploit
VMScore
CVSSv2
CVSSv3
VMScore
Recommendations:
SSTI
CVE-2024-35863
CVE-2024-35910
man-in-the-middle
CVE-2024-35912
CVE-2024-25742
LFI
CVE-2024-32002
CVE-2024-22120
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
8
NEXT »