Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
andres rojas vulnerabilities and exploits
(subscribe to this query)
605
VMScore
CVE-2014-9015
Drupal 6.x prior to 6.34 and 7.x prior to 7.34 allows remote malicious users to hijack sessions via a crafted request, as demonstrated by a crafted request to a server that supports both HTTP and HTTPS sessions.
Drupal Drupal
Debian Debian Linux 7.0
506
VMScore
CVE-2014-9016
The password hashing API in Drupal 7.x prior to 7.34 and the Secure Password Hashes (aka phpass) module 6.x-2.x prior to 6.x-2.1 for Drupal allows remote malicious users to cause a denial of service (CPU and memory consumption) via a crafted request.
Drupal Drupal
Secure Password Hashes Project Secure Passwords Hashes
Debian Debian Linux 7.0
1 EDB exploit
2 Github repositories
505
VMScore
CVE-2014-9218
libraries/common.inc.php in phpMyAdmin 4.0.x prior to 4.0.10.7, 4.1.x prior to 4.1.14.8, and 4.2.x prior to 4.2.13.1 allows remote malicious users to cause a denial of service (resource consumption) via a long password.
Phpmyadmin Phpmyadmin 4.0.0
Phpmyadmin Phpmyadmin 4.0.2
Phpmyadmin Phpmyadmin 4.0.3
Phpmyadmin Phpmyadmin 4.0.8
Phpmyadmin Phpmyadmin 4.0.9
Phpmyadmin Phpmyadmin 4.1.0
Phpmyadmin Phpmyadmin 4.1.14.1
Phpmyadmin Phpmyadmin 4.1.14.3
Phpmyadmin Phpmyadmin 4.1.7
Phpmyadmin Phpmyadmin 4.1.8
Phpmyadmin Phpmyadmin 4.2.10.1
Phpmyadmin Phpmyadmin 4.2.2
Phpmyadmin Phpmyadmin 4.2.8
Phpmyadmin Phpmyadmin 4.2.8.1
Phpmyadmin Phpmyadmin 4.0.1
Phpmyadmin Phpmyadmin 4.0.10
Phpmyadmin Phpmyadmin 4.0.4.2
Phpmyadmin Phpmyadmin 4.0.5
Phpmyadmin Phpmyadmin 4.1.11
Phpmyadmin Phpmyadmin 4.1.12
Phpmyadmin Phpmyadmin 4.1.3
Phpmyadmin Phpmyadmin 4.1.4
1 EDB exploit
510
VMScore
CVE-2014-9034
wp-includes/class-phpass.php in WordPress prior to 3.7.5, 3.8.x prior to 3.8.5, 3.9.x prior to 3.9.3, and 4.x prior to 4.0.1 allows remote malicious users to cause a denial of service (CPU consumption) via a long password that is improperly handled during hashing, a similar issue...
Wordpress Wordpress 3.9.2
Wordpress Wordpress 4.0
Wordpress Wordpress
Wordpress Wordpress 3.8
Wordpress Wordpress 3.8.1
Wordpress Wordpress 3.8.2
Wordpress Wordpress 3.8.3
Wordpress Wordpress 3.9
Wordpress Wordpress 3.8.4
Wordpress Wordpress 3.9.1
2 EDB exploits
1 Github repository
VMScore
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2020-4463
CVE-2024-29895
inject
CVE-2023-52689
CVE-2024-5049
CVE-2024-5051
privilege escalation
physical
CVE-2023-52676
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started