Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
atlas vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2023-1897
Atlas Copco Power Focus 6000 web server does not sanitize the login information stored by the authenticated user’s browser, which could allow an attacker with access to the user’s computer to gain credential information of the controller.
Atlascopco Power Focus 6000 Firmware -
6.8
CVSSv2
CVE-2016-6100
IBM Disposal and Governance Management for IT and IBM Global Retention Policy and Schedule Management, components of IBM Atlas Policy Suite 6.0.3 is vulnerable to cross-site request forgery which could allow an malicious user to execute malicious and unauthorized actions transmit...
Ibm Disposal And Governance Management For It 6.0.1.1
Ibm Disposal And Governance Management For It 6.0.1.2
Ibm Disposal And Governance Management For It 6.0.1.3
Ibm Disposal And Governance Management For It 6.0.1.4
Ibm Disposal And Governance Management For It 6.0.3.3
Ibm Disposal And Governance Management For It 6.0.3
Ibm Disposal And Governance Management For It 6.0.1.0
Ibm Disposal And Governance Management For It 6.0.1.5
Ibm Disposal And Governance Management For It 6.0.1.7
Ibm Disposal And Governance Management For It 6.0.3.1
Ibm Disposal And Governance Management For It 6.0
Ibm Disposal And Governance Management For It 6.0.3.4
Ibm Disposal And Governance Management For It 6.0.3.2
Ibm Disposal And Governance Management For It 6.0.1.6
Ibm Disposal And Governance Management For It 6.0.2
Ibm Global Retention Policy And Schedule Management 6.0.1.0
Ibm Global Retention Policy And Schedule Management 6.0.1.1
Ibm Global Retention Policy And Schedule Management 6.0.1.2
Ibm Global Retention Policy And Schedule Management 6.0.1.3
Ibm Global Retention Policy And Schedule Management 6.0.3.3
Ibm Global Retention Policy And Schedule Management 6.0.3
Ibm Global Retention Policy And Schedule Management 6.0.1.5
6.8
CVSSv2
CVE-2018-3982
An exploitable arbitrary write vulnerability exists in the Word document parser of the Atlantis Word Processor 3.0.2.3 and 3.0.2.5. A specially crafted document can prevent Atlas from adding elements to an array that is indexed by a loop. When reading from this array, the applica...
Atlantiswordprocessor Atlantis Word Processor 3.0.2.5
Atlantiswordprocessor Atlantis Word Processor 3.0.2.3
9.3
CVSSv2
CVE-2018-0802
Equation Editor in Microsoft Office 2007, Microsoft Office 2010, Microsoft Office 2013, and Microsoft Office 2016 allow a remote code execution vulnerability due to the way objects are handled in memory, aka "Microsoft Office Memory Corruption Vulnerability". This CVE i...
Microsoft Office 2007
Microsoft Office 2013
Microsoft Word 2013
Microsoft Office 2016
Microsoft Office Compatibility Pack -
Microsoft Word 2007
Microsoft Word 2010
Microsoft Office 2010
Microsoft Word 2016
13 Github repositories
23 Articles
9.3
CVSSv2
CVE-2012-0158
The (1) ListView, (2) ListView2, (3) TreeView, and (4) TreeView2 ActiveX controls in MSCOMCTL.OCX in the Common Controls in Microsoft Office 2003 SP3, 2007 SP2 and SP3, and 2010 Gold and SP1; Office 2003 Web Components SP3; SQL Server 2000 SP4, 2005 SP4, and 2008 SP2, SP3, and R2...
Microsoft Office 2010
Microsoft Office 2003
Microsoft Office Web Components 2003
Microsoft Office 2007
Microsoft Sql Server 2000
Microsoft Sql Server 2008
Microsoft Sql Server 2005
Microsoft Biztalk Server 2002
Microsoft Commerce Server 2002
Microsoft Commerce Server 2007
Microsoft Commerce Server 2009
Microsoft Visual Foxpro 8.0
Microsoft Visual Foxpro 9.0
Microsoft Visual Basic 6.0
1 EDB exploit
7 Github repositories
44 Articles
9.3
CVSSv2
CVE-2017-11882
Microsoft Office 2007 Service Pack 3, Microsoft Office 2010 Service Pack 2, Microsoft Office 2013 Service Pack 1, and Microsoft Office 2016 allow an malicious user to run arbitrary code in the context of the current user by failing to properly handle objects in memory, aka "...
Microsoft Office 2013
Microsoft Office 2010
Microsoft Office 2016
Microsoft Office 2007
1 EDB exploit
59 Github repositories
50 Articles
4.3
CVSSv2
CVE-2018-11688
Ignite Realtime Openfire prior to 3.9.2 is vulnerable to cross-site scripting, caused by improper validation of user-supplied input. A remote attacker could exploit this vulnerability via a crafted URL to execute script in a victim's Web browser within the security context o...
Igniterealtime Openfire 3.7.1
4.3
CVSSv2
CVE-2018-11689
Web Viewer for Hanwha DVR 2.17 and Smart Viewer in Samsung Web Viewer for Samsung DVR are vulnerable to XSS via the /cgi-bin/webviewer_login_page data3 parameter. (The same Web Viewer codebase was transitioned from Samsung to Hanwha.)
Samsung Smartviewer -
Hanwha-security Hrd-1642 Firmware
Hanwha-security Hrd-842 Firmware
Hanwha-security Hrd-442 Firmware
Hanwha-security Hrd-1641 Firmware
Hanwha-security Hrd-841 Firmware
Hanwha-security Hrd-840 Firmware
Hanwha-security Hrd-440 Firmware
Hanwha-security Hrd-443 Firmware
Hanwha-security Srd-1694u Firmware
4.3
CVSSv2
CVE-2018-11690
The Balbooa Gridbox extension version 2.4.0 and previous versions for Joomla! is vulnerable to cross-site scripting, caused by improper validation of user-supplied input. A remote attacker could exploit this vulnerability via a crafted URL to execute script in a victim's Web...
Balbooa Gridbox
6.4
CVSSv2
CVE-2018-18061
An issue exists in dialog.php in tecrail Responsive FileManager 9.8.1. Attackers can access the file manager interface that provides them with the ability to upload and delete files.
Tecrail Responsive Filemanager 9.8.1
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
deserialization
CVE-2024-4040
cross-site scripting
CVE-2023-25790
CVE-2024-2961
XML external entity
CVE-2024-26926
CVE-2024-32806
CVE-2024-32711
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
NEXT »