Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
donato ferrante vulnerabilities and exploits
(subscribe to this query)
10
CVSSv2
CVE-2004-1127
Buffer overflow in Open Dc Hub 0.7.14 allows remote attackers, with administrator privileges, to execute arbitrary code via a long RedirectAll command.
Open Dc Hub Direct Connect Peer-to-peer Client 0.7.14
1 EDB exploit
6.8
CVSSv2
CVE-2004-0673
Cross-site scripting (XSS) vulnerability in SCI Photo Chat Server 3.4.9 allows remote malicious users to execute arbitrary web script as other users via an invalid request that is echoed in the resulting error message.
Simm-comm Sci Photo Chat 3.4.9
1 EDB exploit
6.8
CVSSv2
CVE-2003-1199
Cross-site scripting (XSS) vulnerability in MyProxy 20030629 allows remote malicious users to inject arbitrary web script or HTML via the URL.
Myproxy Myproxy 2003-06-29
1 EDB exploit
5
CVSSv2
CVE-2006-0971
Directory traversal vulnerability in Lionel Reyero DirectContact 0.3b allows remote malicious users to read arbitrary files via a .. (dot dot) in the URL.
Lionel Reyero Directcontact 0.3b
1 EDB exploit
5
CVSSv2
CVE-2005-1493
Directory traversal vulnerability in SimpleCam 1.2 allows remote malicious users to read arbitrary files via a ..\ (dot dot backslash) in the URL.
Dead Pirate Software Simplecam 1.2
1 EDB exploit
5
CVSSv2
CVE-2005-0950
Directory traversal vulnerability in FastStone 4in1 Browser 1.2 allows remote malicious users to read arbitrary files via a (1) ... (triple dot) or (2) ..\ (dot dot backslash) in the URL.
Faststone 4in1 Browser 1.2
1 EDB exploit
5
CVSSv2
CVE-2004-1887
Ada Image Server (ImgSvr) 0.4 allows remote malicious users to view directories or download files via an HTTP request with a trailing %00 (null).
Ada Imgsvr 0.4
2 EDB exploits
5
CVSSv2
CVE-2004-2646
The addUser function in UserManager.java in Free Web Chat 2.0 allows remote malicious users to cause a denial of service (uncaught NullPointerException) via unknown attack vectors that cause the usrName variable to be null.
1 EDB exploit
5
CVSSv2
CVE-2004-2617
Directory traversal vulnerability in Pegasi Web Server (PWS) 0.2.2 allows remote malicious users to read files outside of the web root via a .. (dot dot) directly after the initial '/' (slash) in the URI.
Pegasi Web Server Pegasi Web Server 0.2.2
1 EDB exploit
5
CVSSv2
CVE-2004-2647
Free Web Chat 2.0 allows remote malicious users to cause a denial of service (CPU consumption) via multiple connections from the same user.
1 EDB exploit
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
validation
CVE-2012-1823
malicious code
CVE-2024-5770
CVE-2023-45866
CVE-2024-35687
local users
CVE-2024-31246
CVE-2024-35730
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
NEXT »