Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
dos vulnerabilities and exploits
(subscribe to this query)
7.5
CVSSv3
CVE-2021-20216
A flaw was found in Privoxy in versions prior to 3.0.31. A memory leak that occurs when decompression fails unexpectedly may lead to a denial of service. The highest threat from this vulnerability is to system availability.
Privoxy Privoxy
7.5
CVSSv3
CVE-2021-20272
A flaw was found in privoxy prior to 3.0.32. An assertion failure could be triggered with a crafted CGI request leading to server crash.
Privoxy Privoxy
Debian Debian Linux 9.0
7.5
CVSSv3
CVE-2021-20273
A flaw was found in privoxy prior to 3.0.32. A crash can occur via a crafted CGI request if Privoxy is toggled off.
Privoxy Privoxy
Debian Debian Linux 9.0
NA
CVE-2004-0466
WebConnect 6.5, 6.4.4, and possibly earlier versions allows remote malicious users to cause a denial of service (hang) via a URL containing an MS-DOS device name such as (1) AUX, (2) CON, (3) PRN, (4) COM1, or (5) LPT1.
Openconnect Webconnect 6.5
Openconnect Webconnect 6.4.4
NA
CVE-2006-0956
nuauth in NuFW prior to 1.0.21 does not properly handle blocking TLS sockets, which allows remote authenticated users to cause a denial of service (service hang) by flooding packets at the authentication server.
Nufw Nufw Firewall 1.0.20
7.5
CVSSv3
CVE-2021-20274
A flaw was found in privoxy prior to 3.0.32. A crash may occur due a NULL-pointer dereference when the socks server misbehaves.
Privoxy Privoxy
7.5
CVSSv3
CVE-2021-20276
A flaw was found in privoxy prior to 3.0.32. Invalid memory access with an invalid pattern passed to pcre_compile() may lead to denial of service.
Privoxy Privoxy
Debian Debian Linux 9.0
7.5
CVSSv3
CVE-2021-20217
A flaw was found in Privoxy in versions prior to 3.0.31. An assertion failure triggered by a crafted CGI request may lead to denial of service. The highest threat from this vulnerability is to system availability.
Privoxy Privoxy
5.3
CVSSv3
CVE-2024-22023
An XML entity expansion or XEE vulnerability in SAML component of Ivanti Connect Secure (9.x, 22.x) and Ivanti Policy Secure allows an unauthenticated malicious user to send specially crafted XML requests in-order-to temporarily cause resource exhaustion thereby resulting in a li...
Ivanti Connect Secure 9.1
Ivanti Policy Secure 9.1
Ivanti Policy Secure 9.0
Ivanti Connect Secure 22.1
Ivanti Connect Secure 22.2
Ivanti Connect Secure 22.3
Ivanti Connect Secure 22.4
Ivanti Connect Secure 22.5
Ivanti Connect Secure 22.6
Ivanti Policy Secure 22.1
Ivanti Policy Secure 22.2
Ivanti Policy Secure 22.3
Ivanti Policy Secure 22.4
Ivanti Policy Secure 22.5
Ivanti Policy Secure 22.6
1 Article
7.5
CVSSv3
CVE-2024-22052
A null pointer dereference vulnerability in IPSec component of Ivanti Connect Secure (9.x, 22.x) and Ivanti Policy Secure allows an unauthenticated malicious user to send specially crafted requests in-order-to crash the service thereby causing a DoS attack
Ivanti Connect Secure 9.1
Ivanti Policy Secure 9.1
Ivanti Policy Secure 9.0
Ivanti Connect Secure 22.1
Ivanti Connect Secure 22.2
Ivanti Connect Secure 22.3
Ivanti Connect Secure 22.4
Ivanti Connect Secure 22.5
Ivanti Connect Secure 22.6
Ivanti Policy Secure 22.1
Ivanti Policy Secure 22.2
Ivanti Policy Secure 22.3
Ivanti Policy Secure 22.4
Ivanti Policy Secure 22.5
Ivanti Policy Secure 22.6
1 Article
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2020-4463
CVE-2024-29895
inject
CVE-2023-52689
CVE-2024-5049
CVE-2024-5051
privilege escalation
physical
CVE-2023-52676
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
5
6
7
8
9
10
NEXT »