Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
file vulnerabilities and exploits
(subscribe to this query)
5.5
CVSSv3
CVE-2017-1000249
An issue in file() was introduced in commit 9611f31313a93aa036389c5f3b15eea53510d4d1 (Oct 2016) lets an attacker overwrite a fixed 20 bytes stack buffer with a specially crafted .notes section in an ELF binary. This was fixed in commit 35c94dc6acc418f1ad7f6241a6680e5327495793 (Au...
File Project File 5.29
NA
CVE-2004-2111
Stack-based buffer overflow in the site chmod command in Serv-U FTP Server prior to 4.2 allows remote malicious users to execute arbitrary code via a long filename.
Solarwinds Serv-u File Server 4.0.0.4
Solarwinds Serv-u File Server 3.0.0.17
Solarwinds Serv-u File Server 4.1.0.0
Solarwinds Serv-u File Server
Solarwinds Serv-u File Server 3.1.0.3
Solarwinds Serv-u File Server 3.0.0.16
Solarwinds Serv-u File Server 3.1.0.0
Solarwinds Serv-u File Server 3.1.0.1
5 EDB exploits
NA
CVE-2015-4379
Cross-site request forgery (CSRF) vulnerability in the Webform Multiple File Upload module 6.x-1.x prior to 6.x-1.3 and 7.x-1.x prior to 7.x-1.3 for Drupal allows remote malicious users to hijack the authentication of certain users for requests that delete files via unspecified v...
Webform Multiple File Upload Project Webform Multiple File Upload 6.x-1.1
Webform Multiple File Upload Project Webform Multiple File Upload 6.x-1.2
Webform Multiple File Upload Project Webform Multiple File Upload 7.x-1.x
Webform Multiple File Upload Project Webform Multiple File Upload 7.x-1.2
Webform Multiple File Upload Project Webform Multiple File Upload 6.x-1.0
NA
CVE-2004-1675
Serv-U FTP server 4.x and 5.x allows remote malicious users to cause a denial of service (application crash) via a STORE UNIQUE (STOU) command with an MS-DOS device name argument such as (1) COM1, (2) LPT1, (3) PRN, or (4) AUX.
Solarwinds Serv-u File Server 5.0.0.9
Solarwinds Serv-u File Server 5.0.0.11
Solarwinds Serv-u File Server 4.0.0.4
Solarwinds Serv-u File Server 5.0.0.0
Solarwinds Serv-u File Server 5.0.0.4
Solarwinds Serv-u File Server 5.2.0.1
Solarwinds Serv-u File Server 5.1.0.0
Solarwinds Serv-u File Server 5.2.0.0
Solarwinds Serv-u File Server 4.1.0.0
Solarwinds Serv-u File Server 4.1.0.3
1 EDB exploit
7
CVSSv3
CVE-2016-2985
IBM Spectrum Scale 4.1.1.x prior to 4.1.1.8 and 4.2.x prior to 4.2.0.4 and General Parallel File System (GPFS) 3.5.x prior to 3.5.0.32 and 4.1.x prior to 4.1.1.8 allow local users to gain privileges via crafted environment variables to a /usr/lpp/mmfs/bin/ setuid program.
Ibm Spectrum Scale 4.1.1.2
Ibm Spectrum Scale 4.1.1.3
Ibm Spectrum Scale 4.2.0.1
Ibm Spectrum Scale 4.2.0.2
Ibm Spectrum Scale 4.1.1.4
Ibm Spectrum Scale 4.1.1.5
Ibm Spectrum Scale 4.1.1.0
Ibm Spectrum Scale 4.1.1.1
Ibm Spectrum Scale 4.1.1.8
Ibm Spectrum Scale 4.2.0.0
Ibm Spectrum Scale 4.2.0.3
Ibm Spectrum Scale 4.1.1.6
Ibm Spectrum Scale 4.1.1.7
Ibm General Parallel File System 4.1.0.5
Ibm General Parallel File System 4.1.0.6
Ibm General Parallel File System 3.5.0.4
Ibm General Parallel File System 3.5.0.5
Ibm General Parallel File System 3.5.0.12
Ibm General Parallel File System 4.1.0.3
Ibm General Parallel File System 4.1.0.4
Ibm General Parallel File System 3.5.0.2
Ibm General Parallel File System 3.5.0.3
7
CVSSv3
CVE-2016-2984
IBM Spectrum Scale 4.1.1.x prior to 4.1.1.8 and 4.2.x prior to 4.2.0.4 and General Parallel File System (GPFS) 3.5.x prior to 3.5.0.32 and 4.1.x prior to 4.1.1.8 allow local users to gain privileges via crafted command-line parameters to a /usr/lpp/mmfs/bin/ setuid program.
Ibm Spectrum Scale 4.1.1.6
Ibm Spectrum Scale 4.1.1.7
Ibm Spectrum Scale 4.1.1.0
Ibm Spectrum Scale 4.1.1.1
Ibm Spectrum Scale 4.1.1.8
Ibm Spectrum Scale 4.2.0.0
Ibm Spectrum Scale 4.1.1.2
Ibm Spectrum Scale 4.1.1.3
Ibm Spectrum Scale 4.2.0.1
Ibm Spectrum Scale 4.2.0.2
Ibm Spectrum Scale 4.1.1.4
Ibm Spectrum Scale 4.1.1.5
Ibm Spectrum Scale 4.2.0.3
Ibm General Parallel File System 4.1.0.0
Ibm General Parallel File System 4.1.0.1
Ibm General Parallel File System 3.5.0.0
Ibm General Parallel File System 3.5.0.1
Ibm General Parallel File System 3.5.0.8
Ibm General Parallel File System 3.5.0.9
Ibm General Parallel File System 3.5.0.16
Ibm General Parallel File System 3.5.0.17
Ibm General Parallel File System 3.5.0.25
NA
CVE-2008-3731
Unspecified vulnerability in Serv-U File Server 7.0.0.1, and other versions prior to 7.2.0.1, allows remote authenticated users to cause a denial of service (daemon crash) via an SSH session with SFTP commands for directory creation and logging.
Solarwinds Serv-u File Server 7.1.0.0
Solarwinds Serv-u File Server 7.1.0.1
Solarwinds Serv-u File Server 7.0.0.1
Solarwinds Serv-u File Server 7.0.0.2
Solarwinds Serv-u File Server 7.0.0.3
Solarwinds Serv-u File Server 7.0.0.4
Solarwinds Serv-u File Server 7.1.0.2
Solarwinds Serv-u File Server 7.2.0.0
6.5
CVSSv3
CVE-2016-0361
IBM General Parallel File System (GPFS) 3.5 prior to 3.5.0.29 efix 6 and 4.1.1 prior to 4.1.1.4 efix 9, when the Spectrum Scale GUI is used with DB2 on Linux, UNIX and Windows, allows remote authenticated users to obtain sensitive information via unspecified vectors, as demonstra...
Ibm General Parallel File System 3.5.0.9
Ibm General Parallel File System 3.5.0.7
Ibm General Parallel File System 4.1.0.1
Ibm General Parallel File System 3.5.0.16
Ibm General Parallel File System 3.5.0.11
Ibm General Parallel File System 3.5.0.3
Ibm General Parallel File System 3.5
5.5
CVSSv3
CVE-2022-36313
An issue exists in the file-type package prior to 16.5.4 and 17.x prior to 17.1.3 for Node.js. A malformed MKV file could cause the file type detector to get caught in an infinite loop. This would make the application become unresponsive and could be used to cause a DoS attack.
File-type Project File-type
5.4
CVSSv3
CVE-2023-23676
Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in Bruno "Aesqe" Babic File Gallery plugin <= 1.8.5.3 versions.
File Gallery Project File Gallery
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
brute force
CVE-2024-24908
open redirect
CVE-2024-31497
CVE-2023-45866
CVE-2024-4135
CVE-2024-25523
cache poisoning
CVE-2024-4649
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
8
9
NEXT »