Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
file transfer appliance vulnerabilities and exploits
(subscribe to this query)
7.5
CVSSv2
CVE-2016-2351
SQL injection vulnerability in home/seos/courier/security_key2.api on the Accellion File Transfer Appliance (FTA) before FTA_9_12_40 allows remote malicious users to execute arbitrary SQL commands via the client_id parameter.
Accellion File Transfer Appliance
6.5
CVSSv2
CVE-2016-2352
The Accellion File Transfer Appliance (FTA) before FTA_9_12_40 allows remote authenticated users to execute arbitrary commands by leveraging the YUM_CLIENT restricted-user role.
Accellion File Transfer Appliance
7.2
CVSSv2
CVE-2016-2353
The Accellion File Transfer Appliance (FTA) before FTA_9_12_40 allows local users to add an SSH key to an arbitrary group, and consequently gain privileges, via unspecified vectors.
Accellion File Transfer Appliance
9
CVSSv2
CVE-2009-4646
Static code injection vulnerability in the administrative web interface in Accellion Secure File Transfer Appliance allows remote authenticated administrators to inject arbitrary shell commands by appending them to a request to update the SNMP public community string.
Accellion Secure File Transfer Appliance
7.5
CVSSv2
CVE-2019-5623
Accellion File Transfer Appliance version FTA_8_0_540 suffers from an instance of CWE-77: Improper Neutralization of Special Elements used in a Command ('Command Injection').
Accellion File Transfer Appliance 8 0 540
7.5
CVSSv2
CVE-2019-5622
Accellion File Transfer Appliance version FTA_8_0_540 suffers from an instance of CWE-798: Use of Hard-coded Credentials.
Accellion File Transfer Appliance 8 0 540
4.3
CVSSv2
CVE-2008-3850
Cross-site scripting (XSS) vulnerability in Accellion File Transfer FTA_7_0_135 allows remote malicious users to inject arbitrary web script or HTML via the PATH_INFO to courier/forgot_password.html.
Accellion Secure File Transfer Appliance 7 0 135
1 EDB exploit
4.3
CVSSv2
CVE-2016-6416
The FTP service in Cisco AsyncOS on Email Security Appliance (ESA) devices 9.6.0-000 up to and including 9.9.6-026, Web Security Appliance (WSA) devices 9.0.0-162 up to and including 9.5.0-444, and Content Security Management Appliance (SMA) devices allows remote malicious users ...
Cisco Content Security Management Appliance 9.1.0-033
Cisco Email Security Appliance 9.9 Base
Cisco Web Security Appliance 9.5.0-235
Cisco Web Security Appliance 9.5.0-284
Cisco Email Security Appliance 9.6.0-051
Cisco Email Security Appliance 9.7.1-066
Cisco Content Security Management Appliance 9.1.0-031
Cisco Email Security Appliance 9.9.6-026
Cisco Content Security Management Appliance 9.1.0-103
Cisco Content Security Management Appliance 9.6.0
Cisco Web Security Appliance 9.5 Base
Cisco Content Security Management Appliance 9.1.0-004
Cisco Content Security Management Appliance 9.1.0
Cisco Web Security Appliance 9.5.0-444
Cisco Web Security Appliance 9.1.0-000
Cisco Web Security Appliance 9.1.0-070
Cisco Web Security Appliance 9.0.0-162
Cisco Content Security Management Appliance 9.5.0
Cisco Email Security Appliance 9.6.0-000
Cisco Web Security Appliance 9.1 Base
Cisco Email Security Appliance 9.6.0-042
5
CVSSv2
CVE-2016-1440
The proxy process on Cisco Web Security Appliance (WSA) devices up to and including 9.1.0-070 allows remote malicious users to cause a denial of service (CPU consumption) by establishing an FTP session and then improperly terminating the control connection after a file transfer, ...
Cisco Web Security Appliance 8.8.0-000
Cisco Web Security Appliance 9.1.0-070
Cisco Web Security Appliance 6.0.0-000
Cisco Web Security Appliance 5.6.0-623
Cisco Web Security Appliance 8.0.6-119
Cisco Web Security Appliance 9.0.0-193
Cisco Web Security Appliance 9.0 Base
Cisco Web Security Appliance 7.5.1-000
Cisco Web Security Appliance 7.1.4
Cisco Web Security Appliance 9.1.0-000
Cisco Web Security Appliance 8.5.3-055
Cisco Web Security Appliance 8.5.2-024
Cisco Web Security Appliance 8.0.7-142
Cisco Web Security Appliance 8.5.0-497
Cisco Web Security Appliance 8.5.0.000
Cisco Web Security Appliance 7.1.3
Cisco Web Security Appliance 7.1.2
Cisco Web Security Appliance 7.7.5-835
Cisco Web Security Appliance 7.7.0-608
Cisco Web Security Appliance 8.5.1-021
Cisco Web Security Appliance 7.7.1-000
Cisco Web Security Appliance 8.0.8-mr-113
5
CVSSv2
CVE-2018-1000180
Bouncy Castle BC 1.54 - 1.59, BC-FJA 1.0.0, BC-FJA 1.0.1 and previous versions have a flaw in the Low-level interface to RSA key pair generator, specifically RSA Key Pairs generated in low-level API with added certainty may have less M-R tests than expected. This appears to be fi...
Bouncycastle Fips Java Api
Bouncycastle Legion-of-the-bouncy-castle-java-crytography-api
Debian Debian Linux 9.0
Oracle Retail Xstore Point Of Service 7.1
Oracle Api Gateway 11.1.2.4.0
Oracle Weblogic Server 12.1.3.0.0
Oracle Enterprise Repository 12.1.3.0.0
Oracle Retail Xstore Point Of Service 7.0
Oracle Peoplesoft Enterprise Peopletools 8.55
Oracle Peoplesoft Enterprise Peopletools 8.56
Oracle Webcenter Portal 12.2.1.3.0
Oracle Webcenter Portal 11.1.1.9.0
Oracle Business Process Management Suite 12.1.3.0.0
Oracle Business Process Management Suite 12.2.1.3.0
Oracle Business Process Management Suite 11.1.1.9.0
Oracle Soa Suite 12.1.3.0.0
Oracle Soa Suite 12.2.1.3.0
Oracle Peoplesoft Enterprise Peopletools 8.57
Oracle Managed File Transfer 12.2.1.3.0
Oracle Communications Converged Application Server
Oracle Communications Webrtc Session Controller
Oracle Retail Convenience And Fuel Pos Software 2.8.1
1 Github repository
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-4761
command injection
CVE-2024-3676
IDOR
CVE-2024-30039
CVE-2024-32113
CVE-2024-30049
CVE-2024-4776
SQL injection
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
NEXT »