Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
high-tech bridge vulnerabilities and exploits
(subscribe to this query)
10
CVSSv2
CVE-2012-5878
Bulb Security Smartphone Pentest Framework (SPF) 0.1.2 up to and including 0.1.4 allows remote malicious users to execute arbitrary commands via shell metacharacters in the hostingPath parameter to (1) SEAttack.pl or (2) CSAttack.pl in frameworkgui/ or the (3) appURLPath paramete...
Bulbsecurity Smartphone Pentest Framework
1 EDB exploit
10
CVSSv2
CVE-2015-8352
Directory traversal vulnerability in Zen Cart 1.5.4 allows remote malicious users to include and execute arbitrary local files via a .. (dot dot) in the act parameter to ajax.php.
Zen-cart Zen Cart 1.5.4
1 EDB exploit
10
CVSSv2
CVE-2016-2242
Exponent CMS 2.x prior to 2.3.7 Patch 3 allows remote malicious users to execute arbitrary code via the sc parameter to install/index.php.
Exponentcms Exponent Cms 2.3.5
Exponentcms Exponent Cms 2.3.1
Exponentcms Exponent Cms 2.2.1
Exponentcms Exponent Cms 2.2.0
Exponentcms Exponent Cms 2.0.9
Exponentcms Exponent Cms 2.0.5
Exponentcms Exponent Cms 2.0.4
Exponentcms Exponent Cms 2.3.3
Exponentcms Exponent Cms 2.2.3
Exponentcms Exponent Cms 2.1.3
Exponentcms Exponent Cms 2.1.2
Exponentcms Exponent Cms 2.0.7
Exponentcms Exponent Cms 2.0.6
Exponentcms Exponent Cms 2.0.2
Exponentcms Exponent Cms 2.0.1
Exponentcms Exponent Cms 2.3.7
Exponentcms Exponent Cms 2.3.2
Exponentcms Exponent Cms 2.2.2
Exponentcms Exponent Cms 2.1.1
Exponentcms Exponent Cms 2.1.0
Exponentcms Exponent Cms 2.0.0
Exponentcms Exponent Cms 2.3.8
10
CVSSv2
CVE-2014-1905
Unrestricted file upload vulnerability in ls/vw_snapshots.php in the VideoWhisper Live Streaming Integration plugin prior to 4.29.5 for WordPress allows remote malicious users to execute arbitrary PHP code by uploading a file with a double extension, and then accessing the file v...
Videowhisper Videowhisper Live Streaming Integration
1 EDB exploit
10
CVSSv2
CVE-2014-7985
Directory traversal vulnerability in EspoCRM prior to 2.6.0 allows remote malicious users to include and execute arbitrary local files via a .. (dot dot) in the action parameter to install/index.php.
Espocrm Espocrm
10
CVSSv2
CVE-2012-6429
Buffer overflow in the PrepareSync method in the SyncService.dll ActiveX control in Samsung Kies prior to 2.5.1.12123_2_7 allows remote malicious users to execute arbitrary code via a long string to the password argument.
Samsung Kies
1 EDB exploit
10
CVSSv2
CVE-2013-0804
The client in Novell GroupWise 8.0 prior to 8.0.3 HP2 and 2012 before SP1 HP1 allows remote malicious users to execute arbitrary code or cause a denial of service (incorrect pointer dereference) via unspecified vectors.
Novell Groupwise 8.00
Novell Groupwise 8.0
Novell Groupwise 8.01
Novell Groupwise 8.02
Novell Groupwise 8.03
Novell Groupwise 2012
1 EDB exploit
9.3
CVSSv2
CVE-2014-1632
htdocs/setup/index.php in Eventum prior to 2.3.5 allows remote malicious users to inject and execute arbitrary PHP code via the hostname parameter.
Eventum Project Eventum
1 EDB exploit
9.3
CVSSv2
CVE-2012-0985
Multiple buffer overflows in the Wireless Manager ActiveX control 4.0.0.0 in WifiMan.dll in Sony VAIO PC Wireless LAN Wizard 1.0; VAIO Wireless Wizard 1.00, 1.00_64, 1.0.1, 2.0, and 3.0; SmartWi Connection Utility 4.7, 4.7.4, 4.8, 4.9, 4.10, and 4.11; and VAIO Easy Connect softwa...
Sony Vaio Pc Wireless Lan Wizard 1.0
Sony Smartwi Connection Utillity 4.7.4
Sony Smartwi Connection Utillity 4.8
Sony Vaio Wireless Wizard 3.0
Sony Smartwi Connection Utillity 4.7
Sony Vaio Easy Connect 1.1.0
Sony Vaio Wireless Wizard 1.00
Sony Vaio Wireless Wizard 1.00 64
Sony Smartwi Connection Utillity 4.9
Sony Smartwi Connection Utillity 4.10
Sony Vaio Wireless Wizard 1.01
Sony Vaio Wireless Wizard 2.0
Sony Smartwi Connection Utillity 4.11
Sony Vaio Easy Connect 1.0.0
1 EDB exploit
9
CVSSv2
CVE-2013-2267
PHP Code Injection vulnerability in FUDforum Bulletin Board Software 3.0.4 could allow remote malicious users to execute arbitrary code on the system.
Fudforum Fudforum 3.0.4
1 EDB exploit
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
privilege escalation
CVE-2024-20696
CVE-2024-29829
CVE-2024-33999
CVE-2024-35646
physical
CVE-2024-24919
CVE-2024-31030
local users
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
4
5
NEXT »