Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
high-tech bridge sa vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2012-5875
Firefly Media Server 1.0.0.1359 allows remote malicious users to cause a denial of service (NULL pointer dereference) via a (1) crafted Connection HTTP header; a return carriage control character in the (2) Accept Language header, (3) User-agent header, (4) Host header, or (5) pr...
Fireflymediaserver Firefly Media Server 1.0.0.1359
1 EDB exploit
NA
CVE-2012-5876
Multiple off-by-one errors in NMMediaServerService.dll in Nero MediaHome 4.5.8.0 and previous versions allow remote malicious users to cause a denial of service (crash) via a long string in the (1) request line or (2) HTTP Referer header to TCP port 54444, which triggers a heap-b...
Nero Mediahome
1 EDB exploit
NA
CVE-2012-5877
Nero MediaHome 4.5.8.0 and previous versions allows remote malicious users to cause a denial of service (NULL pointer dereference and crash) via an HTTP header without a name.
Nero Mediahome
1 EDB exploit
NA
CVE-2012-5879
An ActiveX control in McHealthCheck.dll in McAfee Virtual Technician (MVT) and ePO-MVT 6.5.0.2101 and previous versions allows remote malicious users to modify or create arbitrary files via a full pathname argument to the Save method.
Mcafee Mcafee Virtual Technician
Mcafee Mcafee Virtual Technician 6.3.0.1911
Mcafee Epo Mcafee Virtual Technician 1.0.8
Mcafee Epo Mcafee Virtual Technician 1.0
Mcafee Epo Mcafee Virtual Technician 1.0.9
Mcafee Epo Mcafee Virtual Technician 1.0.4.0
Mcafee Epo Mcafee Virtual Technician 1.0.7
Mcafee Epo Mcafee Virtual Technician
1 EDB exploit
9.8
CVSSv3
CVE-2013-7137
The "remember me" functionality in login.php in Burden prior to 1.8.1 allows remote malicious users to bypass authentication and gain privileges by setting the burden_user_rememberme cookie to 1.
Burden Project Burden
1 EDB exploit
NA
CVE-2013-7139
SQL injection vulnerability in download.php in Horizon Quick Content Management System (QCMS) 4.0 and previous versions allows remote to execute arbitrary SQL commands via the category parameter.
Cynthia Fridsma Horizon Quick Content Management System
Cynthia Fridsma Horizon Quick Content Management System 3.2
Cynthia Fridsma Horizon Quick Content Management System 3.5.1
Cynthia Fridsma Horizon Quick Content Management System 3.3
Cynthia Fridsma Horizon Quick Content Management System 3.5.2
Cynthia Fridsma Horizon Quick Content Management System 3.4
1 EDB exploit
NA
CVE-2012-3805
Multiple cross-site scripting (XSS) vulnerabilities in the getAllPassedParams function in system/functions.php in Kajona prior to 3.4.2 allow remote malicious users to inject arbitrary web script or HTML via the (1) absender_name, (2) absender_email, or (3) absender_nachricht par...
Kajona Kajona 3.2.0
Kajona Kajona 3.1.0
Kajona Kajona
Kajona Kajona 3.4.0
Kajona Kajona 3.2.1
Kajona Kajona 3.1.1
Kajona Kajona 3.3.1
Kajona Kajona 3.3.0
1 EDB exploit
NA
CVE-2012-3952
Cross-site scripting (XSS) vulnerability in admin/index.php in phpList prior to 2.10.19 allows remote malicious users to inject arbitrary web script or HTML via the unconfirmed parameter to the user page.
Phplist Phplist
Phplist Phplist 2.10.10
Phplist Phplist 2.10.9
Phplist Phplist 2.10.1
Phplist Phplist 2.8.12
Phplist Phplist 2.10.17
Phplist Phplist 2.10.16
Phplist Phplist 2.10.8
Phplist Phplist 2.10.7
Phplist Phplist 2.8.7
Phplist Phplist 2.8.2
Phplist Phplist 2.10.12
Phplist Phplist 2.10.11
Phplist Phplist 2.10.3
Phplist Phplist 2.10.2
Phplist Phplist 2.6.5
Phplist Phplist 2.10.15
Phplist Phplist 2.10.14
Phplist Phplist 2.10.13
Phplist Phplist 2.10.5
Phplist Phplist 2.10.4
Phplist Phplist 2.7.2
1 EDB exploit
NA
CVE-2012-3953
SQL injection vulnerability in admin/index.php in phpList prior to 2.10.19 allows remote administrators to execute arbitrary SQL commands via the delete parameter to the editattributes page.
Phplist Phplist 2.10.12
Phplist Phplist 2.10.11
Phplist Phplist 2.10.3
Phplist Phplist 2.10.2
Phplist Phplist 2.6.5
Phplist Phplist
Phplist Phplist 2.10.10
Phplist Phplist 2.10.9
Phplist Phplist 2.10.1
Phplist Phplist 2.8.12
Phplist Phplist 2.10.15
Phplist Phplist 2.10.14
Phplist Phplist 2.10.13
Phplist Phplist 2.10.5
Phplist Phplist 2.10.4
Phplist Phplist 2.7.2
Phplist Phplist 2.7.1
Phplist Phplist 2.10.17
Phplist Phplist 2.10.16
Phplist Phplist 2.10.8
Phplist Phplist 2.10.7
Phplist Phplist 2.8.7
1 EDB exploit
NA
CVE-2013-6341
SQL injection vulnerability in Dokeos 2.2 RC2 and previous versions allows remote malicious users to execute arbitrary SQL commands via the language parameter to index.php.
Dokeos Dokeos 2.1
Dokeos Dokeos 2.0
Dokeos Dokeos
1 EDB exploit
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-27322
cross-site request forgery
unauthorized
CVE-2024-33925
reflected XSS
CVE-2023-51580
CVE-2023-51579
CVE-2015-2051
CVE-2023-51609
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
7
8
9
10
NEXT »