Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
isecauditors.com vulnerabilities and exploits
(subscribe to this query)
445
VMScore
CVE-2013-2631
TinyWebGallery (TWG) 1.8.9 and previous versions contains a full path disclosure vulnerability which allows remote malicious users to obtain sensitive information through the parameters "twg_browserx" and "twg_browsery" in the page image.php.
Tinywebgallery Tinywebgallery
383
VMScore
CVE-2013-2622
Cross-site Scripting (XSS) in UebiMiau 2.7.11 and previous versions allows remote malicious users to inject arbitrary web script or HTML via the "selected_theme" parameter in error.php.
Uebimiau Uebimiau
383
VMScore
CVE-2013-2651
Multiple cross-site scripting (XSS) vulnerabilities in BoltWire 3.5 and previous versions allow remote malicious users to inject arbitrary web script or HTML via the (1) "p" or (2) content parameter to index.php.
Boltwire Boltwire 3.06
Boltwire Boltwire 3.07
Boltwire Boltwire 3.14
Boltwire Boltwire 3.15
Boltwire Boltwire 3.2.3
Boltwire Boltwire 3.2.4
Boltwire Boltwire 3.3
Boltwire Boltwire 3.3.1
Boltwire Boltwire 3.3.8
Boltwire Boltwire 3.3.9
Boltwire Boltwire 3.4.6
Boltwire Boltwire 3.4.7
Boltwire Boltwire 3.4.8
Boltwire Boltwire 3.4.15
Boltwire Boltwire 3.4.16
Boltwire Boltwire 3.04
Boltwire Boltwire 3.05
Boltwire Boltwire 3.12
Boltwire Boltwire 3.13
Boltwire Boltwire 3.2.1
Boltwire Boltwire 3.2.2
Boltwire Boltwire 3.2.10
383
VMScore
CVE-2013-2652
CRLF injection vulnerability in help/help_language.php in WebCollab 3.30 and previous versions allows remote malicious users to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via the item parameter.
Andrew Simpson Webcollab 3.21
Andrew Simpson Webcollab 3.20
Andrew Simpson Webcollab
Andrew Simpson Webcollab 2.60
Andrew Simpson Webcollab 2.50
Andrew Simpson Webcollab 2.01
Andrew Simpson Webcollab 2.00
Andrew Simpson Webcollab 1.62
Andrew Simpson Webcollab 1.61
Andrew Simpson Webcollab 1.32
Andrew Simpson Webcollab 1.31
Andrew Simpson Webcollab 3.10
Andrew Simpson Webcollab 3.00
Andrew Simpson Webcollab 2.30
Andrew Simpson Webcollab 2.20
Andrew Simpson Webcollab 1.71a
Andrew Simpson Webcollab 1.71
Andrew Simpson Webcollab 1.51
Andrew Simpson Webcollab 1.50
Andrew Simpson Webcollab 1.42
Andrew Simpson Webcollab 2.40
Andrew Simpson Webcollab 2.31
490
VMScore
CVE-2013-3831
Unspecified vulnerability in the Oracle Portal component in Oracle Fusion Middleware 11.1.1.6.0 allows remote authenticated users to affect confidentiality and integrity via unknown vectors related to Demos.
Oracle Fusion Middleware 11.1.1.6.0
585
VMScore
CVE-2013-2621
Open Redirection Vulnerability in the redir.php script in Telaen prior to 1.3.1 allows remote malicious users to redirect victims to arbitrary websites via a crafted URL.
Telaen Project Telaen
1 EDB exploit
435
VMScore
CVE-2013-2623
Cross-site Scripting (XSS) in Telaen prior to 1.3.1 allows remote malicious users to inject arbitrary web script or HTML via the "f_email" parameter in index.php.
Telaen Project Telaen
1 EDB exploit
505
VMScore
CVE-2013-2624
Telean prior to 1.3.1 contains a full path disclosure vulnerability which could allow remote malicious users to obtain sensitive information through a specially crafted URL request.
Telaen Project Telaen
1 EDB exploit
435
VMScore
CVE-2013-2586
XAMPP 1.8.1 does not properly restrict access to xampp/lang.php, which allows remote malicious users to modify xampp/lang.tmp and execute cross-site scripting (XSS) attacks via the WriteIntoLocalDisk method.
Apachefriends Xampp 1.8.1
1 EDB exploit
VMScore
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2023-49223
CVE-2024-0044
information disclosure
CVE-2024-35753
HTML injection
CVE-2024-21306
CVE-2024-35733
SQL injection
CVE-2024-35732
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started