Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
logic flaw vulnerabilities and exploits
(subscribe to this query)
632
VMScore
CVE-2010-3107
A certain ActiveX control in ienipp.ocx in the browser plugin in Novell iPrint Client prior to 5.42 does not properly restrict the set of files to be deleted, which allows remote malicious users to cause a denial of service (recursive file deletion) via unspecified vectors relate...
Novell Iprint 4.32
Novell Iprint 4.34
Novell Iprint 5.12
Novell Iprint
Novell Iprint 4.36
Novell Iprint 4.38
Novell Iprint 4.26
Novell Iprint 4.27
Novell Iprint 5.04
Novell Iprint 5.30
Novell Iprint 4.28
Novell Iprint 4.30
Novell Iprint 5.32
Novell Iprint 5.20b
NA
CVE-2021-3995
A logic error was found in the libmount library of util-linux in the function that allows an unprivileged user to unmount a FUSE filesystem. This flaw allows an unprivileged local malicious user to unmount FUSE filesystems that belong to certain other users who have a UID that is...
Kernel Util-linux
Fedoraproject Fedora 35
1 Github repository
NA
CVE-2021-3996
A logic error was found in the libmount library of util-linux in the function that allows an unprivileged user to unmount a FUSE filesystem. This flaw allows a local user on a vulnerable system to unmount other users' filesystems that are either world-writable themselves (li...
Kernel Util-linux
Fedoraproject Fedora 35
1 Github repository
187
VMScore
CVE-2020-12394
A logic flaw in our location bar implementation could have allowed a local malicious user to spoof the current location by selecting a different origin and removing focus from the input element. This vulnerability affects Firefox < 76.
Mozilla Firefox
294
VMScore
CVE-2020-17409
This vulnerability allows network-adjacent malicious users to disclose sensitive information on affected installations of NETGEAR R6120, R6080, R6260, R6220, R6020, JNR3210, and WNR2020 routers with firmware 1.0.66. Authentication is not required to exploit this vulnerability. Th...
Netgear R6020 Firmware
Netgear R6080 Firmware
Netgear R6120 Firmware
Netgear R6220 Firmware
Netgear R6230 Firmware
Netgear R6260 Firmware
Netgear R6330 Firmware
Netgear R6350 Firmware
Netgear R6850 Firmware
Netgear Jnr3210 Firmware -
Netgear Wnr2020 Firmware -
NA
CVE-2022-36087
OAuthLib is an implementation of the OAuth request-signing logic for Python 3.6+. In OAuthLib versions 3.1.1 until 3.2.1, an attacker providing malicious redirect uri can cause denial of service. An attacker can also leverage usage of `uri_validate` functions depending where it i...
Oauthlib Project Oauthlib
Fedoraproject Fedora 37
383
VMScore
CVE-2017-6507
An issue exists in AppArmor prior to 2.12. Incorrect handling of unknown AppArmor profiles in AppArmor init scripts, upstart jobs, and/or systemd unit files allows an malicious user to possibly have increased attack surfaces of processes that were intended to be confined by AppAr...
Apparmor Apparmor
Canonical Ubuntu Core 15.04
Canonical Ubuntu Touch 15.04
187
VMScore
CVE-2021-0127
Insufficient control flow management in some Intel(R) Processors may allow an authenticated user to potentially enable a denial of service via local access.
Netapp Clustered Data Ontap -
Intel Core I7-6700k -
Intel Xeon E3-1240 V5 -
Intel Xeon D-1649n -
Intel Xeon D-1633n -
Intel Xeon D-1637 -
Intel Xeon D-1627 -
Intel Xeon D-1623n -
Intel Xeon D-1622 -
Intel Xeon D-1653n -
Intel Xeon D-1602 -
Intel Xeon D-2141i -
Intel Xeon D-2177nt -
Intel Xeon D-2161i -
Intel Xeon D-2143it -
Intel Xeon D-2146nt -
Intel Xeon D-2145nt -
Intel Xeon D-2123it -
Intel Xeon D-2173it -
Intel Xeon D-2187nt -
Intel Xeon D-2142it -
Intel Xeon D-2163it -
NA
CVE-2024-0057
NET, .NET Framework, and Visual Studio Security Feature Bypass Vulnerability
Microsoft Visual Studio 2022
Microsoft Powershell
Microsoft Powershell 7.4
Microsoft .net Framework
Microsoft .net Framework 4.6.2
Microsoft .net Framework 4.7
Microsoft .net Framework 4.7.1
Microsoft .net Framework 4.7.2
Microsoft .net Framework 3.5
Microsoft .net Framework 4.8.1
Microsoft .net Framework 2.0
Microsoft .net Framework 3.0
Microsoft .net
Microsoft .net 8.0.0
445
VMScore
CVE-2021-22904
The actionpack ruby gem prior to 6.1.3.2, 6.0.3.7, 5.2.4.6, 5.2.6 suffers from a possible denial of service vulnerability in the Token Authentication logic in Action Controller due to a too permissive regular expression. Impacted code uses `authenticate_or_request_with_http_token...
Rubyonrails Rails
VMScore
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2023-48788
CVE-2024-30505
SQL
CSRF
CVE-2024-30448
privilege escalation
CVE-2024-30446
CVE-2023-49231
CVE-2023-24955
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
8
9
10
NEXT »