Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
mustlive vulnerabilities and exploits
(subscribe to this query)
4.3
CVSSv2
CVE-2008-0207
Multiple cross-site scripting (XSS) vulnerabilities in PRO-Search 0.17 and previous versions allow remote malicious users to inject arbitrary web script or HTML via the (1) prot, (2) host, (3) path, (4) name, (5) ext, (6) size, (7) search_days, or (8) show_page parameter to the d...
Pro Search Pro Search
1 EDB exploit
4.3
CVSSv2
CVE-2007-3485
Multiple cross-site scripting (XSS) vulnerabilities in Yandex.Server allow remote malicious users to inject arbitrary web script or HTML via the (1) query or (2) within parameter to the default URI.
Yandex Yandex.server
4.3
CVSSv2
CVE-2012-3351
Multiple cross-site scripting (XSS) vulnerabilities in LongTail Video JW Player up to and including 5.10.2295 allow remote malicious users to inject arbitrary web script or HTML via the (1) link, (2) logo.link, or (3) aboutlink parameter, or a nested URI scheme name for (4) javas...
Longtailvideo Jw Player
1 EDB exploit
7.5
CVSSv2
CVE-2008-4088
SQL injection vulnerability in print.php in myPHPNuke (MPN) prior to 1.8.8_8rc2 allows remote malicious users to execute arbitrary SQL commands via the sid parameter.
Myphpnuke Myphpnuke 1.8.8 7
Myphpnuke Myphpnuke 1.8.8 8
Myphpnuke Myphpnuke
1 EDB exploit
7.5
CVSSv2
CVE-2008-4092
SQL injection vulnerability in printfeature.php in myPHPNuke (MPN) prior to 1.8.8_8rc2 allows remote malicious users to execute arbitrary SQL commands via the artid parameter.
Myphpnuke Myphpnuke 1.8.8 8
Myphpnuke Myphpnuke 1.8.8 7
Myphpnuke Myphpnuke
1 EDB exploit
4.3
CVSSv2
CVE-2012-3302
Multiple cross-site scripting (XSS) vulnerabilities in IBM Lotus Domino 7.x and 8.x prior to 8.5.4 allow remote malicious users to inject arbitrary web script or HTML via (1) a URL accessed during use of the Mail template in the WebMail UI or (2) a URL accessed during use of Domi...
Ibm Lotus Domino 7.0.1
Ibm Lotus Domino 7.0.4.1
Ibm Lotus Domino 7.0.4.2
Ibm Lotus Domino 7.0.2.2
Ibm Lotus Domino 7.0.3.1
Ibm Lotus Domino 7.0.3.0
Ibm Lotus Domino 7.0.4.0
Ibm Lotus Domino 7.0.2
Ibm Lotus Domino 7.0.1.1
Ibm Lotus Domino 8.5.1.5
Ibm Lotus Domino 8.5.2.0
Ibm Lotus Domino 8.5.3.2
Ibm Lotus Domino 8.5.1.1
Ibm Lotus Domino 8.5.1.2
Ibm Lotus Domino 8.5.2.3
Ibm Lotus Domino 8.5.2.4
Ibm Lotus Domino 8.5.1.3
Ibm Lotus Domino 8.5.1.4
Ibm Lotus Domino 8.5.3.0
Ibm Lotus Domino 8.5.3.1
Ibm Lotus Domino 8.5.0
Ibm Lotus Domino 8.5.0.1
4.3
CVSSv2
CVE-2012-2941
Cross-site scripting (XSS) vulnerability in search/ in Yandex.Server 2010 9.0 Enterprise allows remote malicious users to inject arbitrary web script or HTML via the text parameter.
Yandex Yandex.server 2010 9.0
1 EDB exploit
4.3
CVSSv2
CVE-2009-2352
Google Chrome 1.0.154.48 and previous versions does not block javascript: URIs in Refresh headers in HTTP responses, which allows remote malicious users to conduct cross-site scripting (XSS) attacks via vectors related to (1) injecting a Refresh header or (2) specifying the conte...
Google Chrome 1.0.154.36
Google Chrome 0.4.154.33
Google Chrome 0.2.152.1
Google Chrome 0.2.149.30
Google Chrome 1.0.154.42
Google Chrome 1.0.154.39
Google Chrome 0.3.154.0
Google Chrome 0.2.153.1
Google Chrome 1.0.154.43
Google Chrome 0.4.154.18
Google Chrome 0.3.154.3
Google Chrome 1.0.154.46
Google Chrome 0.4.154.31
Google Chrome 0.4.154.22
Google Chrome 0.2.149.29
Google Chrome
1 EDB exploit
4.3
CVSSv2
CVE-2009-3444
Cross-site scripting (XSS) vulnerability in email.php in e107 0.7.16 and previous versions allows remote malicious users to inject arbitrary web script or HTML via the HTTP Referer header in a news.1 (aka news to email) action.
E107 E107 0.6 14
E107 E107 0.6 13
E107 E107 0.604
E107 E107 0.603
E107 E107 0.608
E107 E107 0.609
E107 E107 0.615a
E107 E107 0.616
E107 E107 0.553 Beta
E107 E107 0.551 Beta
E107 E107 0.6 10
E107 E107 0.607
E107 E107 0.612
E107 E107 0.613
E107 E107 0.6172
E107 E107 0.6173
E107 E107 0.545
E107 E107 0.554
E107 E107 0.549 Beta
E107 E107
E107 E107 0.7.10
E107 E107 0.7.8
1 EDB exploit
9
CVSSv2
CVE-2009-4112
Cacti 0.8.7e and previous versions allows remote authenticated administrators to gain privileges by modifying the "Data Input Method" for the "Linux - Get Memory Usage" setting to contain arbitrary commands.
Cacti Cacti 0.8.6f
Cacti Cacti 0.8.6c
Cacti Cacti 0.8.2
Cacti Cacti 0.8.1
Cacti Cacti 0.8.5a
Cacti Cacti 0.8.5
Cacti Cacti 0.8
Cacti Cacti 0.6.7
Cacti Cacti 0.8.4
Cacti Cacti 0.8.3a
Cacti Cacti 0.8.7a
Cacti Cacti
Cacti Cacti 0.8.7
Cacti Cacti 0.8.6i
Cacti Cacti 0.8.3
Cacti Cacti 0.8.2a
1 EDB exploit
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-27322
CVE-2006-4304
wireless
CVE-2023-23022
local file inclusion
CVE-2024-27058
CVE-2024-33820
open redirect
CVE-2024-27079
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
4
NEXT »