Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
nine:situations:group vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2008-6935
Argument injection vulnerability in Exodus 0.10 allows remote malicious users to inject arbitrary command line arguments, overwrite arbitrary files, and cause a denial of service via encoded spaces in an im:// URI.
Joe Fuhrman Exodus 0.10
2 EDB exploits
NA
CVE-2008-6936
Argument injection vulnerability in Exodus 0.10 allows remote malicious users to inject arbitrary command line arguments, overwrite arbitrary files, and cause a denial of service via encoded spaces in a pres:// URI, a different vector than CVE-2008-6935.
Jabber Exodus 0.10
2 EDB exploits
NA
CVE-2008-6937
Argument injection vulnerability in Exodus 0.10 allows remote malicious users to inject arbitrary command line arguments, overwrite arbitrary files, and cause a denial of service via encoded spaces in an xmpp:// URI, a different vector than CVE-2008-6935 and CVE-2008-6936. NOTE: ...
Jabber Exodus 0.10
2 EDB exploits
NA
CVE-2008-2511
Directory traversal vulnerability in the UmxEventCli.CachedAuditDataList.1 (aka UmxEventCliLib) ActiveX control in UmxEventCli.dll in CA Internet Security Suite 2008 allows remote malicious users to create and overwrite arbitrary files via a .. (dot dot) in the argument to the Sa...
Ca Internet Security Suite Plus 2008
1 EDB exploit
NA
CVE-2009-2570
Stack-based buffer overflow in the Symantec.FaxViewerControl.1 ActiveX control in WinFax\DCCFAXVW.DLL in Symantec WinFax Pro 10.03 allows remote malicious users to execute arbitrary code via a long argument to the AppendFax method.
Symantec Winfax Pro 10.03
1 EDB exploit
NA
CVE-2009-1092
Use-after-free vulnerability in the LIVEAUDIO.LiveAudioCtrl.1 ActiveX control in LIVEAU~1.OCX 7.0 for GeoVision DVR systems allows remote malicious users to execute arbitrary code by calling the GetAudioPlayingTime method with certain arguments.
Geovision Liveaudio Activex Control 7.0
1 EDB exploit
NA
CVE-2009-1915
Stack-based buffer overflow in the URL Search Hook (ICQToolBar.dll) in ICQ 6.5 allows remote malicious users to cause a denial of service (persistent crash) and possibly execute arbitrary code via an Internet shortcut .URL file containing a long URL parameter, which triggers a cr...
Icq Icq 6.5
1 EDB exploit
NA
CVE-2009-1678
Directory traversal vulnerability in the saveFeed function in rss/feedcreator.class.php in Bitweaver 2.6 and previous versions allows remote malicious users to create or overwrite arbitrary files via a .. (dot dot) in the version parameter to boards/boards_rss.php.
Bitweaver Bitweaver 2.0.0
Bitweaver Bitweaver 1.3.1
Bitweaver Bitweaver 1.3
Bitweaver Bitweaver 1.2.1
Bitweaver Bitweaver
Bitweaver Bitweaver 1.1.1 Beta
Bitweaver Bitweaver 1.1
Bitweaver Bitweaver 2.5
Bitweaver Bitweaver 2.0.2
1 EDB exploit
NA
CVE-2008-5749
Argument injection vulnerability in Google Chrome 1.0.154.36 on Windows XP SP3 allows remote malicious users to execute arbitrary commands via the --renderer-path option in a chromehtml: URI. NOTE: a third party disputes this issue, stating that Chrome "will ask for user per...
Google Chrome 1.0.154.36
1 EDB exploit
NA
CVE-2008-4493
Microsoft PicturePusher ActiveX control (PipPPush.DLL 7.00.0709), as used in Microsoft Digital Image 2006 Starter Edition, allows remote malicious users to force the upload of arbitrary files by using the AddString and Post methods and a modified PostURL to construct an HTTP POST...
Microsoft Digital Image 2006
1 EDB exploit
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
cross-site scripting
CVE-2024-5158
XML external entity
CVE-2024-4262
CVE-2024-2036
CVE-2024-4985
CVE-2024-21791
remote attackers
CVE-2023-43208
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
4
5
NEXT »