Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
p1 vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2007-4361
NETGEAR (formerly Infrant) ReadyNAS RAIDiator prior to 4.00b2-p2-T1 beta creates a default SSH root password derived from the hardware serial number, which makes it easier for remote malicious users to guess the password and obtain login access.
Netgear Readynas Raidiator 3.01c1-p1
Netgear Readynas Raidiator 3.01c1-p6
NA
CVE-2006-5378
Unspecified vulnerability in JD Edwards HTML Server in JD Edwards EnterpriseOne SP23_O2, 8.95.P1, and 8.96.D1 has unknown impact and remote authenticated attack vectors, aka Vuln# JDE01.
Oracle Enterpriseone 8.96.d1
Oracle Enterpriseone Sp23 O2
Oracle Enterpriseone 8.95.p1
NA
CVE-2013-5724
Phpbb3 prior to 3.0.11-4 for Debian GNU/Linux uses world-writable permissions for cache files, which allows local users to modify the file contents via standard filesystem write operations.
Debian Phpbb3
Debian Phpbb3 3.0.11-2
Debian Phpbb3 3.0.2-2
Debian Phpbb3 3.0.2-1
Debian Phpbb3 3.0.1-1
Debian Phpbb3 3.0.0-1
Debian Phpbb3 3.0.10-2
Debian Phpbb3 3.0.9-1
Debian Phpbb3 3.0.7-p1-1
Debian Phpbb3 3.0.2-4
Debian Phpbb3 3.0.0-rc7-1
Debian Phpbb3 3.0.0-rc4-1
Debian Phpbb3 3.0.7-p1-5
Debian Phpbb3 3.0.7-p1-4
Debian Phpbb3 3.0.7-p1-3
Debian Phpbb3 3.0.7-p1-2
Debian Phpbb3 3.0.0-rc3-1
Debian Phpbb3 3.0.0-rc2-1
Debian Phpbb3 3.0.0-rc1
Debian Phpbb3 3.0.0-b5
Debian Phpbb3 3.0.11-1
Debian Phpbb3 3.0.10-1
NA
CVE-2006-4910
The web administration interface (mainApp) to Cisco IDS prior to 4.1(5c), and IPS 5.0 prior to 5.0(6p1) and 5.1 prior to 5.1(2) allows remote malicious users to cause a denial of service (unresponsive device) via a crafted SSLv2 Client Hello packet.
Cisco Ips Sensor Software 5.1\\(1\\)
Cisco Ids Sensor Software 4.1\\(5b\\)
Cisco Ips Sensor Software 5.0\\(6\\)p1
5.5
CVSSv3
CVE-2017-6726
A vulnerability in the CLI of the Cisco Prime Network Gateway could allow an authenticated, local malicious user to retrieve system process information, which could lead to the disclosure of confidential information. More Information: CSCvd59341. Known Affected Releases: 4.2(1.0)...
Cisco Prime Network 4.2\\(1.0\\)p1
NA
CVE-2013-4722
Multiple cross-site scripting (XSS) vulnerabilities in Admin/login/default.asp in DDSN Interactive cm3 Acora CMS 6.0.6/1a, 6.0.2/1a, 5.5.7/12b, 5.5.0/1b-p1, and possibly other versions allow remote malicious users to inject arbitrary web script or HTML via the (1) username, (2) u...
Ddsn Cm3 Acora Content Management System 6.0.6\\/1a
Ddsn Cm3 Acora Content Management System 6.0.2\\/1a
Ddsn Cm3 Acora Content Management System 5.5.7\\/12b
Ddsn Cm3 Acora Content Management System 5.5.0\\/1b-p1
NA
CVE-2013-4723
Open redirect vulnerability in DDSN Interactive cm3 Acora CMS 6.0.6/1a, 6.0.2/1a, 5.5.7/12b, 5.5.0/1b-p1, and possibly other versions allows remote malicious users to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the l parameter to track.aspx.
Ddsn Cm3 Acora Content Management System 5.5.7\\/12b
Ddsn Cm3 Acora Content Management System 5.5.0\\/1b-p1
Ddsn Cm3 Acora Content Management System 6.0.6\\/1a
Ddsn Cm3 Acora Content Management System 6.0.2\\/1a
NA
CVE-2013-4724
DDSN Interactive cm3 Acora CMS 6.0.6/1a, 6.0.2/1a, 5.5.7/12b, 5.5.0/1b-p1, and possibly other versions, does not include the HTTPOnly flag in a Set-Cookie header for an unspecified cookie, which makes it easier for remote malicious users to obtain potentially sensitive informatio...
Ddsn Cm3 Acora Content Management System 6.0.2\\/1a
Ddsn Cm3 Acora Content Management System 5.5.7\\/12b
Ddsn Cm3 Acora Content Management System 5.5.0\\/1b-p1
Ddsn Cm3 Acora Content Management System 6.0.6\\/1a
NA
CVE-2013-4725
DDSN Interactive cm3 Acora CMS 6.0.6/1a, 6.0.2/1a, 5.5.7/12b, 5.5.0/1b-p1, and possibly other versions, does not set the secure flag for an unspecified cookie in an https session, which makes it easier for remote malicious users to capture this cookie by intercepting its transmis...
Ddsn Cm3 Acora Content Management System 6.0.6\\/1a
Ddsn Cm3 Acora Content Management System 5.5.7\\/12b
Ddsn Cm3 Acora Content Management System 6.0.2\\/1a
Ddsn Cm3 Acora Content Management System 5.5.0\\/1b-p1
NA
CVE-2013-4726
Cross-site request forgery (CSRF) vulnerability in DDSN Interactive cm3 Acora CMS 6.0.6/1a, 6.0.2/1a, 5.5.7/12b, 5.5.0/1b-p1, and possibly other versions, allows remote malicious users to hijack the authentication of unspecified victims via unknown vectors.
Ddsn Cm3 Acora Content Management System 5.5.0\\/1b-p1
Ddsn Cm3 Acora Content Management System 6.0.2\\/1a
Ddsn Cm3 Acora Content Management System 5.5.7\\/12b
Ddsn Cm3 Acora Content Management System 6.0.6\\/1a
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-26925
CVE-2023-41826
LFI
CVE-2022-22364
CVE-2024-2887
command injection
remote code execution
CVE-2024-34446
CVE-2022-48699
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
4
5
NEXT »