Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
release control vulnerabilities and exploits
(subscribe to this query)
8.8
CVSSv3
CVE-2017-8038
In Cloud Foundry Foundation Credhub-release version 1.1.0, access control lists (ACLs) enforce whether an authenticated user can perform an operation on a credential. For installations using ACLs, the ACL was bypassed for the CredHub interpolate endpoint, allowing authenticated a...
Pivotal Software Credhub-release 1.1.0
8.8
CVSSv3
CVE-2019-3787
Cloud Foundry UAA, versions before 73.0.0, falls back to appending “unknown.org” to a user's email address when one is not provided and the user name does not contain an @ character. This domain is held by a private company, which leads to attack vectors includin...
Pivotal Software Cloud Foundry Uaa-release
NA
CVE-2015-0747
Cisco Conductor for Videoscape 3.0 and Cisco Headend System Release allow remote malicious users to inject arbitrary cookies via a crafted HTTP request, aka Bug ID CSCuh25408.
Cisco Headend Digital Broadband Delivery System -
Cisco Headend System Release 3.7
Cisco Headend System Release 2.5
Cisco Headend System Release 2.7
Cisco Headend System Release 3.2
Cisco Videoscape Conductor 3.0
Cisco Headend System Release 3.5
Cisco Headend System Release I4.3
4.3
CVSSv3
CVE-2020-3329
A vulnerability in role-based access control of Cisco Integrated Management Controller (IMC) Supervisor, Cisco UCS Director, and Cisco UCS Director Express for Big Data could allow a read-only authenticated, remote malicious user to disable user accounts on an affected system. Th...
Cisco Integrated Management Controller Supervisor
Cisco Ucs Director
Cisco Ucs Director Express For Big Data
7.5
CVSSv3
CVE-2020-9327
In SQLite 3.31.1, isAuxiliaryVtabOperator allows malicious users to trigger a NULL pointer dereference and segmentation fault because of generated column optimizations.
Sqlite Sqlite 3.31.1
Netapp Cloud Backup -
Canonical Ubuntu Linux 16.04
Canonical Ubuntu Linux 18.04
Canonical Ubuntu Linux 19.10
Siemens Sinec Infrastructure Network Services
Oracle Communications Network Charging And Control 6.0.1
Oracle Communications Network Charging And Control
Oracle Communications Network Charging And Control 12.0.2
Oracle Enterprise Manager Ops Center 12.4.0.0
Oracle Hyperion Infrastructure Technology 11.1.2.4
Oracle Mysql Workbench
Oracle Outside In Technology 8.5.4
Oracle Outside In Technology 8.5.5
Oracle Zfs Storage Appliance Kit 8.8
Oracle Communications Messaging Server 8.1
8.8
CVSSv3
CVE-2018-0270
A vulnerability in the web-based management interface of Cisco IoT Field Network Director (IoT-FND) could allow an unauthenticated, remote malicious user to conduct a cross-site request forgery (CSRF) attack and alter the data of existing users and groups on an affected device. T...
Cisco Iot Field Network Director 4.2\\(0.4\\)
7.5
CVSSv3
CVE-2018-0442
A vulnerability in the Control and Provisioning of Wireless Access Points (CAPWAP) protocol component of Cisco Wireless LAN Controller (WLC) Software could allow an unauthenticated, remote malicious user to retrieve memory contents, which could lead to the disclosure of confident...
Cisco Wireless Lan Controller Software
4
CVSSv3
CVE-2018-15398
A vulnerability in the per-user-override feature of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote malicious user to bypass an access control list (ACL) that is configured for an interface ...
Cisco Adaptive Security Appliance Software 9.6\\(4.3\\)
Cisco Adaptive Security Appliance Software 9.4\\(4\\)
Cisco Adaptive Security Appliance Software 9.4\\(2\\)
Cisco Firepower Threat Defense 6.2.0
7.5
CVSSv3
CVE-2018-0443
A vulnerability in the Control and Provisioning of Wireless Access Points (CAPWAP) protocol component of Cisco Wireless LAN Controller (WLC) Software could allow an unauthenticated, remote malicious user to cause a denial of service (DoS) condition. The vulnerability is due to im...
Cisco Wireless Lan Controller Software 8.2\\(151.0\\)
6.8
CVSSv3
CVE-2018-15390
A vulnerability in the FTP inspection engine of Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote malicious user to cause an affected device to reload, resulting in a denial of service (DoS) condition. The vulnerability exists because the affect...
Cisco Firepower Threat Defense
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-4367
CVE-2024-3611
CVE-2024-4947
CVE-2024-32988
CVE-2020-35165
local file inclusion
CVE-2024-4980
bypass
malicious code
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
8
NEXT »