Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
validation vulnerabilities and exploits
(subscribe to this query)
8.6
CVSSv3
CVE-2020-10185
The sync endpoint in YubiKey Validation Server prior to 2.40 allows remote malicious users to replay an OTP. NOTE: this issue is potentially relevant to persons outside Yubico who operate a self-hosted OTP validation service with a non-default configuration such as an open sync p...
Yubico Yubikey One Time Password Validation Server
9.8
CVSSv3
CVE-2023-40609
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Aiyaz, maheshpatel Contact form 7 Custom validation allows SQL Injection.This issue affects Contact form 7 Custom validation: from n/a up to and including 1.1.3.
Rocklobster Contact Form 7 Custom Validation 1.1.3
NA
CVE-2005-1556
Gamespy cd-key validation system allows remote malicious users to cause a denial of service (cd-key already in use) by capturing and replaying a cd-key authorization session.
Gamespy Gamespy Sdk Cd-key Validation Toolkit
7.2
CVSSv3
CVE-2021-34715
A vulnerability in the image verification function of Cisco Expressway Series and Cisco TelePresence Video Communication Server (VCS) could allow an authenticated, remote malicious user to execute code with internal user privileges on the underlying operating system. The vulnerab...
Cisco Telepresence Video Communication Server
Cisco Expressway
10
CVSSv3
CVE-2020-11896
The Treck TCP/IP stack prior to 6.0.1.66 allows Remote Code Execution, related to IPv4 tunneling.
Treck Tcp\\/ip
3 Github repositories
1 Article
10
CVSSv3
CVE-2020-11897
The Treck TCP/IP stack prior to 5.0.1.35 has an Out-of-Bounds Write via multiple malformed IPv6 packets.
Treck Tcp\\/ip
1 Github repository
1 Article
9.1
CVSSv3
CVE-2020-11898
The Treck TCP/IP stack prior to 6.0.1.66 improperly handles an IPv4/ICMPv4 Length Parameter Inconsistency, which might allow remote malicious users to trigger an information leak.
Treck Tcp\\/ip
1 Github repository
1 Article
5.4
CVSSv3
CVE-2020-11899
The Treck TCP/IP stack prior to 6.0.1.66 has an IPv6 Out-of-bounds Read.
Treck Tcp\\/ip
1 Github repository
6.5
CVSSv3
CVE-2020-11903
The Treck TCP/IP stack prior to 6.0.1.28 has a DHCP Out-of-bounds Read.
Treck Tcp\\/ip
7.3
CVSSv3
CVE-2020-11904
The Treck TCP/IP stack prior to 6.0.1.66 has an Integer Overflow during Memory Allocation that causes an Out-of-Bounds Write.
Treck Tcp\\/ip
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
deserialization
CVE-2024-4040
cross-site scripting
CVE-2023-25790
CVE-2024-2961
XML external entity
CVE-2024-26926
CVE-2024-32806
CVE-2024-32711
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
8
NEXT »