Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
By Recent Activity
cve-2019-2725 vulnerabilities and exploits
(subscribe to this query)
5
CVSSv2
CVE-2019-5739
Keep-alive HTTP and HTTPS connections can remain open and inactive for up to 2 minutes in Node.js 6.16.0 and earlier. Node.js 8.0.0 introduced a dedicated server.keepAliveTimeout which defaults to 5 seconds. The behavior in Node.js 6.16.0 and earlier is a potential Denial of...
Nodejs Node.js
Opensuse Leap 42.3
7.2
CVSSv2
CVE-2019-5519
VMware ESXi (6.7 before ESXi670-201903001, 6.5 before ESXi650-201903001, 6.0 before ESXi600-201903001), Workstation (15.x before 15.0.4, 14.x before 14.1.7), Fusion (11.x before 11.0.3, 10.x before 10.1.6) contain a Time-of-check Time-of-use (TOCTOU) vulnerability in the virtual...
Vmware Fusion
Vmware Workstation
Vmware Esxi 6.0
Vmware Esxi 6.5
Vmware Esxi 6.7
9.3
CVSSv2
CVE-2019-5736
runc through 1.0-rc6, as used in Docker before 18.09.2 and other products, allows attackers to overwrite the host runc binary (and consequently obtain host root access) by leveraging the ability to execute a command as root within one of these types of containers: (1) a new...
Docker Docker
Linuxfoundation Runc
Linuxfoundation Runc 1.0.0
Redhat Container Development Kit 3.7
Redhat Openshift 3.4
Redhat Openshift 3.5
Redhat Openshift 3.6
Redhat Openshift 3.7
Redhat Enterprise Linux 8.0
Redhat Enterprise Linux Server 7.0
Google Kubernetes Engine -
Linuxcontainers Lxc
Hp Onesphere -
Netapp Hci Management Node -
Netapp Solidfire -
Apache Mesos
Opensuse Backports Sle 15.0
Opensuse Leap 15.0
Opensuse Leap 15.1
Opensuse Leap 42.3
Mesosphere Kubernetes Engine
Mesosphere Dc\\/os
Fedoraproject Fedora 29
Fedoraproject Fedora 30
Canonical Ubuntu Linux 16.04
Canonical Ubuntu Linux 18.04
Canonical Ubuntu Linux 18.10
Canonical Ubuntu Linux 19.04
Microfocus Service Management Automation 2018.02
Microfocus Service Management Automation 2018.05
Microfocus Service Management Automation 2018.08
Microfocus Service Management Automation 2018.11
2 EDB exploits available
54 Github repositories available
6 Articles available
4.3
CVSSv2
CVE-2019-6465
Controls for zone transfers may not be properly applied to Dynamically Loadable Zones (DLZs) if the zones are writable Versions affected: BIND 9.9.0 -> 9.10.8-P1, 9.11.0 -> 9.11.5-P2, 9.12.0 -> 9.12.3-P2, and versions 9.9.3-S1 -> 9.11.5-S3 of BIND 9 Supported Preview...
Isc Bind
Isc Bind 9.9.3
Isc Bind 9.10.8
Isc Bind 9.11.5
Isc Bind 9.12.3
Redhat Enterprise Linux 8.0
2 Github repositories available
5
CVSSv2
CVE-2017-10271
Vulnerability in the Oracle WebLogic Server component of Oracle Fusion Middleware (subcomponent: WLS Security). Supported versions that are affected are 10.3.6.0.0, 12.1.3.0.0, 12.2.1.1.0 and 12.2.1.2.0. Easily exploitable vulnerability allows unauthenticated attacker with...
Oracle Weblogic Server 10.3.6.0.0
Oracle Weblogic Server 12.1.3.0.0
Oracle Weblogic Server 12.2.1.1.0
Oracle Weblogic Server 12.2.1.2.0
3 EDB exploits available
2 Metasploit modules available
62 Github repositories available
27 Articles available
5.5
CVSSv2
CVE-2018-2725
Vulnerability in the Oracle Financial Services Hedge Management and IFRS Valuations component of Oracle Financial Services Applications (subcomponent: User Interface). The supported version that is affected is 8.0.x. Easily exploitable vulnerability allows low privileged...
Oracle Financial Services Hedge Management And Ifrs Valuations 8.0.5
1 Github repository available
7.5
CVSSv2
CVE-2007-2725
The DB Software Laboratory DeWizardX (DEWizardAX.ocx) ActiveX control allows remote attackers to overwrite arbitrary files via the SaveToFile function....
Db Soft Lab Dewizardx
1 EDB exploit available
10
CVSSv2
CVE-2013-2725
Adobe Reader and Acrobat 9.x before 9.5.5, 10.x before 10.1.7, and 11.x before 11.0.03 allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2013-2718, CVE-2013-2719, CVE-2013-2720,...
Adobe Acrobat Reader 9.0
Adobe Acrobat Reader 9.1
Adobe Acrobat Reader 9.1.1
Adobe Acrobat Reader 9.1.2
Adobe Acrobat Reader 9.1.3
Adobe Acrobat Reader 9.2
Adobe Acrobat Reader 9.3
Adobe Acrobat Reader 9.3.1
Adobe Acrobat Reader 9.3.2
Adobe Acrobat Reader 9.3.3
Adobe Acrobat Reader 9.3.4
Adobe Acrobat Reader 9.4
Adobe Acrobat Reader 9.4.1
Adobe Acrobat Reader 9.4.2
Adobe Acrobat Reader 9.4.3
Adobe Acrobat Reader 9.4.4
Adobe Acrobat Reader 9.4.5
Adobe Acrobat Reader 9.4.6
Adobe Acrobat Reader 9.4.7
Adobe Acrobat Reader 9.5
Adobe Acrobat Reader 9.5.1
Adobe Acrobat Reader 9.5.2
Adobe Acrobat Reader 9.5.3
Adobe Acrobat Reader 9.5.4
Adobe Acrobat Reader 10.0
Adobe Acrobat Reader 10.0.1
Adobe Acrobat Reader 10.0.2
Adobe Acrobat Reader 10.0.3
Adobe Acrobat Reader 10.1
Adobe Acrobat Reader 10.1.1
Adobe Acrobat Reader 10.1.2
Adobe Acrobat Reader 10.1.3
Adobe Acrobat Reader 10.1.4
Adobe Acrobat Reader 10.1.5
Adobe Acrobat Reader 10.1.6
Adobe Acrobat Reader 11.0
Adobe Acrobat Reader 11.0.1
Adobe Acrobat Reader 11.0.2
Adobe Acrobat 9.0
Adobe Acrobat 9.1
Adobe Acrobat 9.1.1
Adobe Acrobat 9.1.2
Adobe Acrobat 9.1.3
Adobe Acrobat 9.2
Adobe Acrobat 9.3
Adobe Acrobat 9.3.1
Adobe Acrobat 9.3.2
Adobe Acrobat 9.3.3
Adobe Acrobat 9.3.4
Adobe Acrobat 9.4
Adobe Acrobat 9.4.1
Adobe Acrobat 9.4.2
Adobe Acrobat 9.4.3
Adobe Acrobat 9.4.4
Adobe Acrobat 9.4.5
Adobe Acrobat 9.4.6
Adobe Acrobat 9.4.7
Adobe Acrobat 9.5
Adobe Acrobat 9.5.1
Adobe Acrobat 9.5.2
Adobe Acrobat 9.5.3
Adobe Acrobat 9.5.4
Adobe Acrobat 10.0
Adobe Acrobat 10.0.1
Adobe Acrobat 10.0.2
Adobe Acrobat 10.0.3
Adobe Acrobat 10.1
Adobe Acrobat 10.1.1
Adobe Acrobat 10.1.2
Adobe Acrobat 10.1.3
Adobe Acrobat 10.1.4
Adobe Acrobat 10.1.5
Adobe Acrobat 10.1.6
Adobe Acrobat 11.0
Adobe Acrobat 11.0.1
Adobe Acrobat 11.0.2
NA
CVE-2016-2725
** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this candidate did not associate it with any vulnerability during 2016. Notes: none....
2.1
CVSSv2
CVE-2005-2725
The inputtrap utility in QNX RTOS 6.1.0, 6.3, and possibly earlier versions does not properly check permissions when the -t flag is specified, which allows local users to read arbitrary files....
Qnx Rtos 6.1.0
Qnx Rtos 6.3.0
1 EDB exploit available
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
man-in-the-middle
CVE-2021-20661
CVE-2020-4953
CVE-2018-19518
CVE-2021-27645
CVE-2021-3156
CVE-2021-26684
deserialization
wireless
« PREV
1
2
3
4
5
6
7
8
9
NEXT »