Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2017-1140 |
|
Cross-Site Scripting (XSS) in ibm (CVE-2017-1140)
cross-site scripting in ibm (CVE-2017-1140). Risk of unauthorized operations or information disclosure.
|
| CVE-2016-4473 |
|
Use-After-Free in c (CVE-2016-4473)
vulnerability in c (CVE-2016-4473). Successful exploitation can lead to full system takeover.
|
| CVE-2014-7919 |
|
Vulnerability in cpp (CVE-2014-7919)
vulnerability in cpp (CVE-2014-7919). Risk of unauthorized operations or information disclosure.
|
| CVE-2015-2251 |
|
Information Disclosure in huawei (CVE-2015-2251)
vulnerability in huawei (CVE-2015-2251). Confidential information can be exposed externally.
|
| CVE-2017-5878 |
|
Unsafe Deserialization in deserialization (CVE-2017-5878)
vulnerability in deserialization (CVE-2017-5878). Successful exploitation can lead to full system takeover.
|
| CVE-2017-9520 |
|
Use-After-Free in c (CVE-2017-9520)
vulnerability in c (CVE-2017-9520). Risk of unauthorized operations or information disclosure.
|
| CVE-2015-8538 |
|
dwarf_leb.c in libdwarf allows attackers to cause a denial of service (SIGSEGV).
dwarf_leb.c in libdwarf allows attackers to cause a denial of service (SIGSEGV).
|
| CVE-2017-1178 |
|
Cross-Site Scripting (XSS) in ibm (CVE-2017-1178)
cross-site scripting in ibm (CVE-2017-1178). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-1305 |
|
Cross-Site Scripting (XSS) in ibm (CVE-2017-1305)
cross-site scripting in ibm (CVE-2017-1305). Risk of unauthorized operations or information disclosure.
|
| CVE-2016-9834 |
|
Cross-Site Scripting (XSS) in sophos (CVE-2016-9834)
cross-site scripting in sophos (CVE-2016-9834). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-9470 |
|
Vulnerability in c (CVE-2017-9470)
vulnerability in c (CVE-2017-9470). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-9471 |
|
Out-of-Bounds Read in c (CVE-2017-9471)
vulnerability in c (CVE-2017-9471). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-9472 |
|
Out-of-Bounds Read in c (CVE-2017-9472)
vulnerability in c (CVE-2017-9472). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-9473 |
|
Vulnerability in c (CVE-2017-9473)
vulnerability in c (CVE-2017-9473). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-9474 |
|
Out-of-Bounds Read in c (CVE-2017-9474)
vulnerability in c (CVE-2017-9474). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-9462 |
|
Vulnerability in mercurial (CVE-2017-9462)
vulnerability in mercurial (CVE-2017-9462). Successful exploitation can lead to full system takeover.
|
| CVE-2017-9465 |
|
Out-of-Bounds Read in c (CVE-2017-9465)
vulnerability in c (CVE-2017-9465). Confidential information can be exposed externally.
|
| CVE-2016-0767 |
|
Privilege Escalation in pljava-project (CVE-2016-0767)
vulnerability in pljava-project (CVE-2016-0767). Data can be tampered with by attackers.
|
| CVE-2016-0768 |
|
PostgreSQL PL/Java after 9.0 does not honor access controls on large objects.
PostgreSQL PL/Java after 9.0 does not honor access controls on large objects.
|
| CVE-2016-2192 |
|
Privilege Escalation in pljava-project (CVE-2016-2192)
vulnerability in pljava-project (CVE-2016-2192). Data can be tampered with by attackers.
|
| CVE-2015-1207 |
|
Vulnerability in c (CVE-2015-1207)
vulnerability in c (CVE-2015-1207). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-9451 |
|
Cross-Site Scripting (XSS) in flatcore (CVE-2017-9451)
cross-site scripting in flatcore (CVE-2017-9451). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-9452 |
|
Cross-Site Scripting (XSS) in piwigo (CVE-2017-9452)
cross-site scripting in piwigo (CVE-2017-9452). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-9448 |
|
Cross-Site Scripting (XSS) in bigtreecms (CVE-2017-9448)
cross-site scripting in bigtreecms (CVE-2017-9448). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-9449 |
|
SQL Injection in sqli (CVE-2017-9449)
SQL injection in sqli (CVE-2017-9449). Successful exploitation can lead to full system takeover.
|
| CVE-2017-9332 |
|
Cross-Site Scripting (XSS) in pivotx (CVE-2017-9332)
cross-site scripting in pivotx (CVE-2017-9332). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-5664 |
|
Vulnerability in apache (CVE-2017-5664)
vulnerability in apache (CVE-2017-5664). Data can be tampered with by attackers.
|
| CVE-2017-9441 |
|
Cross-Site Scripting (XSS) in bigtreecms (CVE-2017-9441)
cross-site scripting in bigtreecms (CVE-2017-9441). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-9442 |
|
Code Injection in bigtreecms (CVE-2017-9442)
code injection in bigtreecms (CVE-2017-9442). Successful exploitation can lead to full system takeover.
|
| CVE-2017-9443 |
|
SQL Injection in sqli (CVE-2017-9443)
SQL injection in sqli (CVE-2017-9443). Successful exploitation can lead to full system takeover.
|
| CVE-2017-9444 |
|
Cross-Site Request Forgery (CSRF) in csrf (CVE-2017-9444)
vulnerability in csrf (CVE-2017-9444). Successful exploitation can lead to full system takeover.
|
| CVE-2017-9420 |
|
Cross-Site Scripting (XSS) in wordpress (CVE-2017-9420)
cross-site scripting in wordpress (CVE-2017-9420). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-9439 |
|
Vulnerability in c (CVE-2017-9439)
vulnerability in c (CVE-2017-9439). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-9440 |
|
Vulnerability in c (CVE-2017-9440)
vulnerability in c (CVE-2017-9440). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-9438 |
|
Vulnerability in c (CVE-2017-9438)
vulnerability in c (CVE-2017-9438). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-9435 |
|
SQL Injection in sqli (CVE-2017-9435)
SQL injection in sqli (CVE-2017-9435). Successful exploitation can lead to full system takeover.
|
| CVE-2017-9436 |
|
TeamPass before 2.1.27.4 is vulnerable to a SQL injection in users.queries.php.
TeamPass before 2.1.27.4 is vulnerable to a SQL injection in users.queries.php.
|
| CVE-2017-9434 |
|
Out-of-Bounds Read in cpp (CVE-2017-9434)
vulnerability in cpp (CVE-2017-9434). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-9431 |
|
Out-of-Bounds Write in c (CVE-2017-9431)
out-of-bounds write in c (CVE-2017-9431). Successful exploitation can lead to full system takeover.
|
| CVE-2017-9427 |
|
SQL Injection in sqli (CVE-2017-9427)
SQL injection in sqli (CVE-2017-9427). Successful exploitation can lead to full system takeover.
|
| CVE-2017-9428 |
|
Path Traversal in path-traversal (CVE-2017-9428)
path traversal in path-traversal (CVE-2017-9428). Confidential information can be exposed externally.
|
| CVE-2017-9403 |
|
Vulnerability in c (CVE-2017-9403)
vulnerability in c (CVE-2017-9403). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-9404 |
|
Vulnerability in c (CVE-2017-9404)
vulnerability in c (CVE-2017-9404). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-9405 |
|
Vulnerability in c (CVE-2017-9405)
vulnerability in c (CVE-2017-9405). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-9407 |
|
Vulnerability in c (CVE-2017-9407)
vulnerability in c (CVE-2017-9407). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-9409 |
|
Vulnerability in c (CVE-2017-9409)
vulnerability in c (CVE-2017-9409). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-9379 |
|
Cross-Site Request Forgery (CSRF) in csrf (CVE-2017-9379)
vulnerability in csrf (CVE-2017-9379). Successful exploitation can lead to full system takeover.
|
| CVE-2017-9360 |
|
WebsiteBaker v2.10.0 has a SQL injection vulnerability in /account/details.php.
WebsiteBaker v2.10.0 has a SQL injection vulnerability in /account/details.php.
|
| CVE-2017-9361 |
|
WebsiteBaker v2.10.0 has a stored XSS vulnerability in /account/details.php.
WebsiteBaker v2.10.0 has a stored XSS vulnerability in /account/details.php.
|
| CVE-2017-9365 |
|
Cross-Site Request Forgery (CSRF) in csrf (CVE-2017-9365)
vulnerability in csrf (CVE-2017-9365). Successful exploitation can lead to full system takeover.
|