Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2017-1002009 |
|
SQL Injection in wordpress (CVE-2017-1002009)
SQL injection in wordpress (CVE-2017-1002009). Successful exploitation can lead to full system takeover.
|
| CVE-2017-1002010 |
|
SQL Injection in wordpress (CVE-2017-1002010)
SQL injection in wordpress (CVE-2017-1002010). Successful exploitation can lead to full system takeover.
|
| CVE-2017-1002012 |
|
SQL Injection in wordpress (CVE-2017-1002012)
SQL injection in wordpress (CVE-2017-1002012). Successful exploitation can lead to full system takeover.
|
| CVE-2017-1002013 |
|
SQL Injection in wordpress (CVE-2017-1002013)
SQL injection in wordpress (CVE-2017-1002013). Successful exploitation can lead to full system takeover.
|
| CVE-2017-1002014 |
|
SQL Injection in wordpress (CVE-2017-1002014)
SQL injection in wordpress (CVE-2017-1002014). Successful exploitation can lead to full system takeover.
|
| CVE-2017-1002015 |
|
SQL Injection in wordpress (CVE-2017-1002015)
SQL injection in wordpress (CVE-2017-1002015). Successful exploitation can lead to full system takeover.
|
| CVE-2017-1002016 |
|
Unrestricted File Upload in wordpress (CVE-2017-1002016)
vulnerability in wordpress (CVE-2017-1002016). Successful exploitation can lead to full system takeover.
|
| CVE-2017-1002018 |
|
SQL Injection in wordpress (CVE-2017-1002018)
SQL injection in wordpress (CVE-2017-1002018). Successful exploitation can lead to full system takeover.
|
| CVE-2017-1002019 |
|
SQL Injection in wordpress (CVE-2017-1002019)
SQL injection in wordpress (CVE-2017-1002019). Successful exploitation can lead to full system takeover.
|
| CVE-2017-1002020 |
|
SQL Injection in wordpress (CVE-2017-1002020)
SQL injection in wordpress (CVE-2017-1002020). Successful exploitation can lead to full system takeover.
|
| CVE-2017-1002021 |
|
SQL Injection in wordpress (CVE-2017-1002021)
SQL injection in wordpress (CVE-2017-1002021). Successful exploitation can lead to full system takeover.
|
| CVE-2015-5168 |
|
Vulnerability in apache (CVE-2015-5168)
vulnerability in apache (CVE-2015-5168). Successful exploitation can lead to full system takeover.
|
| CVE-2015-5206 |
|
Vulnerability in apache (CVE-2015-5206)
vulnerability in apache (CVE-2015-5206). Successful exploitation can lead to full system takeover.
|
| CVE-2015-8351 |
|
Code Injection in wordpress (CVE-2015-8351)
code injection in wordpress (CVE-2015-8351). Successful exploitation can lead to full system takeover.
|
| CVE-2015-7877 |
|
SQL Injection in drupal (CVE-2015-7877)
SQL injection in drupal (CVE-2015-7877). Successful exploitation can lead to full system takeover.
|
| CVE-2015-3313 |
|
SQL injection vulnerability in WordPress Community Events plugin before 1.4.
SQL injection vulnerability in WordPress Community Events plugin before 1.4.
|
| CVE-2017-9834 |
|
SQL Injection in wordpress (CVE-2017-9834)
SQL injection in wordpress (CVE-2017-9834). Successful exploitation can lead to full system takeover.
|
| CVE-2016-3086 |
|
Information Disclosure in apache (CVE-2016-3086)
vulnerability in apache (CVE-2016-3086). Successful exploitation can lead to full system takeover.
|
| CVE-2015-7517 |
|
SQL Injection in wordpress (CVE-2015-7517)
SQL injection in wordpress (CVE-2015-7517). Successful exploitation can lead to full system takeover.
|
| CVE-2017-13137 |
|
The FormCraft Basic plugin 1.0.5 for WordPress has SQL injection in the id parameter to form.php.
The FormCraft Basic plugin 1.0.5 for WordPress has SQL injection in the id parameter to form.php.
|
| CVE-2016-4460 |
|
Apache Pony Mail 0.6c through 0.8b allows remote attackers to bypass authentication.
Apache Pony Mail 0.6c through 0.8b allows remote attackers to bypass authentication.
|
| CVE-2017-9800 |
|
Vulnerability in apache (CVE-2017-9800)
vulnerability in apache (CVE-2017-9800). Successful exploitation can lead to full system takeover.
|
| CVE-2016-5018 |
|
Vulnerability in apache (CVE-2016-5018)
vulnerability in apache (CVE-2016-5018). Confidential information can be exposed externally.
|
| CVE-2012-0803 |
|
Authentication Bypass in apache (CVE-2012-0803)
authentication bypass in apache (CVE-2012-0803). Successful exploitation can lead to full system takeover.
|
| CVE-2017-12650 |
|
SQL Injection in wordpress (CVE-2017-12650)
SQL injection in wordpress (CVE-2017-12650). Successful exploitation can lead to full system takeover.
|
| CVE-2017-6747 |
|
Authentication Bypass in express (CVE-2017-6747)
authentication bypass in express (CVE-2017-6747). Successful exploitation can lead to full system takeover.
|
| CVE-2017-12199 |
|
SQL Injection in wordpress (CVE-2017-12199)
SQL injection in wordpress (CVE-2017-12199). Successful exploitation can lead to full system takeover.
|
| CVE-2017-11694 |
|
Vulnerability in apache (CVE-2017-11694)
vulnerability in apache (CVE-2017-11694). Confidential information can be exposed externally.
|
| CVE-2016-6798 |
|
XXE (XML External Entity) in apache (CVE-2016-6798)
vulnerability in apache (CVE-2016-6798). Successful exploitation can lead to full system takeover.
|
| CVE-2017-7664 |
|
Uploaded XML documents were not correctly validated in Apache OpenMeetings 3.1.0.
Uploaded XML documents were not correctly validated in Apache OpenMeetings 3.1.0.
|
| CVE-2017-7673 |
|
Vulnerability in apache (CVE-2017-7673)
vulnerability in apache (CVE-2017-7673). Successful exploitation can lead to full system takeover.
|
| CVE-2016-6793 |
|
Unsafe Deserialization in apache (CVE-2016-6793)
vulnerability in apache (CVE-2016-6793). Data can be tampered with by attackers.
|
| CVE-2017-9788 |
|
Vulnerability in apache (CVE-2017-9788)
vulnerability in apache (CVE-2017-9788). Confidential information can be exposed externally. Exploitable via `Authorization header`.
|
| CVE-2017-5640 |
|
Authentication Bypass in apache (CVE-2017-5640)
authentication bypass in apache (CVE-2017-5640). Successful exploitation can lead to full system takeover.
|
| CVE-2017-6711 |
|
Authentication Bypass in apache (CVE-2017-6711)
authentication bypass in apache (CVE-2017-6711). Confidential information can be exposed externally.
|
| CVE-2017-9830 |
|
Unsafe Deserialization in apache (CVE-2017-9830)
vulnerability in apache (CVE-2017-9830). Successful exploitation can lead to full system takeover.
|
| CVE-2017-3167 |
|
Authentication Bypass in apache (CVE-2017-3167)
authentication bypass in apache (CVE-2017-3167). Successful exploitation can lead to full system takeover.
|
| CVE-2017-3169 |
|
Vulnerability in apache (CVE-2017-3169)
vulnerability in apache (CVE-2017-3169). Successful exploitation can lead to full system takeover.
|
| CVE-2017-7679 |
|
Vulnerability in apache (CVE-2017-7679)
vulnerability in apache (CVE-2017-7679). Successful exploitation can lead to full system takeover.
|
| CVE-2017-7676 |
|
Vulnerability in apache (CVE-2017-7676)
vulnerability in apache (CVE-2017-7676). Successful exploitation can lead to full system takeover.
|
| CVE-2015-5211 |
|
Vulnerability in spring (CVE-2015-5211)
vulnerability in spring (CVE-2015-5211). Successful exploitation can lead to full system takeover.
|
| CVE-2015-4455 |
|
Unrestricted File Upload in wordpress (CVE-2015-4455)
vulnerability in wordpress (CVE-2015-4455). Successful exploitation can lead to full system takeover.
|
| CVE-2015-5609 |
|
Path Traversal in wordpress (CVE-2015-5609)
path traversal in wordpress (CVE-2015-5609). Confidential information can be exposed externally.
|
| CVE-2016-4905 |
|
SQL Injection in wordpress (CVE-2016-4905)
SQL injection in wordpress (CVE-2016-4905). Successful exploitation can lead to full system takeover.
|
| CVE-2017-8917 |
|
SQL Injection in sqli (CVE-2017-8917)
SQL injection in sqli (CVE-2017-8917). Successful exploitation can lead to full system takeover.
|
| CVE-2017-3503 |
|
Vulnerability in c (CVE-2017-3503)
vulnerability in c (CVE-2017-3503). Successful exploitation can lead to full system takeover.
|
| CVE-2017-5645 |
|
Unsafe Deserialization in apache (CVE-2017-5645)
vulnerability in apache (CVE-2017-5645). Successful exploitation can lead to full system takeover.
|
| CVE-2017-5648 |
|
Vulnerability in apache (CVE-2017-5648)
vulnerability in apache (CVE-2017-5648). Confidential information can be exposed externally.
|
| CVE-2017-5651 |
|
Vulnerability in apache (CVE-2017-5651)
vulnerability in apache (CVE-2017-5651). Successful exploitation can lead to full system takeover.
|
| CVE-2016-6808 |
|
Buffer overflow in Apache Tomcat Connectors (mod_jk) before 1.2.42.
Buffer overflow in Apache Tomcat Connectors (mod_jk) before 1.2.42.
|