Vulnerabilities

Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.

ID Title
CVE-2017-5518 SSRF (Server-Side Request Forgery) in ssrf (CVE-2017-5518)
SSRF in ssrf (CVE-2017-5518). Data can be tampered with by attackers.
CVE-2017-5520 Unrestricted File Upload in metalgenix (CVE-2017-5520)
vulnerability in metalgenix (CVE-2017-5520). Successful exploitation can lead to full system takeover.
CVE-2016-7904 Cross-Site Request Forgery (CSRF) in csrf (CVE-2016-7904)
vulnerability in csrf (CVE-2016-7904). Successful exploitation can lead to full system takeover.
CVE-2017-5480 Path Traversal in path-traversal (CVE-2017-5480)
path traversal in path-traversal (CVE-2017-5480). Confidential information can be exposed externally.
CVE-2017-5492 Cross-Site Request Forgery (CSRF) in wordpress (CVE-2017-5492)
vulnerability in wordpress (CVE-2017-5492). Successful exploitation can lead to full system takeover.
CVE-2017-5493 Vulnerability in wordpress (CVE-2017-5493)
vulnerability in wordpress (CVE-2017-5493). Data can be tampered with by attackers.
CVE-2017-2584 Information Disclosure in c (CVE-2017-2584)
vulnerability in c (CVE-2017-2584). Confidential information can be exposed externally.
CVE-2017-5489 Cross-Site Request Forgery (CSRF) in wordpress (CVE-2017-5489)
vulnerability in wordpress (CVE-2017-5489). Successful exploitation can lead to full system takeover.
CVE-2016-8201 Cross-Site Request Forgery (CSRF) in csrf (CVE-2016-8201)
vulnerability in csrf (CVE-2016-8201). Successful exploitation can lead to full system takeover.
CVE-2016-8206 Path Traversal in path-traversal (CVE-2016-8206)
path traversal in path-traversal (CVE-2016-8206). Data can be tampered with by attackers.
CVE-2016-8207 Path Traversal in path-traversal (CVE-2016-8207)
path traversal in path-traversal (CVE-2016-8207). Confidential information can be exposed externally.
CVE-2016-10142 Vulnerability in dos (CVE-2016-10142)
vulnerability in dos (CVE-2016-10142). Risk of unauthorized operations or information disclosure.
CVE-2017-5473 Cross-Site Request Forgery (CSRF) in csrf (CVE-2017-5473)
vulnerability in csrf (CVE-2017-5473). Successful exploitation can lead to full system takeover.
CVE-2017-5475 comment.php in Serendipity through 2.0.5 allows CSRF in deleting any comments.
comment.php in Serendipity through 2.0.5 allows CSRF in deleting any comments.
CVE-2017-5476 Serendipity through 2.0.5 allows CSRF for the installation of an event plugin or a sidebar plugin.
Serendipity through 2.0.5 allows CSRF for the installation of an event plugin or a sidebar plugin.
CVE-2010-5327 Vulnerability in liferay (CVE-2010-5327)
vulnerability in liferay (CVE-2010-5327). Successful exploitation can lead to full system takeover.
CVE-2016-9808 Out-of-Bounds Write in dos (CVE-2016-9808)
out-of-bounds write in dos (CVE-2016-9808). Risk of unauthorized operations or information disclosure.
CVE-2016-9809 Out-of-Bounds Read in gstreamer (CVE-2016-9809)
vulnerability in gstreamer (CVE-2016-9809). Successful exploitation can lead to full system takeover.
CVE-2016-9812 Out-of-Bounds Read in dos (CVE-2016-9812)
vulnerability in dos (CVE-2016-9812). Risk of unauthorized operations or information disclosure.
CVE-2016-6885 Use-After-Free in dos (CVE-2016-6885)
vulnerability in dos (CVE-2016-6885). Risk of unauthorized operations or information disclosure.
CVE-2016-6886 Vulnerability in dos (CVE-2016-6886)
vulnerability in dos (CVE-2016-6886). Risk of unauthorized operations or information disclosure.
CVE-2016-7426 Vulnerability in dos (CVE-2016-7426)
vulnerability in dos (CVE-2016-7426). Risk of unauthorized operations or information disclosure.
CVE-2016-7434 Vulnerability in dos (CVE-2016-7434)
vulnerability in dos (CVE-2016-7434). Risk of unauthorized operations or information disclosure.
CVE-2016-9107 Information Disclosure in otr (CVE-2016-9107)
vulnerability in otr (CVE-2016-9107). Confidential information can be exposed externally.
CVE-2016-9312 Vulnerability in dos (CVE-2016-9312)
vulnerability in dos (CVE-2016-9312). Risk of unauthorized operations or information disclosure.
CVE-2016-10136 Vulnerability in adups (CVE-2016-10136)
vulnerability in adups (CVE-2016-10136). Successful exploitation can lead to full system takeover.
CVE-2016-10137 Vulnerability in adups (CVE-2016-10137)
vulnerability in adups (CVE-2016-10137). Successful exploitation can lead to full system takeover.
CVE-2016-10138 Vulnerability in adups (CVE-2016-10138)
vulnerability in adups (CVE-2016-10138). Successful exploitation can lead to full system takeover.
CVE-2016-10139 Vulnerability in adups (CVE-2016-10139)
vulnerability in adups (CVE-2016-10139). Successful exploitation can lead to full system takeover.
CVE-2016-10140 Information Disclosure in apache (CVE-2016-10140)
vulnerability in apache (CVE-2016-10140). Confidential information can be exposed externally.
CVE-2016-3128 Vulnerability in blackberry (CVE-2016-3128)
vulnerability in blackberry (CVE-2016-3128). Data can be tampered with by attackers.
CVE-2016-3130 Information Disclosure in blackberry (CVE-2016-3130)
vulnerability in blackberry (CVE-2016-3130). Successful exploitation can lead to full system takeover.
CVE-2016-9882 Vulnerability in cloudfoundry (CVE-2016-9882)
vulnerability in cloudfoundry (CVE-2016-9882). Confidential information can be exposed externally.
CVE-2017-5364 Buffer Overflow in dos (CVE-2017-5364)
vulnerability in dos (CVE-2017-5364). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `2.0` or later.
CVE-2016-3151 Path Traversal in path-traversal (CVE-2016-3151)
path traversal in path-traversal (CVE-2016-3151). Confidential information can be exposed externally.
CVE-2016-6492 Vulnerability in c (CVE-2016-6492)
vulnerability in c (CVE-2016-6492). Successful exploitation can lead to full system takeover.
CVE-2016-10009 Vulnerability in c (CVE-2016-10009)
vulnerability in c (CVE-2016-10009). Risk of unauthorized operations or information disclosure.
CVE-2016-10012 Buffer Overflow in openbsd (CVE-2016-10012)
vulnerability in openbsd (CVE-2016-10012). Successful exploitation can lead to full system takeover.
CVE-2016-9158 Vulnerability in siemens (CVE-2016-9158)
vulnerability in siemens (CVE-2016-9158). Risk of unauthorized operations or information disclosure.
CVE-2016-4978 Unsafe Deserialization in apache (CVE-2016-4978)
vulnerability in apache (CVE-2016-4978). Successful exploitation can lead to full system takeover.
CVE-2016-2183 Information Disclosure in redhat (CVE-2016-2183)
vulnerability in redhat (CVE-2016-2183). Confidential information can be exposed externally.
CVE-2016-5645 Vulnerability in rockwellautomation (CVE-2016-5645)
vulnerability in rockwellautomation (CVE-2016-5645). Risk of unauthorized operations or information disclosure.
CVE-2015-8325 The do_setup_env function in session.c in sshd in OpenSSH through 7.2p2, when the UseLogin feature is enabled and PAM is configured to read .pam_environment files in user home directories, allows loca...
The do_setup_env function in session.c in sshd in OpenSSH through 7.2p2, when the UseLogin feature is enabled and PAM is configured to read .pam_environment files in user home directories, allows local users to gain privileges by triggering a crafted environment for the /bin/login program, as demons...
CVE-2016-0778 Buffer Overflow in c (CVE-2016-0778)
vulnerability in c (CVE-2016-0778). Successful exploitation can lead to full system takeover.
CVE-2015-6492 Buffer Overflow in dos (CVE-2015-6492)
vulnerability in dos (CVE-2015-6492). Risk of unauthorized operations or information disclosure.
CVE-2015-6564 Use-after-free vulnerability in the mm_answer_pam_free_ctx function in monitor.c in sshd in...
Use-after-free vulnerability in the mm_answer_pam_free_ctx function in monitor.c in sshd in...
CVE-2015-2177 Vulnerability in dos (CVE-2015-2177)
vulnerability in dos (CVE-2015-2177). Risk of unauthorized operations or information disclosure.
CVE-2014-1692 Buffer Overflow in c (CVE-2014-1692)
vulnerability in c (CVE-2014-1692). Risk of unauthorized operations or information disclosure.
CVE-2013-4734 Vulnerability in digital-alert-systems (CVE-2013-4734)
vulnerability in digital-alert-systems (CVE-2013-4734). Risk of unauthorized operations or information disclosure.
CVE-2013-4733 Vulnerability in digital-alert-systems (CVE-2013-4733)
vulnerability in digital-alert-systems (CVE-2013-4733). Confidential information can be exposed externally.

🍪 About cookies

We use cookies to keep you logged in, remember your language, and improve the service.

Details →