Total
29921 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2014-5012 | 1 Dompdf Project | 1 Dompdf | 2024-11-21 | 4.3 MEDIUM | 6.5 MEDIUM |
DOMPDF before 0.6.2 allows denial of service. | |||||
CVE-2014-4968 | 1 Boatmob | 1 Boat Browser | 2024-11-21 | 6.8 MEDIUM | 8.8 HIGH |
The WebView class and use of the WebView.addJavascriptInterface method in the Boat Browser application 8.0 and 8.0.1 for Android allow remote attackers to execute arbitrary code via a crafted web site, a related issue to CVE-2012-6636. | |||||
CVE-2014-3979 | 1 Bytemark | 1 Symbiosis | 2024-11-21 | 5.0 MEDIUM | 7.5 HIGH |
Bytemark Symbiosis allows remote attackers to cause a denial of service via a crafted username, which triggers the firewall to blacklist the IP. | |||||
CVE-2014-3539 | 1 Rope Project | 1 Rope | 2024-11-21 | 7.5 HIGH | 9.8 CRITICAL |
base/oi/doa.py in the Rope library in CPython (aka Python) allows remote attackers to execute arbitrary code by leveraging an unsafe call to pickle.load. | |||||
CVE-2014-125102 | 1 Bestwebsoft | 1 Relevant | 2024-11-21 | 4.0 MEDIUM | 4.3 MEDIUM |
A vulnerability classified as problematic was found in Bestwebsoft Relevant Plugin up to 1.0.7 on WordPress. Affected by this vulnerability is an unknown functionality of the component Thumbnail Handler. The manipulation leads to information disclosure. The attack can be launched remotely. Upgrading to version 1.0.8 is able to address this issue. The name of the patch is 860d1891025548cf0f5f97364c1f51a888f523c3. It is recommended to upgrade the affected component. The identifier VDB-230113 was assigned to this vulnerability. | |||||
CVE-2014-125093 | 1 Getadmiral | 1 Ad Blocking Detector | 2024-11-21 | 4.0 MEDIUM | 4.3 MEDIUM |
A vulnerability has been found in Ad Blocking Detector Plugin up to 1.2.1 on WordPress and classified as problematic. This vulnerability affects unknown code of the file ad-blocking-detector.php. The manipulation leads to information disclosure. The attack can be initiated remotely. Upgrading to version 1.2.2 is able to address this issue. The patch is identified as 3312b9cd79e5710d1e282fc9216a4e5ab31b3d94. It is recommended to upgrade the affected component. VDB-222610 is the identifier assigned to this vulnerability. | |||||
CVE-2013-7325 | 1 Debian | 2 Debian Linux, Devscripts | 2024-11-21 | 6.5 MEDIUM | 8.8 HIGH |
An issue exists in uscan in devscripts before 2.13.19, which could let a remote malicious user execute arbitrary code via a crafted tarball. | |||||
CVE-2013-4108 | 1 Cryptocat Project | 1 Cryptocat | 2024-11-21 | 7.5 HIGH | 9.8 CRITICAL |
Multiple unspecified vulnerabilities in Cryptocat Project Cryptocat 2.0.18 have unknown impact and attack vectors. | |||||
CVE-2013-3725 | 1 Invisioncommunity | 1 Invision Power Board | 2024-11-21 | 7.5 HIGH | 9.8 CRITICAL |
Invision Power Board (IPB) through 3.x allows admin account takeover leading to code execution. | |||||
CVE-2013-2646 | 1 Tp-link | 2 Tl-wr1043nd, Tl-wr1043nd Firmware | 2024-11-21 | 5.0 MEDIUM | 7.5 HIGH |
TP-LINK TL-WR1043ND V1_120405 devices contain an unspecified denial of service vulnerability. | |||||
CVE-2013-2258 | 1 Cryptocat Project | 1 Cryptocat | 2024-11-21 | 5.0 MEDIUM | 5.3 MEDIUM |
Cryptocat before 2.0.22 has Nickname User Impersonation | |||||
CVE-2013-2097 | 1 Zpanel Project | 1 Zpanel | 2024-11-21 | 9.3 HIGH | 7.8 HIGH |
ZPanel through 10.1.0 has Remote Command Execution | |||||
CVE-2013-20001 | 1 Openzfs | 1 Openzfs | 2024-11-21 | 5.0 MEDIUM | 7.5 HIGH |
An issue was discovered in OpenZFS through 2.0.3. When an NFS share is exported to IPv6 addresses via the sharenfs feature, there is a silent failure to parse the IPv6 address data, and access is allowed to everyone. IPv6 restrictions from the configuration are not applied. | |||||
CVE-2013-1753 | 1 Python | 1 Python | 2024-11-21 | 5.0 MEDIUM | 7.5 HIGH |
The gzip_decode function in the xmlrpc client library in Python 3.4 and earlier allows remote attackers to cause a denial of service (memory consumption) via a crafted HTTP request. | |||||
CVE-2013-1744 | 1 Iris Citations Management Tool Project | 1 Iris Citations Management Tool | 2024-11-21 | 7.5 HIGH | 9.8 CRITICAL |
IRIS citations management tool through 1.3 allows remote attackers to execute arbitrary commands. | |||||
CVE-2013-10007 | 1 Wp-print-friendly Project | 1 Wp Print Friendly | 2024-11-21 | 5.0 MEDIUM | 5.3 MEDIUM |
A vulnerability classified as problematic has been found in ethitter WP-Print-Friendly up to 0.5.2. This affects an unknown part of the file wp-print-friendly.php. The manipulation leads to information disclosure. It is possible to initiate the attack remotely. Upgrading to version 0.5.3 is able to address this issue. The identifier of the patch is 437787292670c20b4abe20160ebbe8428187f2b4. It is recommended to upgrade the affected component. The identifier VDB-217269 was assigned to this vulnerability. | |||||
CVE-2012-6613 | 1 Dlink | 2 Dsr-250n, Dsr-250n Firmware | 2024-11-21 | 9.0 HIGH | 7.2 HIGH |
D-Link DSR-250N devices with firmware 1.05B73_WW allow Persistent Root Access because of the admin password for the admin account. | |||||
CVE-2012-6345 | 1 Novell | 1 Zenworks Configuration Management | 2024-11-21 | 5.0 MEDIUM | 7.5 HIGH |
Novell ZENworks Configuration Management before 11.2.4 allows obtaining sensitive trace information. | |||||
CVE-2012-6309 | 1 Arctic Torrent Project | 1 Arctic Torrent | 2024-11-21 | 5.0 MEDIUM | 7.5 HIGH |
A vulnerability exists in Arctic Torrent 1.4 via unspecified vectors in .torrent file handling, which could let a malicious user cause a Denial of Service. | |||||
CVE-2012-6307 | 1 Impulseadventure | 1 Jpegsnoop | 2024-11-21 | 6.5 MEDIUM | 8.8 HIGH |
A vulnerability exists in JPEGsnoop 1.5.2 due to an unspecified issue in JPEG file handling, which could let a malicious user execute arbitrary code |