Количество 18 763
Количество 18 763
CVE-2014-0048
CVE-2014-0047
CVE-2013-7381
libnotify before 1.0.4 for Node.js allows remote attackers to execute arbitrary commands via unspecified characters in a call to libnotify.notify.
CVE-2013-6629
libjpeg Information Disclosure Vulnerability
CVE-2013-6418
PyWBEM 0.7 and earlier uses a separate connection to validate X.509 certificates, which allows man-in-the-middle attackers to spoof a peer via an arbitrary certificate.
CVE-2013-6381
CVE-2013-4420
CVE-2013-4416
The Ocaml xenstored implementation (oxenstored) in Xen 4.1.x, 4.2.x, and 4.3.x allows local guest domains to cause a denial of service (domain shutdown) via a large message reply.
CVE-2013-4342
CVE-2013-3900
WinVerifyTrust Signature Validation Vulnerability
CVE-2013-2094
CVE-2013-0340
expat 2.1.0 and earlier does not properly handle entities expansion unless an application developer uses the XML_SetEntityDeclHandler function which allows remote attackers to cause a denial of service (resource consumption) send HTTP requests to intranet servers or read arbitrary files via a crafted XML document aka an XML External Entity (XXE) issue. NOTE: it could be argued that because expat already provides the ability to disable external entity expansion the responsibility for resolving this issue lies with application developers; according to this argument this entry should be REJECTed and each affected application would need its own CVE.
CVE-2013-0223
CVE-2013-0222
CVE-2013-0221
CVE-2012-6708
CVE-2012-6687
CVE-2012-6655
CVE-2012-5627
Oracle MySQL and MariaDB 5.5.x before 5.5.29 5.3.x before 5.3.12 and 5.2.x before 5.2.14 does not modify the salt during multiple executions of the change_user command within the same connection which makes it easier for remote authenticated users to conduct brute force password guessing attacks.
CVE-2012-4575
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVSS3: 9.8 | 3% Низкий | больше 4 лет назад | ||
CVSS3: 7.8 | 0% Низкий | больше 4 лет назад | ||
CVE-2013-7381 libnotify before 1.0.4 for Node.js allows remote attackers to execute arbitrary commands via unspecified characters in a call to libnotify.notify. | CVSS3: 9.8 | 2% Низкий | 4 месяца назад | |
CVE-2013-6629 libjpeg Information Disclosure Vulnerability | CVSS3: 4.7 | 0% Низкий | почти 9 лет назад | |
CVE-2013-6418 PyWBEM 0.7 and earlier uses a separate connection to validate X.509 certificates, which allows man-in-the-middle attackers to spoof a peer via an arbitrary certificate. | 0% Низкий | 5 месяцев назад | ||
0% Низкий | почти 2 года назад | |||
1% Низкий | больше 5 лет назад | |||
CVE-2013-4416 The Ocaml xenstored implementation (oxenstored) in Xen 4.1.x, 4.2.x, and 4.3.x allows local guest domains to cause a denial of service (domain shutdown) via a large message reply. | 0% Низкий | 5 месяцев назад | ||
15% Средний | почти 3 года назад | |||
CVE-2013-3900 WinVerifyTrust Signature Validation Vulnerability | 80% Высокий | около 4 лет назад | ||
CVSS3: 8.4 | 65% Средний | почти 2 года назад | ||
CVE-2013-0340 expat 2.1.0 and earlier does not properly handle entities expansion unless an application developer uses the XML_SetEntityDeclHandler function which allows remote attackers to cause a denial of service (resource consumption) send HTTP requests to intranet servers or read arbitrary files via a crafted XML document aka an XML External Entity (XXE) issue. NOTE: it could be argued that because expat already provides the ability to disable external entity expansion the responsibility for resolving this issue lies with application developers; according to this argument this entry should be REJECTed and each affected application would need its own CVE. | 0% Низкий | около 4 лет назад | ||
0% Низкий | больше 5 лет назад | |||
0% Низкий | больше 5 лет назад | |||
6% Низкий | больше 5 лет назад | |||
CVSS3: 6.1 | 1% Низкий | около 1 года назад | ||
25% Средний | больше 5 лет назад | |||
CVSS3: 3.3 | 0% Низкий | 12 месяцев назад | ||
CVE-2012-5627 Oracle MySQL and MariaDB 5.5.x before 5.5.29 5.3.x before 5.3.12 and 5.2.x before 5.2.14 does not modify the salt during multiple executions of the change_user command within the same connection which makes it easier for remote authenticated users to conduct brute force password guessing attacks. | 4% Низкий | больше 5 лет назад | ||
2% Низкий | больше 5 лет назад |
Уязвимостей на страницу