Aggregator
CVE-2020-2803 | Oracle GraalVM Enterprise Edition 19.3.1/20.0.0 Java Remote Code Execution (Nessus ID 208620)
1 year 8 months ago
A vulnerability was found in Oracle GraalVM Enterprise Edition 19.3.1/20.0.0. It has been declared as critical. This vulnerability affects unknown code of the component Java. The manipulation leads to Remote Code Execution.
This vulnerability was named CVE-2020-2803. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2020-2781 | Oracle Java SE 7u251/8u241/11.0.6/14 JSSE denial of service (Nessus ID 208620)
1 year 8 months ago
A vulnerability, which was classified as critical, has been found in Oracle Java SE 7u251/8u241/11.0.6/14. This issue affects some unknown processing of the component JSSE. The manipulation leads to denial of service.
The identification of this vulnerability is CVE-2020-2781. The attack may be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2020-2800 | Oracle Java SE 7u251/8u241/11.0.6/14 Lightweight HTTP Server (Nessus ID 208620)
1 year 8 months ago
A vulnerability was found in Oracle Java SE 7u251/8u241/11.0.6/14 and classified as critical. Affected by this issue is some unknown functionality of the component Lightweight HTTP Server. The manipulation leads to an unknown weakness.
This vulnerability is handled as CVE-2020-2800. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2020-2654 | Oracle Java SE 7u241/8u231/11.0.5/13.0.1 Libraries denial of service (Nessus ID 208620)
1 year 8 months ago
A vulnerability was found in Oracle Java SE 7u241/8u231/11.0.5/13.0.1 and classified as problematic. Affected by this issue is some unknown functionality of the component Libraries. The manipulation leads to denial of service.
This vulnerability is handled as CVE-2020-2654. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2020-2754 | Oracle Java SE 8u241/11.0.6/14 Scripting denial of service (Nessus ID 208620)
1 year 8 months ago
A vulnerability was found in Oracle Java SE 8u241/11.0.6/14. It has been rated as problematic. This issue affects some unknown processing of the component Scripting. The manipulation leads to denial of service.
The identification of this vulnerability is CVE-2020-2754. The attack may be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2020-2755 | Oracle Java SE 8u241/11.0.6/14 Scripting denial of service (Nessus ID 208620)
1 year 8 months ago
A vulnerability classified as problematic has been found in Oracle Java SE 8u241/11.0.6/14. Affected is an unknown function of the component Scripting. The manipulation leads to denial of service.
This vulnerability is traded as CVE-2020-2755. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2020-2756 | Oracle Java SE 7u251/8u241/11.0.6/14 Serialization denial of service (Nessus ID 208620)
1 year 8 months ago
A vulnerability, which was classified as problematic, has been found in Oracle Java SE 7u251/8u241/11.0.6/14. Affected by this issue is some unknown functionality of the component Serialization. The manipulation leads to denial of service.
This vulnerability is handled as CVE-2020-2756. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2020-2757 | Oracle Java SE 7u251/8u241/11.0.6/14 Serialization denial of service (Nessus ID 208620)
1 year 8 months ago
A vulnerability, which was classified as problematic, was found in Oracle Java SE 7u251/8u241/11.0.6/14. This affects an unknown part of the component Serialization. The manipulation leads to denial of service.
This vulnerability is uniquely identified as CVE-2020-2757. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2019-2949 | Oracle Java SE 7u231/8u221/11.0.4/13 Kerberos information disclosure (Nessus ID 208620)
1 year 8 months ago
A vulnerability was found in Oracle Java SE 7u231/8u221/11.0.4/13. It has been declared as critical. This vulnerability affects unknown code of the component Kerberos. The manipulation leads to information disclosure.
This vulnerability was named CVE-2019-2949. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2020-15112 | etcd up to 3.3.22/3.4.9 wal/wal.go ReadAll input validation (Nessus ID 208622)
1 year 8 months ago
A vulnerability was found in etcd up to 3.3.22/3.4.9 and classified as problematic. Affected by this issue is the function ReadAll of the file wal/wal.go. The manipulation leads to improper input validation.
This vulnerability is handled as CVE-2020-15112. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2020-15862 | net-snmp up to 5.7.3 Privilege Management privileges management (Nessus ID 208621)
1 year 8 months ago
A vulnerability has been found in net-snmp up to 5.7.3 and classified as critical. Affected by this vulnerability is an unknown functionality of the component Privilege Management. The manipulation leads to improper privilege management.
This vulnerability is known as CVE-2020-15862. It is possible to launch the attack on the local host. There is no exploit available.
vuldb.com
CVE-2019-11236 | urllib3 up to 1.24.1 on Python Parameter crlf injection (RHSA-2019:2272 / Nessus ID 208623)
1 year 8 months ago
A vulnerability was found in urllib3 up to 1.24.1 on Python and classified as critical. Affected by this issue is some unknown functionality. The manipulation as part of Parameter leads to crlf injection.
This vulnerability is handled as CVE-2019-11236. The attack may be launched remotely. There is no exploit available.
vuldb.com
CVE-2019-11324 | urllib3 up to 1.24.1 on Python CA Certificate ssl_context/ca_certs/ca_certs_dir certificate validation (RHSA-2019:3335 / Nessus ID 208623)
1 year 8 months ago
A vulnerability, which was classified as critical, was found in urllib3 up to 1.24.1 on Python. Affected is an unknown function of the component CA Certificate Handler. The manipulation of the argument ssl_context/ca_certs/ca_certs_dir leads to improper certificate validation.
This vulnerability is traded as CVE-2019-11324. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2020-15106 | etcd up to 3.3.22/3.4.9 WAL File decodeRecord length input validation (Nessus ID 208622)
1 year 8 months ago
A vulnerability has been found in etcd up to 3.3.22/3.4.9 and classified as problematic. Affected by this vulnerability is the function decodeRecord of the component WAL File Handler. The manipulation of the argument length leads to improper input validation.
This vulnerability is known as CVE-2020-15106. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2007-6651 | Bitweaver 2.0.0 wiki/edit.php suck_url path traversal (EDB-4814 / Nessus ID 29854)
1 year 8 months ago
A vulnerability was found in Bitweaver 2.0.0. It has been classified as problematic. Affected is an unknown function of the file wiki/edit.php. The manipulation of the argument suck_url leads to path traversal.
This vulnerability is traded as CVE-2007-6651. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2007-6652 | XCMS 1.83 cpie.php testo_0 code injection (EDB-4813 / XFDB-39346)
1 year 8 months ago
A vulnerability was found in XCMS 1.83. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file cpie.php. The manipulation of the argument testo_0 leads to code injection.
This vulnerability is known as CVE-2007-6652. The attack can be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2007-6653 | Mihalism Multi Host 2.07 download.php file path traversal (EDB-4812 / XFDB-39330)
1 year 8 months ago
A vulnerability was found in Mihalism Multi Host 2.07. It has been rated as problematic. Affected by this issue is some unknown functionality of the file download.php. The manipulation of the argument file leads to path traversal.
This vulnerability is handled as CVE-2007-6653. The attack may be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2007-6655 | Matpo Bilder Galerie Kontakt Formular 1.4 includes/function.php root_path code injection (EDB-4811 / XFDB-39310)
1 year 8 months ago
A vulnerability classified as critical was found in Matpo Bilder Galerie Kontakt Formular 1.4. This vulnerability affects unknown code of the file includes/function.php. The manipulation of the argument root_path leads to code injection.
This vulnerability was named CVE-2007-6655. The attack can be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2007-6656 | CMS Made Simple up to 1.2.2 content_css.php templateid sql injection (EDB-4810 / Nessus ID 29829)
1 year 8 months ago
A vulnerability, which was classified as critical, has been found in CMS Made Simple up to 1.2.2. This issue affects some unknown processing of the file content_css.php. The manipulation of the argument templateid leads to sql injection.
The identification of this vulnerability is CVE-2007-6656. The attack may be initiated remotely. Furthermore, there is an exploit available.
vuldb.com