CSV
14,737 results for "vulnerability" Page 25
CVE-2016-10134 CRITICAL Exploit

SQL injection vulnerability in Zabbix before 2.2.14 and 3.0 before 3.0.4 allows remote attackers to execute arbitrary SQL commands via the toggle_ids array parameter in latest.php.

Feb 17, 2017 5 affected product(s) NVD
9.8
CVSS
83.4%
EPSS
⚡ 74.2
CVE-2016-9682 CRITICAL

The SonicWall Secure Remote Access server (version 8.1.0.2-14sv) is vulnerable to two Remote Command Injection vulnerabilities in its web administrative interface. These vulnerabilities occur in the diagnostics CGI (/cgi-bin/diagnostics) component responsible for emailing out information about the state of the system. The application doesn't properly escape the information passed in the 'tsrDeleteRestartedFile' or 'currentTSREmailTo' variables before making a call to system(), allowing for remote command injection. Exploitation of this vulnerability yields shell access to the remote machine under the nobody user account.

Feb 22, 2017 1 affected product(s) NVD
9.8
CVSS
23.3%
EPSS
⚡ 46.2
CVE-2017-5674 CRITICAL

A vulnerability in a custom-built GoAhead web server used on Foscam, Vstarcam, and multiple white-label IP camera models allows an attacker to craft a malformed HTTP ("GET system.ini HTTP/1.1\n\n" - note the lack of "/" in the path field of the request) request that will disclose the configuration file with the login password.

Mar 13, 2017 1 affected product(s) NVD
9.8
CVSS
21.6%
EPSS
⚡ 45.7
CVE-2017-6558 CRITICAL

iball Baton 150M iB-WRA150N v1 00000001 1.2.6 build 110401 Rel.47776n devices are prone to an authentication bypass vulnerability that allows remote attackers to view and modify administrative router settings by reading the HTML source code of the password.cgi file.

Mar 9, 2017 1 affected product(s) NVD
9.8
CVSS
15.3%
EPSS
⚡ 43.8
CVE-2017-6342 CRITICAL

An issue was discovered on Dahua DHI-HCVR7216A-S3 devices with NVR Firmware 3.210.0001.10 2016-06-06, Camera Firmware 2.400.0000.28.R 2016-03-29, and SmartPSS Software 1.16.1 2017-01-19. When SmartPSS Software is launched, while on the login screen, the software in the background automatically logs in as admin. This allows sniffing sensitive information identified in CVE-2017-6341 without prior knowledge of the password. This is a different vulnerability than CVE-2013-6117.

Feb 27, 2017 3 affected product(s) NVD
9.8
CVSS
12.8%
EPSS
⚡ 43
CVE-2016-9683 CRITICAL

The SonicWall Secure Remote Access server (version 8.1.0.2-14sv) is vulnerable to a Remote Command Injection vulnerability in its web administrative interface. This vulnerability occurs in the 'extensionsettings' CGI (/cgi-bin/extensionsettings) component responsible for handling some of the server's internal configurations. The CGI application doesn't properly escape the information it's passed when processing a particular multi-part form request involving scripts. The filename of the 'scriptname' variable is read in unsanitized before a call to system() is performed - allowing for remote command injection. Exploitation of this vulnerability yields shell access to the remote machine under the nobody user account. This is SonicWall Issue ID 181195.

Feb 22, 2017 1 affected product(s) NVD
9.8
CVSS
11.6%
EPSS
⚡ 42.7
CVE-2017-6506 CRITICAL

In Azure Data Expert Ultimate 2.2.16, the SMTP verification function suffers from a buffer overflow vulnerability, leading to remote code execution. The attack vector is a crafted SMTP daemon that sends a long 220 (aka "Service ready") string.

Mar 10, 2017 1 affected product(s) NVD
9.8
CVSS
11.7%
EPSS
⚡ 42.7
CVE-2017-6416 CRITICAL

An issue was discovered in SysGauge 1.5.18. A buffer overflow vulnerability in SMTP connection verification leads to arbitrary code execution. The attack vector is a crafted SMTP daemon that sends a long 220 (aka "Service ready") string.

Mar 6, 2017 1 affected product(s) NVD
9.8
CVSS
10.9%
EPSS
⚡ 42.5
CVE-2016-7406 CRITICAL

Format string vulnerability in Dropbear SSH before 2016.74 allows remote attackers to execute arbitrary code via format string specifiers in the (1) username or (2) host argument.

Mar 3, 2017 1 affected product(s) NVD
9.8
CVSS
10.5%
EPSS
⚡ 42.3
CVE-2017-2973 CRITICAL

Adobe Digital Editions versions 4.5.3 and earlier have an exploitable heap overflow vulnerability. Successful exploitation could lead to arbitrary code execution.

Feb 15, 2017 1 affected product(s) NVD
9.8
CVSS
9.3%
EPSS
⚡ 42
CVE-2016-8027 CRITICAL

SQL injection vulnerability in core services in Intel Security McAfee ePolicy Orchestrator (ePO) 5.3.2 and earlier and 5.1.3 and earlier allows attackers to alter a SQL query, which can result in disclosure of information within the database or impersonation of an agent without authentication via a specially crafted HTTP post.

Mar 14, 2017 2 affected product(s) NVD
10.0
CVSS
5.7%
EPSS
⚡ 41.7
CVE-2017-5929 CRITICAL

QOS.ch Logback before 1.2.0 has a serialization vulnerability affecting the SocketServer and ServerSocketReceiver components.

Mar 13, 2017 3 affected product(s) NVD
9.8
CVSS
7.5%
EPSS
⚡ 41.5
CVE-2016-9053 CRITICAL

An exploitable out-of-bounds indexing vulnerability exists within the RW fabric message particle type of Aerospike Database Server 3.10.0.3. A specially crafted packet can cause the server to fetch a function table outside the bounds of an array resulting in remote code execution. An attacker can simply connect to the port to trigger this vulnerability.

Feb 21, 2017 1 affected product(s) NVD
9.8
CVSS
7.2%
EPSS
⚡ 41.4
CVE-2016-9051 CRITICAL

An exploitable out-of-bounds write vulnerability exists in the batch transaction field parsing functionality of Aerospike Database Server 3.10.0.3. A specially crafted packet can cause an out-of-bounds write resulting in memory corruption which can lead to remote code execution. An attacker can simply connect to the port to trigger this vulnerability.

Feb 21, 2017 1 affected product(s) NVD
9.8
CVSS
6.9%
EPSS
⚡ 41.3
CVE-2016-9684 CRITICAL

The SonicWall Secure Remote Access server (version 8.1.0.2-14sv) is vulnerable to a Remote Command Injection vulnerability in its web administrative interface. This vulnerability occurs in the 'viewcert' CGI (/cgi-bin/viewcert) component responsible for processing SSL certificate information. The CGI application doesn't properly escape the information it's passed in the 'CERT' variable before a call to system() is performed - allowing for remote command injection. Exploitation of this vulnerability yields shell access to the remote machine under the nobody user account.

Feb 22, 2017 1 affected product(s) NVD
9.8
CVSS
7.1%
EPSS
⚡ 41.3
CVE-2017-3159 CRITICAL

Apache Camel's camel-snakeyaml component is vulnerable to Java object de-serialization vulnerability. De-serializing untrusted data can lead to security flaws.

Mar 7, 2017 3 affected product(s) NVD
9.8
CVSS
6.3%
EPSS
⚡ 41.1
CVE-2017-3831 CRITICAL

A vulnerability in the web-based GUI of Cisco Mobility Express 1800 Series Access Points could allow an unauthenticated, remote attacker to bypass authentication. The attacker could be granted full administrator privileges. The vulnerability is due to improper implementation of authentication for accessing certain web pages using the GUI interface. An attacker could exploit this vulnerability by sending a crafted HTTP request to the web interface of the affected system. A successful exploit could allow the attacker to bypass authentication and perform unauthorized configuration changes or issue control commands to the affected device. This vulnerability affects Cisco Mobility Express 1800 Series Access Points running a software version prior to 8.2.110.0. Cisco Bug IDs: CSCuy68219.

Mar 15, 2017 4 affected product(s) NVD
9.8
CVSS
5.3%
EPSS
⚡ 40.8
CVE-2017-5154 CRITICAL

An issue was discovered in Advantech WebAccess Version 8.1. To be able to exploit the SQL injection vulnerability, an attacker must supply malformed input to the WebAccess software. Successful attack could result in administrative access to the application and its data files.

Feb 13, 2017 1 affected product(s) NVD
9.8
CVSS
4.4%
EPSS
⚡ 40.5
CVE-2017-5145 CRITICAL

An issue was discovered in Carlo Gavazzi VMU-C EM prior to firmware Version A11_U05, and VMU-C PV prior to firmware Version A17. Successful exploitation of this CROSS-SITE REQUEST FORGERY (CSRF) vulnerability can allow execution of unauthorized actions on the device such as configuration parameter changes, and saving modified configuration.

Feb 13, 2017 2 affected product(s) NVD
10.0
CVSS
1.2%
EPSS
⚡ 40.4
CVE-2017-5946 CRITICAL

The Zip::File component in the rubyzip gem before 1.2.1 for Ruby has a directory traversal vulnerability. If a site allows uploading of .zip files, an attacker can upload a malicious file that uses "../" pathname substrings to write arbitrary files to the filesystem.

Feb 27, 2017 3 affected product(s) NVD
9.8
CVSS
3.5%
EPSS
⚡ 40.2