Show filters
21 Total Results
Displaying 11-20 of 21
Sort by:
Attacker Value
Unknown

CVE-2019-13116

Disclosure Date: October 16, 2019 (last updated November 27, 2024)
The MuleSoft Mule Community Edition runtime engine before 3.8 allows remote attackers to execute arbitrary code because of Java Deserialization, related to Apache Commons Collections
Attacker Value
Unknown

CVE-2019-15630

Disclosure Date: August 30, 2019 (last updated November 27, 2024)
Directory Traversal in APIkit, HTTP connector, and OAuth2 Provider components in MuleSoft Mule Runtime 3.2.0 and higher released before August 1 2019, MuleSoft Mule Runtime 4.1.0 and higher released before August 1 2019, and all versions of MuleSoft API Gateway released before August 1 2019 allow remote attackers to read files accessible to the Mule process.
0
Attacker Value
Unknown

CVE-2014-9000

Disclosure Date: November 20, 2014 (last updated October 05, 2023)
Mule Enterprise Management Console (MMC) does not properly restrict access to handler/securityService.rpc, which allows remote authenticated users to gain administrator privileges and execute arbitrary code via a crafted request that adds a new user. NOTE: this issue was originally reported for ESB Runtime 3.5.1, but it originates in MMC.
0
Attacker Value
Unknown

CVE-2009-1485

Disclosure Date: April 29, 2009 (last updated October 04, 2023)
The logging feature in eMule Plus before 1.2e allows remote attackers to cause a denial of service (infinite loop) via unspecified attack vectors.
0
Attacker Value
Unknown

CVE-2009-1440

Disclosure Date: April 27, 2009 (last updated October 04, 2023)
Incomplete blacklist vulnerability in DownloadListCtrl.cpp in amule 2.2.4 allows remote attackers to conduct argument injection attacks into a command for mplayer via a crafted filename.
0
Attacker Value
Unknown

CVE-2008-2503

Disclosure Date: May 29, 2008 (last updated October 04, 2023)
Buffer overflow in Uploadlist in eMule X-Ray before 1.4 has unknown impact and remote attack vectors.
0
Attacker Value
Unknown

CVE-2008-2486

Disclosure Date: May 28, 2008 (last updated October 04, 2023)
Unspecified vulnerability in eMule Plus before 1.2d has unknown impact and attack vectors related to "staticservers.dat processing."
0
Attacker Value
Unknown

CVE-2006-2692

Disclosure Date: May 31, 2006 (last updated October 04, 2023)
Multiple unspecified vulnerabilities in aMuleWeb for AMule before 2.1.2 allow remote attackers to read arbitrary image, HTML, or PHP files via unknown vectors, probably related to directory traversal.
0
Attacker Value
Unknown

CVE-2006-2691

Disclosure Date: May 31, 2006 (last updated October 04, 2023)
Unspecified "information leakage" vulnerabilities in aMuleWeb for AMule before 2.1.2 allow remote attackers to access arbitrary images, including dynamically generated images, via unknown vectors.
0
Attacker Value
Unknown

CVE-2004-1892

Disclosure Date: December 31, 2004 (last updated February 22, 2025)
Stack-based buffer overflow in DecodeBase16 function, as used in the (1) IRC module and (2) web server in eMule 0.42d, allows remote attackers to execute arbitrary code via a long string.
0