Show filters
21 Total Results
Displaying 11-20 of 21
Sort by:
Attacker Value
Unknown
CVE-2019-13116
Disclosure Date: October 16, 2019 (last updated November 27, 2024)
The MuleSoft Mule Community Edition runtime engine before 3.8 allows remote attackers to execute arbitrary code because of Java Deserialization, related to Apache Commons Collections
0
Attacker Value
Unknown
CVE-2019-15630
Disclosure Date: August 30, 2019 (last updated November 27, 2024)
Directory Traversal in APIkit, HTTP connector, and OAuth2 Provider components in MuleSoft Mule Runtime 3.2.0 and higher released before August 1 2019, MuleSoft Mule Runtime 4.1.0 and higher released before August 1 2019, and all versions of MuleSoft API Gateway released before August 1 2019 allow remote attackers to read files accessible to the Mule process.
0
Attacker Value
Unknown
CVE-2014-9000
Disclosure Date: November 20, 2014 (last updated October 05, 2023)
Mule Enterprise Management Console (MMC) does not properly restrict access to handler/securityService.rpc, which allows remote authenticated users to gain administrator privileges and execute arbitrary code via a crafted request that adds a new user. NOTE: this issue was originally reported for ESB Runtime 3.5.1, but it originates in MMC.
0
Attacker Value
Unknown
CVE-2009-1485
Disclosure Date: April 29, 2009 (last updated October 04, 2023)
The logging feature in eMule Plus before 1.2e allows remote attackers to cause a denial of service (infinite loop) via unspecified attack vectors.
0
Attacker Value
Unknown
CVE-2009-1440
Disclosure Date: April 27, 2009 (last updated October 04, 2023)
Incomplete blacklist vulnerability in DownloadListCtrl.cpp in amule 2.2.4 allows remote attackers to conduct argument injection attacks into a command for mplayer via a crafted filename.
0
Attacker Value
Unknown
CVE-2008-2503
Disclosure Date: May 29, 2008 (last updated October 04, 2023)
Buffer overflow in Uploadlist in eMule X-Ray before 1.4 has unknown impact and remote attack vectors.
0
Attacker Value
Unknown
CVE-2008-2486
Disclosure Date: May 28, 2008 (last updated October 04, 2023)
Unspecified vulnerability in eMule Plus before 1.2d has unknown impact and attack vectors related to "staticservers.dat processing."
0
Attacker Value
Unknown
CVE-2006-2692
Disclosure Date: May 31, 2006 (last updated October 04, 2023)
Multiple unspecified vulnerabilities in aMuleWeb for AMule before 2.1.2 allow remote attackers to read arbitrary image, HTML, or PHP files via unknown vectors, probably related to directory traversal.
0
Attacker Value
Unknown
CVE-2006-2691
Disclosure Date: May 31, 2006 (last updated October 04, 2023)
Unspecified "information leakage" vulnerabilities in aMuleWeb for AMule before 2.1.2 allow remote attackers to access arbitrary images, including dynamically generated images, via unknown vectors.
0
Attacker Value
Unknown
CVE-2004-1892
Disclosure Date: December 31, 2004 (last updated February 22, 2025)
Stack-based buffer overflow in DecodeBase16 function, as used in the (1) IRC module and (2) web server in eMule 0.42d, allows remote attackers to execute arbitrary code via a long string.
0