Show filters
762 Total Results
Displaying 121-130 of 762
Sort by:
Attacker Value
Unknown

CVE-2013-4743

Disclosure Date: December 27, 2019 (last updated November 27, 2024)
Static HTTP Server 1.0 has a Local Overflow
Attacker Value
Unknown

CVE-2019-15600

Disclosure Date: December 18, 2019 (last updated November 27, 2024)
A Path traversal exists in http_server which allows an attacker to read arbitrary system files.
Attacker Value
Unknown

CVE-2014-3701

Disclosure Date: December 15, 2019 (last updated November 27, 2024)
eDeploy has tmp file race condition flaws
Attacker Value
Unknown

CVE-2014-3699

Disclosure Date: December 15, 2019 (last updated November 27, 2024)
eDeploy has RCE via cPickle deserialization of untrusted data
Attacker Value
Unknown

CVE-2012-2148

Disclosure Date: December 06, 2019 (last updated November 27, 2024)
An issue exists in the property replacements feature in any descriptor in JBoxx AS 7.1.1 ignores java security policies
Attacker Value
Unknown

CVE-2014-3700

Disclosure Date: November 21, 2019 (last updated November 27, 2024)
eDeploy through at least 2014-10-14 has remote code execution due to eval() of untrusted data
Attacker Value
Unknown

CVE-2014-3655

Disclosure Date: November 13, 2019 (last updated November 27, 2024)
JBoss KeyCloak is vulnerable to soft token deletion via CSRF
Attacker Value
Unknown

CVE-2019-10219

Disclosure Date: November 08, 2019 (last updated November 08, 2023)
A vulnerability was found in Hibernate-Validator. The SafeHtml validator annotation fails to properly sanitize payloads consisting of potentially malicious code in HTML comments and instructions. This vulnerability can result in an XSS attack.
Attacker Value
Unknown

CVE-2011-3923

Disclosure Date: November 01, 2019 (last updated November 08, 2023)
Apache Struts before 2.3.1.2 allows remote attackers to bypass security protections in the ParameterInterceptor class and execute arbitrary commands.
Attacker Value
Unknown

CVE-2019-17596

Disclosure Date: October 24, 2019 (last updated November 08, 2023)
Go before 1.12.11 and 1.3.x before 1.13.2 can panic upon an attempt to process network traffic containing an invalid DSA public key. There are several attack scenarios, such as traffic from a client to a server that verifies client certificates.