Show filters
213 Total Results
Displaying 181-190 of 213
Sort by:
Attacker Value
Unknown

CVE-2015-6005

Disclosure Date: December 27, 2015 (last updated August 28, 2024)
Multiple cross-site scripting (XSS) vulnerabilities in IPSwitch WhatsUp Gold before 16.4 allow remote attackers to inject arbitrary web script or HTML via (1) an SNMP OID object, (2) an SNMP trap message, (3) the View Names field, (4) the Group Names field, (5) the Flow Monitor Credentials field, (6) the Flow Monitor Threshold Name field, (7) the Task Library Name field, (8) the Task Library Description field, (9) the Policy Library Name field, (10) the Policy Library Description field, (11) the Template Library Name field, (12) the Template Library Description field, (13) the System Script Library Name field, (14) the System Script Library Description field, or (15) the CLI Settings Library Description field.
0
Attacker Value
Unknown

CVE-2015-6004

Disclosure Date: December 27, 2015 (last updated August 28, 2024)
Multiple SQL injection vulnerabilities in IPSwitch WhatsUp Gold before 16.4 allow remote attackers to execute arbitrary SQL commands via (1) the UniqueID (aka sUniqueID) parameter to WrFreeFormText.asp in the Reports component or (2) the Find Device parameter.
0
Attacker Value
Unknown

CVE-2014-8555

Disclosure Date: November 12, 2014 (last updated October 05, 2023)
Directory traversal vulnerability in report/reportViewAction.jsp in Progress Software OpenEdge 11.2 allows remote attackers to read arbitrary files via a .. (dot dot) in the selection parameter.
0
Attacker Value
Unknown

CVE-2012-4344

Disclosure Date: August 15, 2012 (last updated August 28, 2024)
Cross-site scripting (XSS) vulnerability in Ipswitch WhatsUp Gold 15.02 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors involving the SNMP system name of the attacking host.
0
Attacker Value
Unknown

CVE-2012-2601

Disclosure Date: August 15, 2012 (last updated August 28, 2024)
SQL injection vulnerability in WrVMwareHostList.asp in Ipswitch WhatsUp Gold 15.02 allows remote attackers to execute arbitrary SQL commands via the sGroupList parameter.
0
Attacker Value
Unknown

CVE-2008-0590

Disclosure Date: February 05, 2008 (last updated October 12, 2023)
Buffer overflow in Ipswitch WS_FTP Server with SSH 6.1.0.0 allows remote authenticated users to cause a denial of service (crash) and possibly execute arbitrary code via a long opendir command.
0
Attacker Value
Unknown

CVE-2007-2417

Disclosure Date: July 15, 2007 (last updated October 04, 2023)
Heap-based buffer overflow in _mprosrv.exe in Progress Software Progress 9.1E and OpenEdge 10.1x, as used by the RSA Authentication Manager 6.0 and 6.1, SecurID Appliance 2.0, ACE/Server 5.2, and possibly other products, allows remote attackers to execute arbitrary code via crafted packets. NOTE: this issue might overlap CVE-2007-3491.
0
Attacker Value
Unknown

CVE-2007-3491

Disclosure Date: June 29, 2007 (last updated October 04, 2023)
Buffer overflow in _mprosrv in Progress Software OpenEdge before 9.1E0422, and 10.x before 10.1B01, allows remote attackers to have an unknown impact via a malformed TCP/IP message.
0
Attacker Value
Unknown

CVE-2007-2602

Disclosure Date: May 11, 2007 (last updated August 28, 2024)
Buffer overflow in MIBEXTRA.EXE in Ipswitch WhatsUp Gold 11 allows attackers to cause a denial of service (application crash) or execute arbitrary code via a long MIB filename argument. NOTE: If there is not a common scenario under which MIBEXTRA.EXE is called with attacker-controlled command line arguments, then perhaps this issue should not be included in CVE.
0
Attacker Value
Unknown

CVE-2007-2506

Disclosure Date: May 04, 2007 (last updated October 04, 2023)
WebSpeed 3.x in OpenEdge 10.x in Progress Software Progress 9.1e, and certain other 9.x versions, allows remote attackers to cause a denial of service (infinite loop and daemon hang) via a messenger URL that invokes _edit.r with no additional parameters, as demonstrated by requests for cgiip.exe or wsisa.dll with WService=wsbroker1/_edit.r in the PATH_INFO.
0