VYPR

CVEs

31,788 total · page 288 of 636

  • CVE-2017-16282CriJan 11, 2023
    risk 0.64cvss 9.9epss 0.01

    Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the "cc" channel of Insteon Hub running firmware version 1012. Specially crafted commands sent through the PubNub service can cause a stack-based buffer overflow overwriting arbitrary…

  • CVE-2017-16281CriJan 11, 2023
    risk 0.64cvss 9.9epss 0.01

    Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the "cc" channel of Insteon Hub running firmware version 1012. Specially crafted commands sent through the PubNub service can cause a stack-based buffer overflow overwriting arbitrary…

  • CVE-2017-16280CriJan 11, 2023
    risk 0.64cvss 9.9epss 0.01

    Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the "cc" channel of Insteon Hub running firmware version 1012. Specially crafted commands sent through the PubNub service can cause a stack-based buffer overflow overwriting arbitrary…

  • CVE-2017-16279CriJan 11, 2023
    risk 0.64cvss 9.9epss 0.01

    Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the "cc" channel of Insteon Hub running firmware version 1012. Specially crafted commands sent through the PubNub service can cause a stack-based buffer overflow overwriting arbitrary…

  • CVE-2017-16278CriJan 11, 2023
    risk 0.64cvss 9.9epss 0.01

    Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the "cc" channel of Insteon Hub running firmware version 1012. Specially crafted commands sent through the PubNub service can cause a stack-based buffer overflow overwriting arbitrary…

  • CVE-2017-16277CriJan 11, 2023
    risk 0.64cvss 9.9epss 0.01

    Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the "cc" channel of Insteon Hub running firmware version 1012. Specially crafted commands sent through the PubNub service can cause a stack-based buffer overflow overwriting arbitrary…

  • CVE-2017-16276CriJan 11, 2023
    risk 0.64cvss 9.9epss 0.01

    Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the "cc" channel of Insteon Hub running firmware version 1012. Specially crafted commands sent through the PubNub service can cause a stack-based buffer overflow overwriting arbitrary…

  • CVE-2017-16275CriJan 11, 2023
    risk 0.64cvss 9.9epss 0.01

    Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the "cc" channel of Insteon Hub running firmware version 1012. Specially crafted commands sent through the PubNub service can cause a stack-based buffer overflow overwriting arbitrary…

  • CVE-2017-16274CriJan 11, 2023
    risk 0.64cvss 9.9epss 0.01

    Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the "cc" channel of Insteon Hub running firmware version 1012. Specially crafted commands sent through the PubNub service can cause a stack-based buffer overflow overwriting arbitrary…

  • CVE-2017-16273CriJan 11, 2023
    risk 0.64cvss 9.9epss 0.01

    Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the "cc" channel of Insteon Hub running firmware version 1012. Specially crafted commands sent through the PubNub service can cause a stack-based buffer overflow overwriting arbitrary…

  • CVE-2017-16272CriJan 11, 2023
    risk 0.64cvss 9.9epss 0.01

    Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the "cc" channel of Insteon Hub running firmware version 1012. Specially crafted commands sent through the PubNub service can cause a stack-based buffer overflow overwriting arbitrary…

  • CVE-2017-16271CriJan 11, 2023
    risk 0.64cvss 9.9epss 0.01

    Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the "cc" channel of Insteon Hub running firmware version 1012. Specially crafted commands sent through the PubNub service can cause a stack-based buffer overflow overwriting arbitrary…

  • CVE-2017-16270CriJan 11, 2023
    risk 0.64cvss 9.9epss 0.01

    Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the "cc" channel of Insteon Hub running firmware version 1012. Specially crafted commands sent through the PubNub service can cause a stack-based buffer overflow overwriting arbitrary…

  • CVE-2017-16269CriJan 11, 2023
    risk 0.64cvss 9.9epss 0.01

    Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the "cc" channel of Insteon Hub running firmware version 1012. Specially crafted commands sent through the PubNub service can cause a stack-based buffer overflow overwriting arbitrary…

  • CVE-2017-16268CriJan 11, 2023
    risk 0.64cvss 9.9epss 0.01

    Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the "cc" channel of Insteon Hub running firmware version 1012. Specially crafted commands sent through the PubNub service can cause a stack-based buffer overflow overwriting arbitrary…

  • CVE-2017-16267CriJan 11, 2023
    risk 0.64cvss 9.9epss 0.01

    Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the "cc" channel of Insteon Hub running firmware version 1012. Specially crafted commands sent through the PubNub service can cause a stack-based buffer overflow overwriting arbitrary…

  • CVE-2017-16266CriJan 11, 2023
    risk 0.64cvss 9.9epss 0.01

    Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the "cc" channel of Insteon Hub running firmware version 1012. Specially crafted commands sent through the PubNub service can cause a stack-based buffer overflow overwriting arbitrary…

  • CVE-2017-16265CriJan 11, 2023
    risk 0.64cvss 9.9epss 0.01

    Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the "cc" channel of Insteon Hub running firmware version 1012. Specially crafted commands sent through the PubNub service can cause a stack-based buffer overflow overwriting arbitrary…

  • CVE-2017-16264CriJan 11, 2023
    risk 0.64cvss 9.9epss 0.01

    Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the "cc" channel of Insteon Hub running firmware version 1012. Specially crafted commands sent through the PubNub service can cause a stack-based buffer overflow overwriting arbitrary…

  • CVE-2017-16263CriJan 11, 2023
    risk 0.64cvss 9.9epss 0.01

    Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the "cc" channel of Insteon Hub running firmware version 1012. Specially crafted commands sent through the PubNub service can cause a stack-based buffer overflow overwriting arbitrary…

  • CVE-2017-16262CriJan 11, 2023
    risk 0.64cvss 9.9epss 0.01

    Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the "cc" channel of Insteon Hub running firmware version 1012. Specially crafted commands sent through the PubNub service can cause a stack-based buffer overflow overwriting arbitrary…

  • CVE-2017-16260CriJan 11, 2023
    risk 0.64cvss 9.9epss 0.01

    Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the "cc" channel of Insteon Hub running firmware version 1012. Specially crafted commands sent through the PubNub service can cause a stack-based buffer overflow overwriting arbitrary…

  • CVE-2017-16259CriJan 11, 2023
    risk 0.64cvss 9.9epss 0.01

    Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the "cc" channel of Insteon Hub running firmware version 1012. Specially crafted commands sent through the PubNub service can cause a stack-based buffer overflow overwriting arbitrary…

  • CVE-2017-16258CriJan 11, 2023
    risk 0.64cvss 9.9epss 0.01

    Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the "cc" channel of Insteon Hub running firmware version 1012. Specially crafted commands sent through the PubNub service can cause a stack-based buffer overflow overwriting arbitrary…

  • CVE-2017-16257CriJan 11, 2023
    risk 0.64cvss 9.9epss 0.01

    Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the "cc" channel of Insteon Hub running firmware version 1012. Specially crafted commands sent through the PubNub service can cause a stack-based buffer overflow overwriting arbitrary…

  • CVE-2017-16256CriJan 11, 2023
    risk 0.64cvss 9.9epss 0.01

    Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the "cc" channel of Insteon Hub running firmware version 1012. Specially crafted commands sent through the PubNub service can cause a stack-based buffer overflow overwriting arbitrary…

  • CVE-2022-4873CriJan 11, 2023
    risk 0.64cvss 9.8epss 0.07

    On Netcomm router models NF20MESH, NF20, and NL1902 a stack based buffer overflow affects the sessionKey parameter. By providing a specific number of bytes, the instruction pointer is able to be overwritten on the stack and crashes the application at a known location.

  • CVE-2022-4498CriJan 11, 2023
    risk 0.64cvss 9.8epss 0.02

    In TP-Link routers, Archer C5 and WR710N-V1, running the latest available code, when receiving HTTP Basic Authentication the httpd service can be sent a crafted packet that causes a heap overflow. This can result in either a DoS (by crashing the httpd process) or an arbitrary…

  • CVE-2022-47864CriJan 11, 2023
    risk 0.64cvss 9.8epss 0.01

    Lead Management System v1.0 is vulnerable to SQL Injection via the id parameter in removeCategories.php.

  • CVE-2022-47862CriJan 11, 2023
    risk 0.64cvss 9.8epss 0.01

    Lead Management System v1.0 is vulnerable to SQL Injection via the customer_id parameter in ajax_represent.php.

  • CVE-2022-47861CriJan 11, 2023
    risk 0.64cvss 9.8epss 0.01

    Lead Management System v1.0 is vulnerable to SQL Injection via the id parameter in removeLead.php.

  • CVE-2022-47860CriJan 11, 2023
    risk 0.64cvss 9.8epss 0.01

    Lead Management System v1.0 is vulnerable to SQL Injection via the id parameter in removeProduct.php.

  • CVE-2022-47859CriJan 11, 2023
    risk 0.64cvss 9.8epss 0.01

    Lead Management System v1.0 is vulnerable to SQL Injection via the user_id parameter in changePassword.php.

  • CVE-2022-47866CriJan 11, 2023
    risk 0.64cvss 9.8epss 0.01

    Lead management system v1.0 is vulnerable to SQL Injection via the id parameter in removeBrand.php.

  • CVE-2022-47865CriJan 11, 2023
    risk 0.64cvss 9.8epss 0.01

    Lead Management System v1.0 is vulnerable to SQL Injection via the id parameter in removeOrder.php.

  • CVE-2021-3966CriJan 11, 2023
    risk 0.62cvss 9.6epss 0.00

    usb device bluetooth class includes a buffer overflow related to implementation of net_buf_add_mem.

  • CVE-2022-48253CriJan 11, 2023
    risk 0.64cvss 9.8epss 0.03

    nhttpd in Nostromo before 2.1 is vulnerable to a path traversal that may allow an attacker to execute arbitrary commands on the remote server. The vulnerability occurs when the homedirs option is used.

  • CVE-2022-48252CriJan 11, 2023
    risk 0.64cvss 9.8epss 0.03

    The jokob-sk/Pi.Alert fork (before 22.12.20) of Pi.Alert allows Remote Code Execution via nmap_scan.php (scan parameter) OS Command Injection.

  • CVE-2022-4338CriJan 10, 2023
    risk 0.00cvss 9.8epss 0.01

    An integer underflow in Organization Specific TLV was found in various versions of OpenvSwitch.

  • CVE-2022-4337CriJan 10, 2023
    risk 0.00cvss 9.8epss 0.01

    An out-of-bounds read in Organization Specific TLV was found in various versions of OpenvSwitch.

  • CVE-2022-38490CriJan 10, 2023
    risk 0.62cvss 9.6epss 0.01

    An issue was discovered in EasyVista 2020.2.125.3 and 2022.1.109.0.03. Some parameters allow SQL injection. Version 2022.1.110.1.02 corrects this issue.

  • CVE-2022-4422CriJan 10, 2023
    risk 0.64cvss 9.8epss 0.01

    Call Center System developed by Bulutses Information Technologies before version 3.0 has an unauthenticated Sql Injection vulnerability. This has been fixed in the version 3.0

  • CVE-2022-3792CriJan 10, 2023
    risk 0.65cvss 9.8epss 0.14

    Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in GullsEye GullsEye terminal operating system allows SQL Injection. This issue affects GullsEye terminal operating system: from unspecified before 5.0.13.

  • CVE-2022-46823CriJan 10, 2023
    risk 0.60cvss 9.3epss 0.00

    A vulnerability has been identified in Mendix SAML (Mendix 8 compatible) (All versions >= V2.3.0 < V2.3.4), Mendix SAML (Mendix 9 compatible, New Track) (All versions >= V3.3.0 < V3.3.9), Mendix SAML (Mendix 9 compatible, Upgrade Track) (All versions >= V3.3.0 < V3.3.8). The…

  • CVE-2022-45092CriJan 10, 2023
    risk 0.67cvss 9.9epss 0.31

    A vulnerability has been identified in SINEC INS (All versions < V1.0 SP2 Update 1). An authenticated remote attacker with access to the Web Based Management (443/tcp) of the affected product, could potentially read and write arbitrary files from and to the device's file system.…

  • CVE-2023-22903CriJan 10, 2023
    risk 0.00cvss 9.8epss 0.01

    api/views/user.py in LibrePhotos before e19e539 has incorrect access control.

  • CVE-2017-20166CriJan 10, 2023
    risk 0.57cvss 9.8epss 0.01

    Ecto 2.2.0 lacks a certain protection mechanism associated with the interaction between is_nil and raise.

  • CVE-2023-0022CriJan 10, 2023
    risk 0.64cvss 9.9epss 0.01

    SAP BusinessObjects Business Intelligence Analysis edition for OLAP allows an authenticated attacker to inject malicious code that can be executed by the application over the network. On successful exploitation, an attacker can perform operations that may completely compromise…

  • CVE-2023-0018CriJan 10, 2023
    risk 0.65cvss 10.0epss 0.01

    Due to improper input sanitization of user-controlled input in SAP BusinessObjects Business Intelligence Platform CMC application - versions 420, and 430, an attacker with basic user-level privileges can modify/upload crystal reports containing a malicious payload. Once these…

  • CVE-2023-0017CriJan 10, 2023
    risk 0.62cvss 9.4epss 0.16

    An unauthenticated attacker in SAP NetWeaver AS for Java - version 7.50, due to improper access control, can attach to an open interface and make use of an open naming and directory API to access services which can be used to perform unauthorized operations affecting users and…