A vulnerability was found in Apache Commons OGNL. It has been classified as critical. This affects the function dangerous. Performing manipulation results in improper neutralization of expression/command delimiters. This vulnerability only affects products that are no longer supported by the maintainer.
This vulnerability was named CVE-2025-53192. The attack needs to be approached within the local network. There is no available exploit.
A vulnerability categorized as problematic has been discovered in Libreswan on Red Hat. This affects an unknown part of the component IKEv1 Aggressive Mode Packet Handler. Such manipulation leads to resource consumption.
This vulnerability is documented as CVE-2023-2295. The attack can be executed remotely. There is not any exploit available.
It is best practice to apply a patch to resolve this issue.
A vulnerability, which was classified as problematic, has been found in Microsoft Knack 0.12.0. Impacted is an unknown function of the component knack.introspection. The manipulation leads to inefficient regular expression complexity.
This vulnerability is traded as CVE-2025-54363. An attack has to be approached locally. There is no exploit available.
A vulnerability, which was classified as problematic, was found in Microsoft Knack 0.12.0. The affected element is an unknown function of the component knack.introspection. The manipulation results in inefficient regular expression complexity.
This vulnerability is known as CVE-2025-54364. Attacking locally is a requirement. No exploit is available.
A vulnerability was found in Microsoft Site Server up to 3.0 SP3. It has been rated as critical. The impacted element is an unknown function. This manipulation of the argument Password with the input LdapPassword_1 causes hard-coded credentials.
This vulnerability is handled as CVE-2002-1769. The attack can be initiated remotely. There is not any exploit available.
To fix this issue, it is recommended to deploy a patch.
A vulnerability identified as critical has been detected in Matt Wright FormMail up to 1.9. This impacts an unknown function. Performing manipulation of the argument CC/BCC/TO results in improper privilege management.
This vulnerability was named CVE-2002-1771. The attack may be initiated remotely. There is no available exploit.
A vulnerability, which was classified as critical, has been found in Symantec Norton Antivirus up to 2001. This issue affects some unknown processing of the component Content-Type Header for Multi-Part Request Handler. Performing manipulation results in improper privilege management.
This vulnerability is cataloged as CVE-2002-1777. It is possible to initiate the attack remotely. There is no exploit available.
The actual existence of this vulnerability is currently in question.
It is advisable to upgrade the affected component.
A vulnerability identified as problematic has been detected in Zeus Web Server up to 4.0. Affected by this issue is some unknown functionality of the file index.fcgi of the component Administration Server. The manipulation of the argument section leads to basic cross site scripting.
This vulnerability is uniquely identified as CVE-2002-1785. The attack is possible to be carried out remotely. Moreover, an exploit is present.
A vulnerability was found in Microsoft TSAC Activex Control. It has been classified as problematic. Affected by this vulnerability is an unknown functionality of the file connect.asp. Performing manipulation results in basic cross site scripting.
This vulnerability is reported as CVE-2002-1795. The attack is possible to be carried out remotely. No exploit exists.
A vulnerability categorized as critical has been discovered in MidiCart PHP, PHP Plus and PHP Maxi. This vulnerability affects unknown code. The manipulation results in improper access controls.
This vulnerability is known as CVE-2002-1798. It is possible to launch the attack remotely. Furthermore, an exploit is available.
A vulnerability identified as problematic has been detected in phpRank 1.8. This issue affects some unknown processing of the file add.php. This manipulation of the argument banurl causes basic cross site scripting.
This vulnerability is handled as CVE-2002-1799. The attack can be initiated remotely. Additionally, an exploit exists.
A vulnerability has been found in phpWebSite 0.8.3 and classified as problematic. Affected by this issue is some unknown functionality of the component IMG Tag Handler. Performing manipulation results in basic cross site scripting.
This vulnerability is cataloged as CVE-2002-1807. It is possible to initiate the attack remotely. There is no exploit available.
A vulnerability, which was classified as problematic, was found in Drupal 4.0.0. Affected by this vulnerability is an unknown functionality of the component IMG Tag Handler. Such manipulation leads to basic cross site scripting.
This vulnerability is listed as CVE-2002-1806. The attack may be performed from remote. In addition, an exploit is available.
Zscaler breach tied to Salesloft Drift attack exposed Salesforce data, leaking customer info and support case details in a supply-chain compromise. Zscaler discloses a data breach that is linked to the recent Salesloft Drift attack. The cybersecurity vendor confirmed it was affected by a campaign targeting Salesloft Drift, a marketing SaaS integrated with Salesforce. Threat […]
A vulnerability was found in GNOME GLib. It has been rated as critical. This impacts the function get_tmp_file in the library glib/gfileutils.c. The manipulation leads to buffer under-read.
This vulnerability is listed as CVE-2025-7039. The attack must be carried out from within the local network. There is no available exploit.
A vulnerability was found in xmltodict 0.14.2. It has been declared as critical. This affects an unknown function. Executing manipulation can lead to xml injection.
This vulnerability is tracked as CVE-2025-9375. The attack can be launched remotely. No exploit exists.
A vulnerability was found in KnowageLabs Knowage-Server up to 8.1.36. It has been classified as critical. The impacted element is an unknown function. Performing manipulation results in server-side request forgery.
This vulnerability is identified as CVE-2025-55007. The attack can be initiated remotely. There is not any exploit available.
Upgrading the affected component is recommended.
A vulnerability was found in lemon8866 StreamVault and classified as critical. The affected element is an unknown function. Such manipulation of the argument system leads to os command injection.
This vulnerability is referenced as CVE-2025-57799. It is possible to launch the attack remotely. No exploit is available.
It is suggested to upgrade the affected component.