A vulnerability identified as problematic has been detected in WSO2 Identity Server as Key Manager, API Manager and Identity Server. This affects an unknown part of the component Error Message Handler. Performing manipulation results in injection.
This vulnerability is known as CVE-2024-6429. Remote exploitation of the attack is possible. No exploit is available.
You should upgrade the affected component.
A vulnerability has been found in Liferay Portal and DXP and classified as critical. This affects an unknown part of the component SLO API. This manipulation causes session expiration.
This vulnerability is tracked as CVE-2025-43819. The attack is possible to be carried out remotely. No exploit exists.
A vulnerability, which was classified as problematic, has been found in Ninja Forms Plugin up to 3.12.0 on WordPress. The affected element is the function maybe_opt_in of the component Setting Handler. Performing manipulation results in cross-site request forgery.
This vulnerability is known as CVE-2025-10499. Remote exploitation of the attack is possible. No exploit is available.
A vulnerability identified as critical has been detected in WSO2 Enterprise Integrator, Identity Server, Open Banking IAM and Identity Server as Key Manager. This vulnerability affects unknown code of the component BPEL Uploader SOAP Service. This manipulation causes unrestricted upload.
The identification of this vulnerability is CVE-2025-1862. It is possible to initiate the attack remotely. There is no exploit available.
You should upgrade the affected component.
A vulnerability marked as problematic has been reported in vWebServer 1.2.0. This affects an unknown part of the component MS DOS Device Name. This manipulation causes denial of service.
The identification of this vulnerability is CVE-2001-1249. It is possible to initiate the attack remotely. There is no exploit available.
It is advisable to implement restrictive firewalling.
A vulnerability classified as critical has been found in PGP Keyserver 7.0/7.0.1. This affects an unknown function of the file /cgi-bin of the component Authentication. This manipulation of the argument page_size causes improper authentication.
This vulnerability appears as CVE-2001-1252. The attack may be initiated remotely. In addition, an exploit is available.
It is advisable to implement restrictive firewalling.
A vulnerability was found in MySQL 3.23.31. It has been classified as critical. Affected by this vulnerability is an unknown functionality. This manipulation causes memory corruption.
This vulnerability is tracked as CVE-2001-1274. The attack is possible to be carried out remotely. Moreover, an exploit is present.
Upgrading the affected component is recommended.
A vulnerability labeled as critical has been found in Horde IMP up to 2.2.5. This issue affects some unknown processing of the component JavaScript Handler. The manipulation results in basic cross site scripting.
This vulnerability is identified as CVE-2001-1257. The attack can be executed remotely. There is not any exploit available.
The affected component should be upgraded.
A vulnerability marked as problematic has been reported in Horde IMP up to 2.2.5. Impacted is an unknown function of the file prefs.lang of the component Config File Handler. This manipulation causes information disclosure.
This vulnerability is tracked as CVE-2001-1258. The attack is restricted to local execution. No exploit exists.
It is suggested to upgrade the affected component.
A vulnerability marked as problematic has been reported in Pragma Systems Interaccess 4.0 Build 5. This affects an unknown part of the file telnet95.exe of the component Port Handler. Performing manipulation results in denial of service.
This vulnerability is known as CVE-2001-1263. Remote exploitation of the attack is possible. Furthermore, an exploit is available.
It is suggested to upgrade the affected component.
A vulnerability was found in MySQL 3.23.31 and classified as problematic. Affected is an unknown function of the component mysql.user Table Handler. The manipulation results in missing encryption of sensitive data.
This vulnerability is identified as CVE-2001-1275. The attack is only possible with local access. There is not any exploit available.
It is suggested to upgrade the affected component.
A vulnerability marked as problematic has been reported in Ipswitch IMail 6.0.2/6.0.6/7.0.4. This issue affects some unknown processing of the component POP3 Server. The manipulation leads to information disclosure (User).
This vulnerability is listed as CVE-2001-1280. The attack may be initiated remotely. There is no available exploit.
It is recommended to apply restrictive firewalling.
A vulnerability described as critical has been identified in Ipswitch IMail 6.0.2/6.0.6/7.0.4. Impacted is an unknown function of the component Web Messaging Server. The manipulation of the argument olduser results in improper privilege management.
This vulnerability is cataloged as CVE-2001-1281. The attack may be launched remotely. There is no exploit available.
Upgrading the affected component is recommended.
A vulnerability classified as problematic has been found in Ipswitch IMail 6.0.2/6.0.6/7.0.4. The affected element is an unknown function of the component Attachment Handler. This manipulation causes information disclosure (Path).
This vulnerability is registered as CVE-2001-1282. Remote exploitation of the attack is possible. No exploit is available.
It is recommended to upgrade the affected component.
A vulnerability classified as critical was found in Ipswitch IMail 6.0.2/6.0.6/7.0.4. The impacted element is an unknown function of the file readmail.cgi/printmail.cgi of the component Webmail Interface. Such manipulation leads to memory corruption.
This vulnerability is documented as CVE-2001-1283. The attack can be executed remotely. There is not any exploit available.
Upgrading the affected component is advised.
A vulnerability classified as problematic was found in WP Statistics Plugin up to 14.5.4 on WordPress. Impacted is an unknown function of the component Header Handler. Such manipulation of the argument User-Agent leads to cross site scripting.
This vulnerability is traded as CVE-2025-9816. The attack may be launched remotely. There is no exploit available.