A vulnerability was found in Rainbow with the Zen. It has been rated as critical. This issue affects some unknown processing. The manipulation leads to basic cross site scripting.
The identification of this vulnerability is CVE-2007-0885. The attack may be initiated remotely. Furthermore, there is an exploit available.
A vulnerability, which was classified as critical, was found in Microsoft IIS 4.0. This affects an unknown part of the file showcode.asp. The manipulation leads to improper privilege management.
This vulnerability is uniquely identified as CVE-1999-0736. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
It is recommended to apply a patch to fix this issue.
A vulnerability classified as critical has been found in XMLSoft libxml2 up to 2.6.5. This affects an unknown part of the component nanohttp/nanoftp. The manipulation leads to memory corruption.
This vulnerability is uniquely identified as CVE-2004-0110. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
A vulnerability classified as critical was found in DeDeCMS 5.6. Affected by this vulnerability is an unknown functionality of the file list.php. The manipulation of the argument id leads to sql injection.
This vulnerability is known as CVE-2011-5200. The attack can be launched remotely. Furthermore, there is an exploit available.
A vulnerability classified as critical has been found in Nokia Affix up to 3.2.0. Affected is an unknown function of the component FTP Client. The manipulation leads to memory corruption.
This vulnerability is traded as CVE-2005-2250. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in Apache Tomcat up to 5.5.1 and classified as problematic. Affected by this issue is some unknown functionality. The manipulation leads to basic cross site scripting.
This vulnerability is handled as CVE-2007-2449. The attack may be launched remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
A vulnerability, which was classified as very critical, has been found in Atrius Trivalie Simple Network Time Sync 1.0. This issue affects some unknown processing of the component String Handler. The manipulation leads to memory corruption.
The identification of this vulnerability is CVE-2000-0493. The attack may be initiated remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
A vulnerability classified as problematic was found in libcroco 0.6.12. This vulnerability affects the function cr_parser_parse_selector_core of the file cr-parser.c of the component CSS File Handler. The manipulation leads to improper resource management.
This vulnerability was named CVE-2017-8871. The attack can be initiated remotely. Furthermore, there is an exploit available.
A vulnerability classified as critical was found in Microsoft IIS 3.0/4.0. This vulnerability affects unknown code of the component ASP File Handler. The manipulation with the input ::$DATA as part of URL leads to information disclosure.
This vulnerability was named CVE-1999-0278. The attack can be initiated remotely. Furthermore, there is an exploit available. This vulnerability has a historic impact due to its background and reception.
It is recommended to apply a patch to fix this issue.
Security Affairs Malware newsletter includes a collection of the best articles and research on malware in the international landscape. SmokeLoader Attack Targets Companies in Taiwan LogoFAIL Exploited to Deploy Bootkitty, the first UEFI bootkit for Linux Horns&Hooves campaign delivers NetSupport RAT and BurnsRAT DroidBot: Insights from a new Turkish MaaS fraud operation RedLine, A […]
A vulnerability was found in CMS Made Simple up to 2.2.15. It has been classified as problematic. This affects an unknown part of the file /admin/addbookmark.php of the component Title Field Handler. The manipulation leads to cross site scripting.
This vulnerability is uniquely identified as CVE-2021-28935. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
A vulnerability was found in Trend Micro Deep Discovery Inspector 3.7/3.8 SP1/3.8 SP2. It has been classified as critical. This affects an unknown part of the file hotfix_upload.cgi. The manipulation leads to improper input validation.
This vulnerability is uniquely identified as CVE-2016-5840. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.