Skip to content
Noroxi

Sourceforge records

13 published records for vendor sourceforge.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
5
With a fix record
15.4%
Median publish → KEV
No record has entered KEV

All records

13 records
  • snmp_api.c in snmpd in Net-SNMP 5.2.x before 5.2.2, 5.1.x before 5.1.3, and 5.0.x before 5.0.10.2, when running in master agentx mode, allow

    CriticalCVSS 10.0No exploitEPSS 10%

    net-snmp · net-snmpDec 31, 2005

  • CVE-2008-2503
    37Monitor

    Buffer overflow in Uploadlist in eMule X-Ray before 1.4 has unknown impact and remote attack vectors.

    CriticalCVSS 9.3No exploitEPSS 1%

    sourceforge · emule x-rayMay 29, 2008

  • CVE-2008-2298
    31Monitor

    Admin.php in Web Slider 0.6 allows remote attackers to bypass authentication and gain privileges by setting the admin cookie to 1.

    HighCVSS 7.5Proof of conceptEPSS 3%

    sourceforge · web sliderMay 18, 2008

  • CVE-2001-0234
    31Monitor

    NewsDaemon before 0.21b allows remote attackers to execute arbitrary SQL queries and gain privileges via a malformed user_username parameter

    HighCVSS 7.5No exploitEPSS 2%

    sourceforge · newsdaemonMay 3, 2001

  • CVE-2007-1466
    28Monitor

    Integer overflow in the WP6GeneralTextPacket::_readContents function in WordPerfect Document importer/exporter (libwpd) before 0.8.9 allows

    MediumCVSS 6.8No exploitEPSS 3%

    sourceforge · wordperfect document importer-exporterMar 16, 2007

  • CVE-2007-1135
    27Monitor

    Multiple SQL injection vulnerabilities in WebMplayer before 0.6.1-Alpha allow remote attackers to execute arbitrary SQL commands via the (1)

    MediumCVSS 6.8No exploitEPSS 1%

    sourceforge · webmplayerMar 2, 2007

  • CVE-2007-1572
    27Monitor

    SQL injection vulnerability in search.asp in JGBBS 3.0 Beta 1 and earlier allows remote attackers to execute arbitrary SQL commands via the

    MediumCVSS 6.8Proof of conceptEPSS 1%

    sourceforge · jgbbsMar 21, 2007

  • CVE-2007-6640
    25Monitor

    Creammonkey 0.9 through 1.1 and GreaseKit 1.2 through 1.3 does not properly prevent access to dangerous functions, which allows remote attac

    MediumCVSS 6.4No exploitEPSS 1%

    sourceforge · creammonkeyJan 3, 2008

  • CVE-2008-0501
    24Monitor

    Directory traversal vulnerability in phpMyClub 0.0.1 allows remote attackers to include and execute arbitrary local files via a ..

    MediumCVSS 5.8Proof of conceptEPSS 2%

    sourceforge · phpmyclubJan 30, 2008

  • CVE-2007-1137
    20Monitor

    putmail.py in Putmail before 1.4 does not detect when a user attempts to use TLS with a server that does not support it, which causes putmai

    MediumCVSS 5.0No exploitEPSS 1%

    sourceforge · putmailMar 2, 2007

  • CVE-2002-2362
    17Monitor

    Cross-site scripting (XSS) vulnerability in form_header.php in MyMarket 1.71 allows remote attackers to inject arbitrary web script or HTML

    MediumCVSS 4.3Proof of conceptEPSS 2%

    sourceforge · mymarketDec 31, 2002

  • CVE-2008-6161
    17Monitor

    Cross-site scripting (XSS) vulnerability in WOW Raid Manager (WRM) before 3.5.1 allows remote attackers to inject arbitrary web script or HT

    MediumCVSS 4.3No exploitEPSS 1%

    sourceforge · wow raid managerFeb 18, 2009

  • CVE-2002-2364
    17Monitor

    Cross-site scripting (XSS) vulnerability in PHP Ticket 0.5 and earlier allows remote attackers to inject arbitrary web script or HTML via a

    MediumCVSS 4.3No exploitEPSS 1%

    sourceforge · php ticketDec 31, 2002