İçeriğe atla
Noroxi

CWE-749 · 167 kayıt

Exposed Dangerous Method or Function

Bu sınıftaki CVE’ler

167 kayıt

  • CVE-2010-1428
    79Bu hafta

    The Web Console (aka web-console) in JBossAs in Red Hat JBoss Enterprise Application Platform (aka JBoss EAP or JBEAP) 4.2 before 4.2.0.CP09

    YüksekCVSS 7,5KEVSilahlaştırılmışEPSS %62

    redhat · jboss enterprise application platform28 Nis 2010

  • CVE-2006-1547
    76Bu hafta

    ActionForm in Apache Software Foundation (ASF) Struts before 1.2.9 with BeanUtils 1.7 allows remote attackers to cause a denial of service v

    YüksekCVSS 7,5KEVSilahlaştırılmışEPSS %55

    apache · struts30 Mar 2006

  • CVE-2010-0738
    75Bu hafta

    The JMX-Console web application in JBossAs in Red Hat JBoss Enterprise Application Platform (aka JBoss EAP or JBEAP) 4.2 before 4.2.0.CP09 a

    OrtaCVSS 5,3KEVSilahlaştırılmışEPSS %79

    redhat · jboss enterprise application platform28 Nis 2010

  • CVE-2018-19322
    62Bu hafta

    The GPCIDrv and GDrv low-level drivers in GIGABYTE APP Center v1.05.21 and earlier, AORUS GRAPHICS ENGINE before 1.57, XTREME GAMING ENGINE

    YüksekCVSS 7,8KEVSilahlaştırılmışEPSS %2

    gigabyte · aorus graphics engine21 Ara 2018

  • CVE-2021-34996
    60Bu hafta

    This vulnerability allows remote attackers to execute arbitrary code on affected installations of Commvault CommCell 11.22.22.

    YüksekCVSS 8,8İstismar yokEPSS %82

    commvault · commcell13 Oca 2022

  • CVE-2018-10931
    59Planlayın

    It was found that cobbler 2.6.x exposed all functions from its CobblerXMLRPCInterface class over XMLRPC.

    KritikCVSS 9,8Kavram kanıtıEPSS %68

    cobbler project · cobbler9 Ağu 2018

  • CVE-2023-38124
    53Planlayın

    Inductive Automation Ignition OPC UA Quick Client Task Scheduling Exposed Dangerous Function Remote Code Execution Vulnerability

    YüksekCVSS 8,8İstismar yokEPSS %60

    inductiveautomation · ignition2 May 2024

  • CVE-2023-51573
    53Planlayın

    Voltronic Power ViewPower Pro updateManagerPassword Exposed Dangerous Function Authentication Bypass Vulnerability

    KritikCVSS 9,8İstismar yokEPSS %46

    voltronicpower · viewpower1 Nis 2024

  • CVE-2023-27363
    45Planlayın

    Foxit PDF Reader exportXFAData Exposed Dangerous Method Remote Code Execution Vulnerability

    YüksekCVSS 7,8Kavram kanıtıEPSS %47

    foxit · pdf editor2 May 2024

  • CVE-2020-15623
    42Planlayın

    This vulnerability allows remote attackers to write arbitrary files on affected installations of CentOS Web Panel cwp-e17.0.9.8.923.

    KritikCVSS 9,8İstismar yokEPSS %8

    control-webpanel · webpanel28 Tem 2020

  • CVE-2021-42128
    40Planlayın

    An exposed dangerous function vulnerability exists in Ivanti Avalanche before 6.3.3 using inforail Service allows Privilege Escalation via E

    KritikCVSS 9,8İstismar yokEPSS %4

    ivanti · avalanche7 Ara 2021

  • CVE-2021-26614
    40Planlayın

    IpTime C200 IP camera remote code execution vulnerability

    KritikCVSS 9,8İstismar yokEPSS %3

    iptime · c200 firmware22 Kas 2021

  • CVE-2023-44414
    40Planlayın

    D-Link D-View coreservice_action_script Exposed Dangerous Function Remote Code Execution Vulnerability

    KritikCVSS 9,8İstismar yokEPSS %2

    dlink · d-view 82 May 2024

  • CVE-2019-18342
    40Planlayın

    A vulnerability has been identified in Control Center Server (CCS) (All versions < V1.5.0).

    KritikCVSS 9,9İstismar yokEPSS %2

    siemens · control center server12 Ara 2019

  • CVE-2023-40501
    40Planlayın

    LG Simple Editor copyContent Exposed Dangerous Function Remote Code Execution Vulnerability

    KritikCVSS 9,8İstismar yokEPSS %2

    lg · simple editor2 May 2024

  • CVE-2023-40500
    40Planlayın

    LG Simple Editor copyContent Exposed Dangerous Function Remote Code Execution Vulnerability

    KritikCVSS 9,8İstismar yokEPSS %2

    lg · simple editor2 May 2024

  • CVE-2020-8212
    39İzleyin

    Improper access control in Citrix XenMobile Server 10.12 before RP3, Citrix XenMobile Server 10.11 before RP6, Citrix XenMobile Server 10.10

    KritikCVSS 9,8İstismar yokEPSS %2

    citrix · xenmobile server17 Ağu 2020

  • CVE-2023-51574
    39İzleyin

    Voltronic Power ViewPower updateManagerPassword Exposed Dangerous Method Authentication Bypass Vulnerability

    KritikCVSS 9,8İstismar yokEPSS %2

    voltronicpower · viewpower2 May 2024

  • CVE-2023-51583
    39İzleyin

    Voltronic Power ViewPower UpsScheduler Exposed Dangerous Method Remote Code Execution Vulnerability

    KritikCVSS 9,8İstismar yokEPSS %1

    voltronicpower · viewpower2 May 2024

  • CVE-2023-51582
    39İzleyin

    Voltronic Power ViewPower LinuxMonitorConsole Exposed Dangerous Method Remote Code Execution Vulnerability

    KritikCVSS 9,8İstismar yokEPSS %1

    voltronicpower · viewpower2 May 2024

  • CVE-2023-51575
    39İzleyin

    Voltronic Power ViewPower MonitorConsole Exposed Dangerous Method Remote Code Execution Vulnerability

    KritikCVSS 9,8İstismar yokEPSS %1

    voltronicpower · viewpower2 May 2024

  • CVE-2023-51581
    39İzleyin

    Voltronic Power ViewPower MacMonitorConsole Exposed Dangerous Method Remote Code Execution Vulnerability

    KritikCVSS 9,8İstismar yokEPSS %1

    voltronicpower · viewpower2 May 2024

  • CVE-2023-50422
    39İzleyin

    Escalation of Privileges in SAP BTP Security Services Integration Library ([Java] cloud-security-services-integration-library)

    KritikCVSS 9,8İstismar yokEPSS %1

    sap · cloud-security-services-integration-library11 Ara 2023

  • CVE-2023-40150
    39İzleyin

    Softneta MedDream PACS Exposed Dangerous Method or Function

    KritikCVSS 9,8İstismar yokEPSS %1

    softneta · meddream pacs11 Eyl 2023

  • CVE-2023-39226
    39İzleyin

    Delta Electronics InfraSuite Device Master Exposed Dangerous Method Or Function

    KritikCVSS 9,8İstismar yokEPSS %1

    deltaww · infrasuite device master30 Kas 2023

Tüm zafiyet sınıfları