cved-sources
43 exploits
Active since Feb 2010
Apache Tomcat 7.0.0-7.0.79 - Unauthenticated Remote Code Execution via JSP Upload
CVSS 8.1
Pivotal Spring Web Flow <2.4.4 - Info Disclosure
CVSS 5.9
Samba is_known_pipename() Arbitrary Module Load
CVSS 9.8
nginx 0.5.6-1.13.2 - Integer Overflow in Range Filter Module
CVSS 7.5
Joomla! <3.6.4 - Privilege Escalation
CVSS 9.8
Jenkins CLI RMI Java Deserialization Vulnerability
CVSS 9.8
PHPMailer Sendmail Argument Injection
CVSS 9.8
Joomla! < 3.6.3 - Unauthenticated User Account Creation via UsersModelRegistration
CVSS 8.1
Joomla! < 3.6.4 - Improper Access Control via Registration Form Session Data
CVSS 7.5
Malicious Git HTTP Server For CVE-2017-1000117
CVSS 8.8
Primefaces Remote Code Execution Exploit
CVSS 9.8
Oracle WebLogic wls-wsat Component Deserialization RCE
CVSS 7.5
Sudo <1.8.15 - Privilege Escalation
sudo 1.6.x < 1.6.9p21 and 1.7.x < 1.7.2p4 - Privilege Escalation via Pseudo-Command Matching
ProFTPD 1.3.5 - Unauthenticated Arbitrary File Read and Write via mod_copy Site Commands
Elasticsearch <1.3.8, <1.4.3 - Command Injection
CVSS 9.8
Apache mod_cgi Bash Environment Variable Code Injection (Shellshock)
CVSS 9.8
OpenSSL 1.0.1-1.0.1f - Out-of-bounds Read via Heartbeat Extension
CVSS 7.5