[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248268

 
 

909

 
 

195051

 
 

282

 
 
Paid content will be excluded from the download.

Filter
Matches : 26087 Download | Alert*

Mozilla Thunderbird 52.9: Decrypted S/MIME parts, when included in HTML crafted for an attack, can leak plaintext when included in a a HTML reply/forward.

Mozilla Thunderbird 52.9: dDecrypted S/MIME parts hidden with CSS or plaintext tag can leak plaintext when included in a HTML reply/forward.

Mozilla Thunderbird 52.9: dDecrypted S/MIME parts hidden with CSS or plaintext tag can leak plaintext when included in a HTML reply/forward.

The host is installed with Google Chrome before 68.0.3440.75 and is prone to a cross origin information leak vulnerability. A flaw is present in the application, which fails to handle unspecified vectors. Successful exploitation allows attackers to have unspecified impact.

The host is installed with Apache Tomcat 7.x before 7.0.82, 8.0.x before 8.0.47, 8.5.x before 8.5.23 or 9.0.0.M1 before 9.0.1 and is prone to an information disclosure vulnerability. A flaw is present in the readonly initialization parameter of the default servlet, when running with HTTP PUTs enabled. Successful exploitation allows attackers to upload a JSP file to the server via a specially craft ...

The host is installed with Apache Tomcat 7.x before 7.0.85, 8.0.x before 8.0.50, 8.5.x before 8.5.28 or 9.x before 9.0.5 and is prone to a security bypass vulnerability. A flaw is present in the security constraint definition with a URL pattern of the empty string. Successful exploitation allows attackers to gain access to web application resources that should have been protected.

The host is installed with Apache Tomcat 7.x before 7.0.85, 8.0.x before 8.0.50, 8.5.x before 8.5.28 or 9.x before 9.0.5 and is prone to a security bypass vulnerability. A flaw is present in the security constraint defined by annotations of servlets. Successful exploitation exposes resources to users who are not authorized to access them.

The host is installed with Git before 2.13.7, 2.14.x before 2.14.4, 2.15.x before 2.15.2, 2.16.x before 2.16.4, or 2.17.x before 2.17.1 and is prone to an input validation error vulnerability. A flaw is present in the application, which fails to handle the crafted .gitmodules file. Successful exploitation allows attackers to execute arbitrary code on the target system.

In PHP through 5.6.33, 7.0.x before 7.0.28, 7.1.x through 7.1.14, and 7.2.x through 7.2.2, there is a stack-based buffer under-read while parsing an HTTP response in the php_stream_url_wrap_http_ex function in ext/standard/http_fopen_wrapper.c. This subsequently results in copying a large string.

The host is installed with Apache Tomcat 9.0.0.M1 through 9.0.7, 7.0.28 through 7.0.88, 8.0.x through 8.0.51 or 8.5.x through 8.5.30 and is prone to a denial of service vulnerability. A flaw is present in application, which fails to properly handle overflow in the UTF-8 decoder. Successful exploitation allow attackers to cause denial of service.


Pages:      Start    1124    1125    1126    1127    1128    1129    1130    1131    1132    1133    1134    1135    1136    1137    ..   2608

© SecPod Technologies