CVE-2023-2356 | CRITICAL | 10.0 | 0.04153 | 41.45 | No | No | 2023-04-28 | 2025-01-30 | euvd | Relative Path Traversal in GitHub repository mlflow/mlflow prior to 2.3.1.Relative Path Traversal in GitHub repository mlflow/mlflow prior to 2.3.1. |
CVE-2021-27476 | CRITICAL | 10.0 | 0.04111 | 41.44 | No | No | 2022-03-23 | 2025-04-16 | euvd | A vulnerability exists in the SaveConfigFile function of the RACompare Service, which may allow for OS command injection. This vulnerability…A vulnerability exists in the SaveConfigFile function of the RACompare Service, which may allow for OS command injection. This vulnerability may allow a remote, unauthenticated attacker to execute arbitrary commands in Rockwell Automation FactoryTalk AssetCentre v10.00 and earlier. |
CVE-2021-26893 | CRITICAL | 9.8 | 0.06397 | 41.44 | No | No | 2021-03-11 | 2024-10-01 | euvd | Windows DNS Server Remote Code Execution VulnerabilityWindows DNS Server Remote Code Execution Vulnerability |
CVE-2023-0744 | CRITICAL | 9.8 | 0.06368 | 41.43 | No | No | 2023-02-08 | 2025-03-25 | euvd | Improper Access Control in GitHub repository answerdev/answer prior to 1.0.4.Improper Access Control in GitHub repository answerdev/answer prior to 1.0.4. |
CVE-2023-2780 | CRITICAL | 9.8 | 0.06363 | 41.43 | No | No | 2023-05-17 | 2025-01-22 | euvd | Path Traversal: '\..\filename' in GitHub repository mlflow/mlflow prior to 2.3.1.Path Traversal: '\..\filename' in GitHub repository mlflow/mlflow prior to 2.3.1. |
CVE-2024-22567 | HIGH | 8.8 | 0.17789 | 41.43 | No | No | 2024-02-05 | 2025-06-17 | euvd | File Upload vulnerability in MCMS 5.3.5 allows attackers to upload arbitrary files via crafted POST request to /ms/file/upload.do.File Upload vulnerability in MCMS 5.3.5 allows attackers to upload arbitrary files via crafted POST request to /ms/file/upload.do. |
CVE-2013-10048 | CRITICAL | 9.3 | 0.12099 | 41.43 | No | No | 2025-08-01 | 2026-05-15 | euvd | An OS command injection vulnerability exists in various legacy D-Link routers—including DIR-300 rev B and DIR-600 (firmware ≤ 2.13 and ≤ 2.1…An OS command injection vulnerability exists in various legacy D-Link routers—including DIR-300 rev B and DIR-600 (firmware ≤ 2.13 and ≤ 2.14b01, respectively)—due to improper input handling in the unauthenticated command.php endpoint. By sending specially crafted POST requests, a remote attacker can execute arbitrary shell commands with root privileges, allowing full takeover of the device. This includes launching services such as Telnet, exfiltrating credentials, modifying system configuration, and disrupting availability. The flaw stems from the lack of authentication and inadequate sanitation of the cmd parameter. |
CVE-2021-41269 | CRITICAL | 10.0 | 0.04047 | 41.42 | No | No | 2021-11-15 | 2024-08-04 | euvd | cron-utils is a Java library to define, parse, validate, migrate crons as well as get human readable descriptions for them. In affected vers…cron-utils is a Java library to define, parse, validate, migrate crons as well as get human readable descriptions for them. In affected versions A template Injection was identified in cron-utils enabling attackers to inject arbitrary Java EL expressions, leading to unauthenticated Remote Code Execution (RCE) vulnerability. Versions up to 9.1.2 are susceptible to this vulnerability. Please note, that only projects using the @Cron annotation to validate untrusted Cron expressions are affected. The issue was patched and a new version was released. Please upgrade to version 9.1.6. There are no known workarounds known. |
CVE-2018-0001 | CRITICAL | 9.8 | 0.06335 | 41.42 | No | No | 2018-01-10 | 2024-09-17 | euvd | A remote, unauthenticated attacker may be able to execute code by exploiting a use-after-free defect found in older versions of PHP through …A remote, unauthenticated attacker may be able to execute code by exploiting a use-after-free defect found in older versions of PHP through injection of crafted data via specific PHP URLs within the context of the J-Web process. Affected releases are Juniper Networks Junos OS: 12.1X46 versions prior to 12.1X46-D67; 12.3 versions prior to 12.3R12-S5; 12.3X48 versions prior to 12.3X48-D35; 14.1 versions prior to 14.1R8-S5, 14.1R9; 14.1X53 versions prior to 14.1X53-D44, 14.1X53-D50; 14.2 versions prior to 14.2R7-S7, 14.2R8; 15.1 versions prior to 15.1R3; 15.1X49 versions prior to 15.1X49-D30; 15.1X53 versions prior to 15.1X53-D70. |
CVE-2023-26361 | MEDIUM | 4.9 | 0.62342 | 41.42 | No | No | 2023-03-23 | 2025-03-05 | euvd | Adobe ColdFusion versions 2018 Update 15 (and earlier) and 2021 Update 5 (and earlier) are affected by an Improper Limitation of a Pathname …Adobe ColdFusion versions 2018 Update 15 (and earlier) and 2021 Update 5 (and earlier) are affected by an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability that could result in Arbitrary file system read. Exploitation of this issue does not require user interaction, but does require administrator privileges. |
CVE-2023-28879 | CRITICAL | 9.8 | 0.06341 | 41.42 | No | No | 2023-03-31 | 2025-02-14 | euvd | In Artifex Ghostscript through 10.01.0, there is a buffer overflow leading to potential corruption of data internal to the PostScript interp…In Artifex Ghostscript through 10.01.0, there is a buffer overflow leading to potential corruption of data internal to the PostScript interpreter, in base/sbcp.c. This affects BCPEncode, BCPDecode, TBCPEncode, and TBCPDecode. If the write buffer is filled to one byte less than full, and one then tries to write an escaped character, two bytes are written. |
CVE-2026-3943 | MEDIUM | 6.9 | 0.39457 | 41.41 | No | No | 2026-03-11 | 2026-03-12 | euvd | A vulnerability was found in H3C ACG1000-AK230 up to 20260227. This affects an unknown part of the file /webui/?aaa_portal_auth_local_submit…A vulnerability was found in H3C ACG1000-AK230 up to 20260227. This affects an unknown part of the file /webui/?aaa_portal_auth_local_submit. The manipulation of the argument suffix results in command injection. The attack can be launched remotely. The exploit has been made public and could be used. The vendor is investigating and remediating this issue. |
CVE-2021-42311 | CRITICAL | 10.0 | 0.0403 | 41.41 | No | No | 2021-12-15 | 2024-08-04 | euvd | Microsoft Defender for IoT Remote Code Execution VulnerabilityMicrosoft Defender for IoT Remote Code Execution Vulnerability |
CVE-2011-10019 | CRITICAL | 10.0 | 0.04005 | 41.4 | No | No | 2025-08-13 | 2026-05-15 | euvd | Spreecommerce versions prior to 0.60.2 contains a remote command execution vulnerability in its search functionality. The application fails …Spreecommerce versions prior to 0.60.2 contains a remote command execution vulnerability in its search functionality. The application fails to properly sanitize input passed via the search[send][] parameter, which is dynamically invoked using Ruby’s send method. This allows attackers to execute arbitrary shell commands on the server without authentication. |
CVE-2024-25575 | HIGH | 8.8 | 0.17716 | 41.4 | No | No | 2024-04-30 | 2025-12-16 | euvd | A type confusion vulnerability vulnerability exists in the way Foxit Reader 2024.1.0.23997 handles a Lock object. A specially crafted Javasc…A type confusion vulnerability vulnerability exists in the way Foxit Reader 2024.1.0.23997 handles a Lock object. A specially crafted Javascript code inside a malicious PDF document can trigger this vulnerability, which can lead to memory corruption and result in arbitrary code execution. An attacker needs to trick the user into opening the malicious file to trigger this vulnerability. Exploitation is also possible if a user visits a specially crafted, malicious site if the browser plugin extension is enabled. |
CVE-2022-20749 | CRITICAL | 10.0 | 0.04008 | 41.4 | No | No | 2022-02-10 | 2024-11-06 | euvd | Multiple vulnerabilities in Cisco Small Business RV160, RV260, RV340, and RV345 Series Routers could allow an attacker to do any of the foll…Multiple vulnerabilities in Cisco Small Business RV160, RV260, RV340, and RV345 Series Routers could allow an attacker to do any of the following: Execute arbitrary code Elevate privileges Execute arbitrary commands Bypass authentication and authorization protections Fetch and run unsigned software Cause denial of service (DoS) For more information about these vulnerabilities, see the Details section of this advisory. |
CVE-2026-48030 | CRITICAL | 9.9 | 0.05155 | 41.4 | No | No | 2026-07-27 | 2026-07-27 | euvd, nvd | Pheditor is a single-file editor and file manager written in PHP. From version 2.0.1 to before version 2.0.4, an OS Command Injection vulner…Pheditor is a single-file editor and file manager written in PHP. From version 2.0.1 to before version 2.0.4, an OS Command Injection vulnerability in the terminal action handler allows any authenticated user to execute arbitrary OS commands by injecting shell metacharacters into the 'dir' POST parameter, completely bypassing the TERMINAL_COMMANDS whitelist and achieving full Remote Code Execution with web server privileges. This issue has been patched in version 2.0.4. |
CVE-2024-52316 | CRITICAL | 9.8 | 0.06287 | 41.4 | No | No | 2024-11-18 | 2025-11-04 | euvd | Unchecked Error Condition vulnerability in Apache Tomcat. If Tomcat is configured to use a custom Jakarta Authentication (formerly JASPIC) S…Unchecked Error Condition vulnerability in Apache Tomcat. If Tomcat is configured to use a custom Jakarta Authentication (formerly JASPIC) ServerAuthContext component which may throw an exception during the authentication process without explicitly setting an HTTP status to indicate failure, the authentication may not fail, allowing the user to bypass the authentication process. There are no known Jakarta Authentication components that behave in this way.
This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.0-M26, from 10.1.0-M1 through 10.1.30, from 9.0.0-M1 through 9.0.95.
The following versions were EOL at the time the CVE was created but are
known to be affected: 8.5.0 though 8.5.100. Other EOL versions may also be affected.
Users are recommended to upgrade to version 11.0.0, 10.1.31 or 9.0.96, which fix the issue. |
CVE-2019-5138 | CRITICAL | 9.9 | 0.05155 | 41.4 | No | No | 2020-02-25 | 2024-08-04 | euvd | An exploitable command injection vulnerability exists in encrypted diagnostic script functionality of the Moxa AWK-3131A firmware version 1.…An exploitable command injection vulnerability exists in encrypted diagnostic script functionality of the Moxa AWK-3131A firmware version 1.13. A specially crafted diagnostic script file can cause arbitrary busybox commands to be executed, resulting in remote control over the device. An attacker can send diagnostic while authenticated as a low privilege user to trigger this vulnerability. |
CVE-2017-14728 | CRITICAL | 9.8 | 0.06291 | 41.4 | No | No | 2019-06-03 | 2026-06-02 | euvd | An authentication bypass was found in an unknown area of the SiteOmat source code. All SiteOmat BOS versions are affected, prior to the subm…An authentication bypass was found in an unknown area of the SiteOmat source code. All SiteOmat BOS versions are affected, prior to the submission of this exploit. Also, the SiteOmat does not force administrators to switch passwords, leaving SSH and HTTP remote authentication open to public. |
CVE-2025-43560 | CRITICAL | 9.1 | 0.14299 | 41.4 | No | No | 2025-05-13 | 2026-02-26 | euvd | ColdFusion versions 2025.1, 2023.13, 2021.19 and earlier are affected by an Improper Input Validation vulnerability that could result in arb…ColdFusion versions 2025.1, 2023.13, 2021.19 and earlier are affected by an Improper Input Validation vulnerability that could result in arbitrary code execution in the context of the current user. A high-privileged attacker could leverage this vulnerability to bypass security mechanisms and execute code. Exploitation of this issue does not require user interaction and scope is changed. |
CVE-2024-29224 | CRITICAL | 9.8 | 0.06292 | 41.4 | No | No | 2024-11-21 | 2024-11-21 | euvd | An OS command injection vulnerability exists in the NAT parameter of GoCast 1.1.3. A specially crafted HTTP request can lead to arbitrary co…An OS command injection vulnerability exists in the NAT parameter of GoCast 1.1.3. A specially crafted HTTP request can lead to arbitrary command execution. An attacker can make an unauthenticated HTTP request to trigger this vulnerability. |
CVE-2024-43362 | HIGH | 7.3 | 0.3484 | 41.39 | No | No | 2024-10-07 | 2025-11-03 | euvd | Cacti is an open source performance and fault management framework. The `fileurl` parameter is not properly sanitized when saving external l…Cacti is an open source performance and fault management framework. The `fileurl` parameter is not properly sanitized when saving external links in `links.php` . Morever, the said fileurl is placed in some html code which is passed to the `print` function in `link.php` and `index.php`, finally leading to stored XSS. Users with the privilege to create external links can manipulate the `fileurl` parameter in the http post request while creating external links to perform stored XSS attacks. The vulnerability known as XSS (Cross-Site Scripting) occurs when an application allows untrusted user input to be displayed on a web page without proper validation or escaping. This issue has been addressed in release version 1.2.28. All users are advised to upgrade. There are no known workarounds for this issue. |
CVE-2019-5021 | CRITICAL | 9.8 | 0.06263 | 41.39 | No | No | 2019-05-08 | 2024-08-04 | euvd | Versions of the Official Alpine Linux Docker images (since v3.3) contain a NULL password for the `root` user. This vulnerability appears to …Versions of the Official Alpine Linux Docker images (since v3.3) contain a NULL password for the `root` user. This vulnerability appears to be the result of a regression introduced in December of 2015. Due to the nature of this issue, systems deployed using affected versions of the Alpine Linux container which utilize Linux PAM, or some other mechanism which uses the system shadow file as an authentication database, may accept a NULL password for the `root` user. |
CVE-2024-55964 | CRITICAL | 9.8 | 0.06268 | 41.39 | No | No | 2025-03-26 | 2025-03-27 | euvd | An issue was discovered in Appsmith before 1.52. An incorrectly configured PostgreSQL instance in the Appsmith image leads to remote command…An issue was discovered in Appsmith before 1.52. An incorrectly configured PostgreSQL instance in the Appsmith image leads to remote command execution inside the Appsmith Docker container. The attacker must be able to access Appsmith, login to it, create a datasource, create a query against that datasource, and execute that query. |
CVE-2024-43360 | CRITICAL | 9.8 | 0.06222 | 41.38 | No | No | 2024-08-12 | 2024-08-15 | euvd | ZoneMinder is a free, open source closed-circuit television software application. ZoneMinder is affected by a time-based SQL Injection vulne…ZoneMinder is a free, open source closed-circuit television software application. ZoneMinder is affected by a time-based SQL Injection vulnerability. This vulnerability is fixed in 1.36.34 and 1.37.61. |
CVE-2022-21849 | CRITICAL | 9.8 | 0.06242 | 41.38 | No | No | 2022-01-11 | 2025-01-02 | euvd | Windows Internet Key Exchange (IKE) Protocol Extensions Remote Code Execution VulnerabilityWindows Internet Key Exchange (IKE) Protocol Extensions Remote Code Execution Vulnerability |
CVE-2019-11061 | CRITICAL | 10.0 | 0.0395 | 41.38 | No | No | 2019-08-29 | 2024-09-16 | euvd | A broken access control vulnerability in HG100 firmware versions up to 4.00.06 allows an attacker in the same local area network to control …A broken access control vulnerability in HG100 firmware versions up to 4.00.06 allows an attacker in the same local area network to control IoT devices that connect with itself via http://[target]/smarthome/devicecontrol without any authentication. CVSS 3.0 base score 10 (Confidentiality, Integrity and Availability impacts). CVSS vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H). |
CVE-2023-6977 | CRITICAL | 10.0 | 0.03924 | 41.37 | No | No | 2023-12-20 | 2024-08-02 | euvd | This vulnerability enables malicious users to read sensitive files on the server.This vulnerability enables malicious users to read sensitive files on the server. |
CVE-2025-66209 | CRITICAL | 10.0 | 0.0391 | 41.37 | No | No | 2025-12-23 | 2026-03-17 | euvd | Coolify is an open-source and self-hostable tool for managing servers, applications, and databases. Prior to version 4.0.0-beta.451, an auth…Coolify is an open-source and self-hostable tool for managing servers, applications, and databases. Prior to version 4.0.0-beta.451, an authenticated command injection vulnerability in the Database Backup functionality allows users with application/service management permissions to execute arbitrary commands as root on managed servers. Database names used in backup operations are passed directly to shell commands without sanitization, enabling full remote code execution. Version 4.0.0-beta.451 fixes the issue. |
CVE-2018-10870 | CRITICAL | 9.8 | 0.06182 | 41.36 | No | No | 2018-07-19 | 2024-08-05 | euvd | redhat-certification does not properly sanitize paths in rhcertStore.py:__saveResultsFile. A remote attacker could use this flaw to overwrit…redhat-certification does not properly sanitize paths in rhcertStore.py:__saveResultsFile. A remote attacker could use this flaw to overwrite any file, potentially gaining remote code execution. |
CVE-2025-34073 | CRITICAL | 10.0 | 0.03884 | 41.36 | No | No | 2025-07-02 | 2026-05-14 | euvd | An unauthenticated command injection vulnerability exists in stamparm/maltrail (Maltrail) versions <=0.54. A remote attacker can execute arb…An unauthenticated command injection vulnerability exists in stamparm/maltrail (Maltrail) versions <=0.54. A remote attacker can execute arbitrary operating system commands via the username parameter in a POST request to the /login endpoint. This occurs due to unsafe handling of user-supplied input passed to subprocess.check_output() in core/http.py, allowing injection of shell metacharacters. Exploitation does not require authentication and commands are executed with the privileges of the Maltrail process. |
CVE-2017-14475 | CRITICAL | 9.8 | 0.06164 | 41.36 | No | No | 2018-05-09 | 2024-09-16 | euvd | In the MMM::Agent::Helpers::Network::add_ip function in MySQL Multi-Master Replication Manager (MMM) mmm_agentd 2.2.1 (for Linux), a special…In the MMM::Agent::Helpers::Network::add_ip function in MySQL Multi-Master Replication Manager (MMM) mmm_agentd 2.2.1 (for Linux), a specially crafted MMM protocol message can cause a shell command injection resulting in arbitrary command execution with the privileges of the mmm\_agentd process. An attacker that can initiate a TCP session with mmm\_agentd can trigger this vulnerability. |
CVE-2017-14474 | CRITICAL | 9.8 | 0.06164 | 41.36 | No | No | 2018-05-09 | 2024-09-16 | euvd | In the MMM::Agent::Helpers::_execute function in MySQL Multi-Master Replication Manager (MMM) mmm_agentd 2.2.1, a specially crafted MMM prot…In the MMM::Agent::Helpers::_execute function in MySQL Multi-Master Replication Manager (MMM) mmm_agentd 2.2.1, a specially crafted MMM protocol message can cause a shell command injection resulting in arbitrary command execution with the privileges of the mmm\_agentd process. An attacker that can initiate a TCP session with mmm\_agentd can trigger this vulnerability. |
CVE-1999-0080 | HIGH | 10.0 | 0.03896 | 41.36 | No | No | 1999-09-29 | 2024-08-01 | euvd, nvd | Certain configurations of wu-ftp FTP server 2.4 use a _PATH_EXECPATH setting to a directory with dangerous commands, such as /bin, which all…Certain configurations of wu-ftp FTP server 2.4 use a _PATH_EXECPATH setting to a directory with dangerous commands, such as /bin, which allows remote authenticated users to gain root access via the "site exec" command. |
CVE-2024-24329 | CRITICAL | 9.8 | 0.06172 | 41.36 | No | No | 2024-01-30 | 2025-06-12 | euvd | TOTOLINK A3300R V17.0.0cu.557_B20221024 was discovered to contain a command injection vulnerability via the enable parameter in the setPortF…TOTOLINK A3300R V17.0.0cu.557_B20221024 was discovered to contain a command injection vulnerability via the enable parameter in the setPortForwardRules function. |
CVE-2021-27466 | CRITICAL | 10.0 | 0.03886 | 41.36 | No | No | 2022-03-23 | 2025-04-16 | euvd | A deserialization vulnerability exists in how the ArchiveService.rem service in Rockwell Automation FactoryTalk AssetCentre v10.00 and earli…A deserialization vulnerability exists in how the ArchiveService.rem service in Rockwell Automation FactoryTalk AssetCentre v10.00 and earlier verifies serialized data. This vulnerability may allow a remote, unauthenticated attacker to execute arbitrary commands in FactoryTalk AssetCentre. |
CVE-2022-4047 | CRITICAL | 9.8 | 0.06152 | 41.35 | No | No | 2022-12-26 | 2025-04-14 | euvd | The Return Refund and Exchange For WooCommerce WordPress plugin before 4.0.9 does not validate attachment files to be uploaded via an AJAX a…The Return Refund and Exchange For WooCommerce WordPress plugin before 4.0.9 does not validate attachment files to be uploaded via an AJAX action available to unauthenticated users, which could allow them to upload arbitrary files such as PHP and lead to RCE |
CVE-2021-27470 | CRITICAL | 10.0 | 0.03828 | 41.34 | No | No | 2022-03-23 | 2025-04-16 | euvd | A deserialization vulnerability exists in how the LogService.rem service in Rockwell Automation FactoryTalk AssetCentre v10.00 and earlier v…A deserialization vulnerability exists in how the LogService.rem service in Rockwell Automation FactoryTalk AssetCentre v10.00 and earlier verifies serialized data. This vulnerability may allow a remote, unauthenticated attacker to execute arbitrary commands in FactoryTalk AssetCentre. |
CVE-2026-55450 | CRITICAL | 9.3 | 0.11819 | 41.34 | No | No | 2026-06-23 | 2026-06-23 | euvd | Langflow is a tool for building and deploying AI-powered agents and workflows. Prior to 1.9.1, unauthenticated users can upload any amount o…Langflow is a tool for building and deploying AI-powered agents and workflows. Prior to 1.9.1, unauthenticated users can upload any amount of data to the server without any limitations. No need for any prior knowledge, only network access to Langflow. This can lead to space exhaustion on the server. In addition, in the response, the absolute path of the uploaded file is reported to the attacker, which is an information leak that can assist in chaining other primitives. This vulnerability is fixed in 1.9.1. |
CVE-2021-42313 | CRITICAL | 10.0 | 0.03825 | 41.34 | No | No | 2021-12-15 | 2024-08-04 | euvd | Microsoft Defender for IoT Remote Code Execution VulnerabilityMicrosoft Defender for IoT Remote Code Execution Vulnerability |
CVE-2024-22263 | HIGH | 8.8 | 0.17537 | 41.34 | No | No | 2024-06-19 | 2024-08-01 | euvd | Spring Cloud Data Flow is a microservices-based Streaming and Batch data processing in Cloud Foundry and Kubernetes. The Skipper server has …Spring Cloud Data Flow is a microservices-based Streaming and Batch data processing in Cloud Foundry and Kubernetes. The Skipper server has the ability to receive upload package requests. However, due to improper sanitization for upload path, a malicious user who has access to skipper server api can use a crafted upload request to write arbitrary file to any location on file system, may even compromises the server. |
CVE-2021-27462 | CRITICAL | 10.0 | 0.03828 | 41.34 | No | No | 2022-03-23 | 2025-04-16 | euvd | A deserialization vulnerability exists in how the AosService.rem service in Rockwell Automation FactoryTalk AssetCentre v10.00 and earlier v…A deserialization vulnerability exists in how the AosService.rem service in Rockwell Automation FactoryTalk AssetCentre v10.00 and earlier verifies serialized data. This vulnerability may allow a remote, unauthenticated attacker to execute arbitrary commands in FactoryTalk AssetCentre. |
CVE-2017-14480 | CRITICAL | 9.8 | 0.06084 | 41.33 | No | No | 2018-05-09 | 2024-09-17 | euvd | In the MMM::Agent::Helpers::Network::clear_ip function in MySQL Multi-Master Replication Manager (MMM) mmm_agentd 2.2.1 (for FreeBSD), a spe…In the MMM::Agent::Helpers::Network::clear_ip function in MySQL Multi-Master Replication Manager (MMM) mmm_agentd 2.2.1 (for FreeBSD), a specially crafted MMM protocol message can cause a shell command injection resulting in arbitrary command execution with the privileges of the mmm\_agentd process. An attacker that can initiate a TCP session with mmm\_agentd can trigger this vulnerability. |
CVE-2017-14476 | CRITICAL | 9.8 | 0.06084 | 41.33 | No | No | 2018-05-09 | 2024-09-17 | euvd | In the MMM::Agent::Helpers::Network::add_ip function in MySQL Multi-Master Replication Manager (MMM) mmm_agentd 2.2.1 (for Solaris), a speci…In the MMM::Agent::Helpers::Network::add_ip function in MySQL Multi-Master Replication Manager (MMM) mmm_agentd 2.2.1 (for Solaris), a specially crafted MMM protocol message can cause a shell command injection resulting in arbitrary command execution with the privileges of the mmm\_agentd process. An attacker that can initiate a TCP session with mmm\_agentd can trigger this vulnerability. |
CVE-2017-14478 | CRITICAL | 9.8 | 0.06084 | 41.33 | No | No | 2018-05-09 | 2024-09-17 | euvd | In the MMM::Agent::Helpers::Network::clear_ip function in MySQL Multi-Master Replication Manager (MMM) mmm_agentd 2.2.1 (for Linux), a speci…In the MMM::Agent::Helpers::Network::clear_ip function in MySQL Multi-Master Replication Manager (MMM) mmm_agentd 2.2.1 (for Linux), a specially crafted MMM protocol message can cause a shell command injection resulting in arbitrary command execution with the privileges of the mmm\_agentd process. An attacker that can initiate a TCP session with mmm\_agentd can trigger this vulnerability. |
CVE-2022-20709 | CRITICAL | 10.0 | 0.03802 | 41.33 | No | No | 2022-02-10 | 2024-11-06 | euvd | Multiple vulnerabilities in Cisco Small Business RV160, RV260, RV340, and RV345 Series Routers could allow an attacker to do any of the foll…Multiple vulnerabilities in Cisco Small Business RV160, RV260, RV340, and RV345 Series Routers could allow an attacker to do any of the following: Execute arbitrary code Elevate privileges Execute arbitrary commands Bypass authentication and authorization protections Fetch and run unsigned software Cause denial of service (DoS) For more information about these vulnerabilities, see the Details section of this advisory. |
CVE-2017-14479 | CRITICAL | 9.8 | 0.06084 | 41.33 | No | No | 2018-05-09 | 2024-09-16 | euvd | In the MMM::Agent::Helpers::Network::clear_ip function in MySQL Multi-Master Replication Manager (MMM) mmm_agentd 2.2.1 (for Solaris), a spe…In the MMM::Agent::Helpers::Network::clear_ip function in MySQL Multi-Master Replication Manager (MMM) mmm_agentd 2.2.1 (for Solaris), a specially crafted MMM protocol message can cause a shell command injection resulting in arbitrary command execution with the privileges of the mmm\_agentd process. An attacker that can initiate a TCP session with mmm\_agentd can trigger this vulnerability. |
CVE-2017-14477 | CRITICAL | 9.8 | 0.06084 | 41.33 | No | No | 2018-05-09 | 2024-09-17 | euvd | In the MMM::Agent::Helpers::Network::add_ip function in MySQL Multi-Master Replication Manager (MMM) mmm_agentd 2.2.1 (for FreeBSD), a speci…In the MMM::Agent::Helpers::Network::add_ip function in MySQL Multi-Master Replication Manager (MMM) mmm_agentd 2.2.1 (for FreeBSD), a specially crafted MMM protocol message can cause a shell command injection resulting in arbitrary command execution with the privileges of the mmm\_agentd process. An attacker that can initiate a TCP session with mmm\_agentd can trigger this vulnerability. |
CVE-2024-31849 | CRITICAL | 9.8 | 0.06076 | 41.33 | No | No | 2024-04-05 | 2024-08-02 | euvd | A path traversal vulnerability exists in the Java version of CData Connect < 23.4.8846 when running using the embedded Jetty server, which c…A path traversal vulnerability exists in the Java version of CData Connect < 23.4.8846 when running using the embedded Jetty server, which could allow an unauthenticated remote attacker to gain complete administrative access to the application. |