Vulnerabilities
Vulnerable Software
Security Vulnerabilities - CVEs Published In January 2020
Koala Framework before 2011-11-21 has XSS via the request_uri parameter.
CVSS Score
6.1
EPSS Score
0.003
Published
2020-01-08
Snare for Linux before 1.7.0 has password disclosure because the rendered page contains the field RemotePassword.
CVSS Score
7.5
EPSS Score
0.008
Published
2020-01-08
Snare for Linux before 1.7.0 has CSRF in the web interface.
CVSS Score
6.5
EPSS Score
0.002
Published
2020-01-08
Imperva SecureSphere Web Application Firewall (WAF) before 12-august-2010 allows SQL injection filter bypass.
CVSS Score
9.8
EPSS Score
0.003
Published
2020-01-08
stb stb_truetype.h through 1.22 has an assertion failure in stbtt__cff_int.
CVSS Score
8.8
EPSS Score
0.005
Published
2020-01-08
stb stb_truetype.h through 1.22 has a heap-based buffer over-read in stbtt__find_table.
CVSS Score
8.8
EPSS Score
0.005
Published
2020-01-08
stb stb_truetype.h through 1.22 has an assertion failure in stbtt__buf_seek.
CVSS Score
8.8
EPSS Score
0.005
Published
2020-01-08
stb stb_truetype.h through 1.22 has a heap-based buffer over-read in stbtt__buf_get8.
CVSS Score
8.8
EPSS Score
0.005
Published
2020-01-08
stb stb_truetype.h through 1.22 has a heap-based buffer over-read in ttUSHORT.
CVSS Score
8.8
EPSS Score
0.005
Published
2020-01-08
stb stb_truetype.h through 1.22 has a heap-based buffer over-read in stbtt__buf_peek8.
CVSS Score
8.8
EPSS Score
0.003
Published
2020-01-08


Contact Us

Shodan ® - All rights reserved