Skip to main content

Vendor archive

ipa CVEs

Beta · best-effort

16 CVEs tagged to vendor ipa0 Critical, 9 High, 7 Medium, 0 Low, 0 Unrated.

CVE-2019-6019

Published Dec 26, 2019

Untrusted search path vulnerability in STAMP Workbench installer all versions allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2017-10820

Published Aug 4, 2017

Untrusted search path vulnerability in Installer of IP Messenger for Win 4.60 and earlier allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2017-2220

Published Jul 7, 2017

Untrusted search path vulnerability in Installer of CASL II simulator (self-extract format) allows an attacker to gain privileges via a Trojan horse DLL in an unspecified director…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2017-2194

Published Jul 7, 2017

Cross-site scripting vulnerability in Source code security studying tool iCodeChecker allows an attacker to inject arbitrary web script or HTML via unspecified vectors.

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-2182

Published Jun 9, 2017

Hands-on Vulnerability Learning Tool "AppGoat" for Web Application V3.0.2 and earlier allow remote attackers to obtain local files via unspecified vectors, a different vulnerabili…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2017-2181

Published Jun 9, 2017

Hands-on Vulnerability Learning Tool "AppGoat" for Web Application V3.0.2 and earlier allow remote attackers to obtain local files via unspecified vectors, a different vulnerabili…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2017-2180

Published Jun 9, 2017

Hands-on Vulnerability Learning Tool "AppGoat" for Web Application V3.0.2 and earlier allow remote attackers to obtain local files via unspecified vectors.

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-2179

Published Jun 9, 2017

Hands-on Vulnerability Learning Tool "AppGoat" for Web Application V3.0.2 and earlier allows remote code execution via unspecified vectors, a different vulnerability than CVE-2017…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2017-2175

Published May 22, 2017

Untrusted search path vulnerability in Empirical Project Monitor - eXtended all versions allows remote attackers to gain privileges via a Trojan horse DLL in an unspecified direct…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2017-2174

Published May 22, 2017

Cross-site scripting vulnerability in Empirical Project Monitor - eXtended all versions allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-2173

Published May 22, 2017

Cross-site scripting vulnerability in Empirical Project Monitor - eXtended all versions allows remote authenticated attackers to inject arbitrary web script or HTML via unspecifie…

CVSS 5.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-2102

Published Apr 28, 2017

Cross-site request forgery (CSRF) vulnerability in Hands-on Vulnerability Learning Tool "AppGoat" for Web Application V3.0.0 and earlier allows remote attackers to hijack the auth…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2017-2101

Published Apr 28, 2017

Hands-on Vulnerability Learning Tool "AppGoat" for Web Application V3.0.0 and earlier allows remote attackers to bypass authentication to perform arbitrary operations via unspecif…

CVSS 7.3 · High
Vendor/product tagsBeta · best-effort

CVE-2017-2100

Published Apr 28, 2017

Hands-on Vulnerability Learning Tool "AppGoat" for Web Application V3.0.1 and earlier allows remote attackers to conduct DNS rebinding attacks via unspecified vectors.

CVSS 6.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-2099

Published Apr 28, 2017

Hands-on Vulnerability Learning Tool "AppGoat" for Web Application V3.0.0 and earlier allows remote code execution via unspecified vectors.

CVSS 6.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2014-7248

Published Nov 15, 2014

Cross-site scripting (XSS) vulnerability in IPA iLogScanner 4.0 allows remote attackers to inject arbitrary web script or HTML by triggering a crafted entry in a log file.

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-16 of 16 CVEsPage 1 of 1