The Authorize.Net eCheck module in Zen Cart does not verify that the server hostname matches a domain name in the subjec
The LinkPoint module in Zen Cart does not verify that the server hostname matches a domain name in the subject's Common
The Groupon Redemptions application for Android does not verify that the server hostname matches a domain name in the su
The Breezy application for Android does not verify that the server hostname matches a domain name in the subject's Commo
The ACRA library for Android does not verify that the server hostname matches a domain name in the subject's Common Name
The Android_Pusher library for Android does not verify that the server hostname matches a domain name in the subject's C
Weberknecht, as used in GitHub Gaug.es and other products, does not verify that the server hostname matches a domain nam
The Rackspace app 2.1.5 for iOS does not verify that the server hostname matches a domain name in the subject's Common N
AOL Instant Messenger (AIM) 1.0.1.2 does not verify that the server hostname matches a domain name in the subject's Comm
ElephantDrive does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjec
The developer-account sample code in Google AdMob does not verify that the server hostname matches a domain name in the
Open Source Classifieds does not verify that the server hostname matches a domain name in the subject's Common Name (CN)
Trillian 5.1.0.19 does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or su
Tweepy does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltNam
Moneris eSelectPlus 2.03 PHP API does not verify that the server hostname matches a domain name in the subject's Common
PayPal WPS ToolKit does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or s
google-checkout-php-sample-code before 1.3.2 does not verify that the server hostname matches a domain name in the subje
CiviCRM 4.0.5 and 4.1.1 does not verify that the server hostname matches a domain name in the subject's Common Name (CN)
Magento 1.5 and 1.6.2 does not verify that the server hostname matches a domain name in the subject's Common Name (CN) o
Services_Twitter 0.6.3 does not verify that the server hostname matches a domain name in the subject's Common Name (CN)
tmhOAuth before 0.61 does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or
TwitterOAuth does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subject
cups-pk-helper before 0.2.3 does not properly wrap the (1) cupsGetFile and (2) cupsPutFile function calls, which allows
Open redirect vulnerability in assets/login on the Forescout CounterACT NAC device before 7.0 allows remote attackers to
The IP-HTTPS server in Windows Server 2008 R2 and R2 SP1 and Server 2012 does not properly validate certificates, which
Fetchmail 5.0.8 through 6.3.21, when using NTLM authentication in debug mode, allows remote NTLM servers to (1) cause a
IBM Security AppScan Enterprise before 8.6.0.2 and Rational Policy Tester before 8.5.0.3 do not validate X.509 certifica
IBM Security AppScan Enterprise before 8.6.0.2 and Rational Policy Tester before 8.5.0.3 do not validate X.509 certifica
Open redirect vulnerability in forum/login.php in vBulletin 4.1.3 and earlier allows remote attackers to redirect users
Buffer overflow in ISC DHCP 4.2.x before 4.2.4-P1, when DHCPv6 mode is enabled, allows remote attackers to cause a denia
ioquake3 before r2253 allows local users to overwrite arbitrary files via a symlink attack on the /tmp/ioq3.pid temporar
Unspecified vulnerability in Oracle Solaris 10 and 11 allows local users to affect integrity and availability, related t
A certain Red Hat script for sudo 1.7.2 on Red Hat Enterprise Linux (RHEL) 5 allows local users to overwrite arbitrary f
Use-after-free vulnerability in the xacct_add_tsk function in kernel/tsacct.c in the Linux kernel before 2.6.19 allows l
Unspecified vulnerability in Oracle Sun Solaris 10 and 11, when running on SPARC, allows local users to affect integrity
PHYSDEVOP_map_pirq in Xen 4.1 and 4.2 and Citrix XenServer 6.0.2 and earlier allows local HVM guest OS kernels to cause
Unspecified vulnerability in the Oracle Web Services Manager component in Oracle Fusion Middleware 11.1.1.3, 11.1.1.4, a
Unspecified vulnerability in the PeopleSoft Enterprise HCM component in Oracle PeopleSoft Products 9.1 allows remote aut
Unspecified vulnerability in the Core RDBMS component in Oracle Database Server 10.1.0.5, 10.2.0.3, 10.2.0.4, 10.2.0.5,
Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.x and 5.5.x allows remote authenticated user
wp-admin/plugins.php in WordPress before 3.3.2 allows remote authenticated site administrators to bypass intended access
Unspecified vulnerability in the Enterprise Manager Base Platform component in Oracle Database Server 11.1.0.7 and 11.2.
Unspecified vulnerability in the PeopleSoft Enterprise HRMS component in Oracle PeopleSoft Products 9.0 allows remote au
Unspecified vulnerability in the Identity Manager component in Oracle Fusion Middleware 11.1.1.3 and 11.1.1.5 allows rem
Unspecified vulnerability in the PeopleSoft Enterprise PeopleTools component in Oracle PeopleSoft Products 8.50, 8.51, a
Unspecified vulnerability in the Oracle Agile component in Oracle Supply Chain Products Suite 5.2.2, 6.0.0, and 6.1.1 al
Unspecified vulnerability in the Oracle FLEXCUBE Universal Banking component in Oracle Financial Services Software 10.0.
The m_stop function in fs/proc/task_mmu.c in the Linux kernel before 2.6.39 allows local users to cause a denial of serv
Integer overflow in the oom_badness function in mm/oom_kill.c in the Linux kernel before 3.1.8 on 64-bit platforms allow
The net subsystem in the Linux kernel before 3.1 does not properly restrict use of the IFF_TX_SKB_SHARING flag, which al
Scan for 2012 Vulnerabilities
CyberStrike detects these CVEs across your infrastructure automatically.
Get Started