6.9

CVSS4.0

CVE-2018-25238 - VSCO 1.1.1.0 Denial of Service via Search

VSCO 1.1.1.0 contains a denial of service vulnerability that allows local attackers to crash the application by submitting an excessively long string through the search functionality. Attackers can paste a buffer of 5000 characters into the search bar and navigate back to trigger an application cra…

πŸ“… Published: April 4, 2026, 1:51 p.m. πŸ”„ Last Modified: April 16, 2026, 4:15 p.m.

8.5

CVSS4.0

CVE-2016-20061 - sheed AntiVirus 2.3 Unquoted Service Path Privilege Escalation

sheed AntiVirus 2.3 contains an unquoted service path vulnerability in the ShavProt service that allows local attackers to escalate privileges by exploiting the service binary path. Attackers can insert a malicious executable in the unquoted path and trigger service restart or system reboot to exec…

πŸ“… Published: April 4, 2026, 1:51 p.m. πŸ”„ Last Modified: April 16, 2026, 4:15 p.m.

8.5

CVSS4.0

CVE-2016-20060 - Hotspot Shield 6.0.3 Unquoted Service Path Privilege Escalation

Hotspot Shield 6.0.3 contains an unquoted service path vulnerability in the hshld service binary that allows local attackers to escalate privileges by injecting malicious executables. Attackers can place executable files in the service path and upon service restart or system reboot, the malicious c…

πŸ“… Published: April 4, 2026, 1:51 p.m. πŸ”„ Last Modified: April 16, 2026, 4:15 p.m.

8.5

CVSS4.0

CVE-2016-20059 - IObit Malware Fighter 4.3.1 Unquoted Service Path Privilege Escalation

IObit Malware Fighter 4.3.1 contains an unquoted service path vulnerability in the IMFservice and LiveUpdateSvc services that allows local attackers to escalate privileges. Attackers can insert a malicious executable file in the unquoted service path and trigger privilege escalation when the servic…

πŸ“… Published: April 4, 2026, 1:51 p.m. πŸ”„ Last Modified: April 27, 2026, 1:27 p.m.

8.5

CVSS4.0

CVE-2016-20058 - Netgate AMITI Antivirus build 23.0.305 Unquoted Service Path Privilege Escalation

Netgate AMITI Antivirus build 23.0.305 contains an unquoted service path vulnerability in the AmitiAvSrv and AmitiAntivirusHealth services that allows local attackers to escalate privileges. Attackers can place a malicious executable in the unquoted service path and trigger service restart or syste…

πŸ“… Published: April 4, 2026, 1:51 p.m. πŸ”„ Last Modified: April 27, 2026, 1:28 p.m.

8.5

CVSS4.0

CVE-2016-20057 - NETGATE Registry Cleaner build 16.0.205 Unquoted Service Path Privilege Escalation

NETGATE Registry Cleaner build 16.0.205 contains an unquoted service path vulnerability in the NGRegClnSrv service that allows local attackers to escalate privileges by exploiting the service binary path. Attackers can place a malicious executable in the unquoted path and trigger service restart or…

πŸ“… Published: April 4, 2026, 1:51 p.m. πŸ”„ Last Modified: April 20, 2026, 2:25 p.m.

8.5

CVSS4.0

CVE-2016-20056 - Spy Emergency build 23.0.205 Unquoted Service Path Privilege Escalation

Spy Emergency build 23.0.205 contains an unquoted service path vulnerability in the SpyEmrgHealth and SpyEmrgSrv services that allows local attackers to escalate privileges by inserting malicious executables. Attackers can place executable files in the unquoted service path and trigger service rest…

πŸ“… Published: April 4, 2026, 1:50 p.m. πŸ”„ Last Modified: April 16, 2026, 4:15 p.m.

8.5

CVSS4.0

CVE-2016-20055 - IObit Advanced SystemCare 10.0.2 Unquoted Service Path Privilege Escalation

IObit Advanced SystemCare 10.0.2 contains an unquoted service path vulnerability in the AdvancedSystemCareService10 service that allows local attackers to escalate privileges. Attackers can place a malicious executable in the service path and trigger privilege escalation when the service restarts o…

πŸ“… Published: April 4, 2026, 1:50 p.m. πŸ”„ Last Modified: April 15, 2026, 4:30 p.m.

6.9

CVSS4.0

CVE-2016-20053 - Redaxo CMS 5.2 Cross-Site Request Forgery via users endpoint

Redaxo CMS 5.2 contains a cross-site request forgery vulnerability that allows unauthenticated attackers to create administrative user accounts by tricking authenticated administrators into visiting malicious pages. Attackers can craft HTML forms targeting the users endpoint with hidden fields cont…

πŸ“… Published: April 4, 2026, 1:50 p.m. πŸ”„ Last Modified: April 15, 2026, 4:30 p.m.

9.3

CVSS4.0

CVE-2016-20052 - Snews CMS 1.7 Unrestricted File Upload via snews_files

Snews CMS 1.7 contains an unrestricted file upload vulnerability that allows unauthenticated attackers to upload arbitrary files including PHP executables to the snews_files directory. Attackers can upload malicious PHP files through the multipart form-data upload endpoint and execute them by acces…

πŸ“… Published: April 4, 2026, 1:50 p.m. πŸ”„ Last Modified: April 15, 2026, 4:30 p.m.
Total resulsts: 349182
Page 691 of 34,919
Β« previous page Β» next page
Filters