Page 3 of 19 results (0.006 seconds)

CVSS: 2.1EPSS: 0%CPEs: 1EXPL: 0

Xconfig in Hummingbird Exceed before 9.0.0.1, when the Screen Definition is password-protected, allows local users to access certain options by switching to another tab, then switching back to the original tab. • http://secunia.com/advisories/11678 http://support.hummingbird.com/customer/download.asp?r2=/exceed/900/xconfig_9002.zip http://www.osvdb.org/6304 http://www.securityfocus.com/bid/10393 https://exchange.xforce.ibmcloud.com/vulnerabilities/16221 •

CVSS: 4.4EPSS: 0%CPEs: 2EXPL: 0

Inetd32 Administration Tool of Hummingbird Connectivity 7.1 and 9.0 allows local users to execute arbitrary code by changing the program for handling incoming connections. • http://secunia.com/advisories/12984 http://securitytracker.com/id?1011942 http://www.osvdb.org/11132 http://www.securityfocus.com/bid/11539 http://www.uniras.gov.uk/vuls/2004/841713/index.htm https://exchange.xforce.ibmcloud.com/vulnerabilities/17854 • CWE-264: Permissions, Privileges, and Access Controls •

CVSS: 3.5EPSS: 1%CPEs: 2EXPL: 0

Buffer overflow in the FTP server of Hummingbird Connectivity 7.1 and 9.0 allows remote, authenticated users to cause a denial of service (application crash) via a long argument to the XCWD command. • http://secunia.com/advisories/12984 http://securitytracker.com/id?1011942 http://www.osvdb.org/11133 http://www.securityfocus.com/bid/11542 http://www.uniras.gov.uk/vuls/2004/841713/index.htm https://exchange.xforce.ibmcloud.com/vulnerabilities/17855 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVSS: 5.0EPSS: 0%CPEs: 3EXPL: 0

Hummingbird CyberDOCS 3.5, 3.9, and 4.0, when running on IIS, uses insecure permissions for script source code files, which allows remote attackers to read the source code. • http://secunia.com/advisories/9985 http://www.kb.cert.org/vuls/id/989580 http://www.procheckup.com/security_info/vuln_pr0302.html https://exchange.xforce.ibmcloud.com/vulnerabilities/13397 •

CVSS: 7.5EPSS: 0%CPEs: 2EXPL: 0

SQL injection vulnerability in loginact.asp for Hummingbird CyberDOCS before 3.9 allows remote attackers to execute arbitrary SQL commands. • http://secunia.com/advisories/9985 http://www.kb.cert.org/vuls/id/368300 http://www.procheckup.com/security_info/vuln_pr0304.html http://www.securityfocus.com/bid/8800 https://exchange.xforce.ibmcloud.com/vulnerabilities/13401 •