Loading HuntDB...

Known Exploited Vulnerabilities

Search through CISA's catalog of actively exploited vulnerabilities

Press Enter to search
241,129 vulnerabilities found
Showing 41 - 60

Wing FTP Server Improper Neutralization of Null Byte or NUL Character Vulnerability

Added July 14, 2025 CVE-2025-47812
Due Soon

Wing FTP Server contains an improper neutralization of null byte or NUL character vulnerability that can allow injection of arbitrary Lua code into user session files. This can be used to execute arbitrary system commands with the privileges of the FTP service (root or SYSTEM by default).

Wing FTP Server Wing FTP Server
Due by August 4, 2025
Catalog 2025.07.24

Citrix NetScaler ADC and Gateway Out-of-Bounds Read Vulnerability

Added July 10, 2025 CVE-2025-5777
Overdue

Citrix NetScaler ADC and Gateway contain an out-of-bounds read vulnerability due to insufficient input validation. This vulnerability can lead to memory overread when the NetScaler is configured as a Gateway (VPN virtual server, ICA Proxy, CVPN, RDP Proxy) OR AAA virtual server.

Citrix NetScaler ADC and Gateway
Due by July 11, 2025
Catalog 2025.07.10

Citrix NetScaler ADC and Gateway Out-of-Bounds Read Vulnerability

Added July 10, 2025 CVE-2025-5777
Overdue

Citrix NetScaler ADC and Gateway contain an out-of-bounds read vulnerability due to insufficient input validation. This vulnerability can lead to memory overread when the NetScaler is configured as a Gateway (VPN virtual server, ICA Proxy, CVPN, RDP Proxy) OR AAA virtual server.

Citrix NetScaler ADC and Gateway
Due by July 11, 2025
Catalog 2025.07.10

Citrix NetScaler ADC and Gateway Out-of-Bounds Read Vulnerability

Added July 10, 2025 CVE-2025-5777
Overdue

Citrix NetScaler ADC and Gateway contain an out-of-bounds read vulnerability due to insufficient input validation. This vulnerability can lead to memory overread when the NetScaler is configured as a Gateway (VPN virtual server, ICA Proxy, CVPN, RDP Proxy) OR AAA virtual server.

Citrix NetScaler ADC and Gateway
Due by July 11, 2025
Catalog 2025.07.10

Citrix NetScaler ADC and Gateway Out-of-Bounds Read Vulnerability

Added July 10, 2025 CVE-2025-5777
Overdue

Citrix NetScaler ADC and Gateway contain an out-of-bounds read vulnerability due to insufficient input validation. This vulnerability can lead to memory overread when the NetScaler is configured as a Gateway (VPN virtual server, ICA Proxy, CVPN, RDP Proxy) OR AAA virtual server.

Citrix NetScaler ADC and Gateway
Due by July 11, 2025
Catalog 2025.07.10

Citrix NetScaler ADC and Gateway Out-of-Bounds Read Vulnerability

Added July 10, 2025 CVE-2025-5777
Overdue

Citrix NetScaler ADC and Gateway contain an out-of-bounds read vulnerability due to insufficient input validation. This vulnerability can lead to memory overread when the NetScaler is configured as a Gateway (VPN virtual server, ICA Proxy, CVPN, RDP Proxy) OR AAA virtual server.

Citrix NetScaler ADC and Gateway
Due by July 11, 2025
Catalog 2025.07.14

Citrix NetScaler ADC and Gateway Out-of-Bounds Read Vulnerability

Added July 10, 2025 CVE-2025-5777
Overdue

Citrix NetScaler ADC and Gateway contain an out-of-bounds read vulnerability due to insufficient input validation. This vulnerability can lead to memory overread when the NetScaler is configured as a Gateway (VPN virtual server, ICA Proxy, CVPN, RDP Proxy) OR AAA virtual server.

Citrix NetScaler ADC and Gateway
Due by July 11, 2025
Catalog 2025.07.14

Citrix NetScaler ADC and Gateway Out-of-Bounds Read Vulnerability

Added July 10, 2025 CVE-2025-5777
Overdue

Citrix NetScaler ADC and Gateway contain an out-of-bounds read vulnerability due to insufficient input validation. This vulnerability can lead to memory overread when the NetScaler is configured as a Gateway (VPN virtual server, ICA Proxy, CVPN, RDP Proxy) OR AAA virtual server.

Citrix NetScaler ADC and Gateway
Due by July 11, 2025
Catalog 2025.07.14

Citrix NetScaler ADC and Gateway Out-of-Bounds Read Vulnerability

Added July 10, 2025 CVE-2025-5777
Overdue

Citrix NetScaler ADC and Gateway contain an out-of-bounds read vulnerability due to insufficient input validation. This vulnerability can lead to memory overread when the NetScaler is configured as a Gateway (VPN virtual server, ICA Proxy, CVPN, RDP Proxy) OR AAA virtual server.

Citrix NetScaler ADC and Gateway
Due by July 11, 2025
Catalog 2025.07.14

Citrix NetScaler ADC and Gateway Out-of-Bounds Read Vulnerability

Added July 10, 2025 CVE-2025-5777
Overdue

Citrix NetScaler ADC and Gateway contain an out-of-bounds read vulnerability due to insufficient input validation. This vulnerability can lead to memory overread when the NetScaler is configured as a Gateway (VPN virtual server, ICA Proxy, CVPN, RDP Proxy) OR AAA virtual server.

Citrix NetScaler ADC and Gateway
Due by July 11, 2025
Catalog 2025.07.18

Citrix NetScaler ADC and Gateway Out-of-Bounds Read Vulnerability

Added July 10, 2025 CVE-2025-5777
Overdue

Citrix NetScaler ADC and Gateway contain an out-of-bounds read vulnerability due to insufficient input validation. This vulnerability can lead to memory overread when the NetScaler is configured as a Gateway (VPN virtual server, ICA Proxy, CVPN, RDP Proxy) OR AAA virtual server.

Citrix NetScaler ADC and Gateway
Due by July 11, 2025
Catalog 2025.07.18

Citrix NetScaler ADC and Gateway Out-of-Bounds Read Vulnerability

Added July 10, 2025 CVE-2025-5777
Overdue

Citrix NetScaler ADC and Gateway contain an out-of-bounds read vulnerability due to insufficient input validation. This vulnerability can lead to memory overread when the NetScaler is configured as a Gateway (VPN virtual server, ICA Proxy, CVPN, RDP Proxy) OR AAA virtual server.

Citrix NetScaler ADC and Gateway
Due by July 11, 2025
Catalog 2025.07.20

Citrix NetScaler ADC and Gateway Out-of-Bounds Read Vulnerability

Added July 10, 2025 CVE-2025-5777
Overdue

Citrix NetScaler ADC and Gateway contain an out-of-bounds read vulnerability due to insufficient input validation. This vulnerability can lead to memory overread when the NetScaler is configured as a Gateway (VPN virtual server, ICA Proxy, CVPN, RDP Proxy) OR AAA virtual server.

Citrix NetScaler ADC and Gateway
Due by July 11, 2025
Catalog 2025.07.20

Citrix NetScaler ADC and Gateway Out-of-Bounds Read Vulnerability

Added July 10, 2025 CVE-2025-5777
Overdue

Citrix NetScaler ADC and Gateway contain an out-of-bounds read vulnerability due to insufficient input validation. This vulnerability can lead to memory overread when the NetScaler is configured as a Gateway (VPN virtual server, ICA Proxy, CVPN, RDP Proxy) OR AAA virtual server.

Citrix NetScaler ADC and Gateway
Due by July 11, 2025
Catalog 2025.07.22

Citrix NetScaler ADC and Gateway Out-of-Bounds Read Vulnerability

Added July 10, 2025 CVE-2025-5777
Overdue

Citrix NetScaler ADC and Gateway contain an out-of-bounds read vulnerability due to insufficient input validation. This vulnerability can lead to memory overread when the NetScaler is configured as a Gateway (VPN virtual server, ICA Proxy, CVPN, RDP Proxy) OR AAA virtual server.

Citrix NetScaler ADC and Gateway
Due by July 11, 2025
Catalog 2025.07.22

Citrix NetScaler ADC and Gateway Out-of-Bounds Read Vulnerability

Added July 10, 2025 CVE-2025-5777
Overdue

Citrix NetScaler ADC and Gateway contain an out-of-bounds read vulnerability due to insufficient input validation. This vulnerability can lead to memory overread when the NetScaler is configured as a Gateway (VPN virtual server, ICA Proxy, CVPN, RDP Proxy) OR AAA virtual server.

Citrix NetScaler ADC and Gateway
Due by July 11, 2025
Catalog 2025.07.24

Synacor Zimbra Collaboration Suite (ZCS) Server-Side Request Forgery (SSRF) Vulnerability

Added July 7, 2025 CVE-2019-9621
Due Soon

Synacor Zimbra Collaboration Suite (ZCS) contains a server-side request forgery (SSRF) vulnerability via the ProxyServlet component.

Synacor Zimbra Collaboration Suite (ZCS)
Due by July 28, 2025
Catalog 2025.07.07

Rails Ruby on Rails Path Traversal Vulnerability

Added July 7, 2025 CVE-2019-5418
Due Soon

Rails Ruby on Rails contains a path traversal vulnerability in Action View. Specially crafted accept headers in combination with calls to `render file:` can cause arbitrary files on the target server to be rendered, disclosing the file contents.

Rails Ruby on Rails
Due by July 28, 2025
Catalog 2025.07.07

PHPMailer Command Injection Vulnerability

Added July 7, 2025 CVE-2016-10033
Due Soon

PHPMailer contains a command injection vulnerability because it fails to sanitize user-supplied input. Specifically, this issue affects the 'mail()' function of 'class.phpmailer.php' script. An attacker can exploit this issue to execute arbitrary code within the context of the application. Failed exploit attempts will result in a denial-of-service condition.

PHP PHPMailer
Due by July 28, 2025
Catalog 2025.07.07

Multi-Router Looking Glass (MRLG) Buffer Overflow Vulnerability

Added July 7, 2025 CVE-2014-3931
Due Soon

Multi-Router Looking Glass (MRLG) contains a buffer overflow vulnerability that could allow remote attackers to cause an arbitrary memory write and memory corruption.

Looking Glass Multi-Router Looking Glass (MRLG)
Due by July 28, 2025
Catalog 2025.07.07