Vulnerability index

Browse CVEs

16 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Monox CRITICAL 9.8
CVE-2020-12471

MonoX through 5.1.40.5152 allows remote code execution via HTML5Upload.ashx or Pages/SocialNetworking/lng/en-US/PhotoGallery.aspx because of deserial…

Fix: after 5.1.40.5152
Fix from $2,300 2020-04-29
Monox HIGH 7.2
CVE-2020-12470

MonoX through 5.1.40.5152 allows administrators to execute arbitrary code by modifying an ASPX template.

Fix: after 5.1.40.5152
Fix from $1,950 2020-04-29
Monox HIGH 7.2
CVE-2020-12473

MonoX through 5.1.40.5152 allows admins to execute arbitrary programs by reconfiguring the Converter Executable setting from ffmpeg.exe to a differen…

Fix: after 5.1.40.5152
Fix from $1,950 2020-04-29
Monox MEDIUM 5.4
CVE-2020-12472

MonoX through 5.1.40.5152 allows stored XSS via User Status, Blog Comments, or Blog Description.

Fix: after 5.1.40.5152
Fix from $1,600 2020-04-29
Mono MEDIUM 6.8
CVE-2011-0991

Use-after-free vulnerability in Mono, when Moonlight 2.x before 2.4.1 or 3.x before 3.99.3 is used, allows remote attackers to cause a denial of serv…

Patch available
Fix from $1,600 2011-04-13
Mono MEDIUM 5.8
CVE-2011-0989

The RuntimeHelpers.InitializeArray method in metadata/icall.c in Mono, when Moonlight 2.x before 2.4.1 or 3.x before 3.99.3 is used, does not properl…

Patch available
Fix from $1,600 2011-04-13
Mono MEDIUM 5.8
CVE-2011-0990

Race condition in the FastCopy optimization in the Array.Copy method in metadata/icall.c in Mono, when Moonlight 2.x before 2.4.1 or 3.x before 3.99.…

Patch available
Fix from $1,600 2011-04-13
Mono MEDIUM 5.8
CVE-2011-0992

Use-after-free vulnerability in Mono, when Moonlight 2.x before 2.4.1 or 3.x before 3.99.3 is used, allows remote attackers to cause a denial of serv…

Patch available
Fix from $1,600 2011-04-13
Mono MEDIUM 5.0
CVE-2010-4225

Unspecified vulnerability in the mod_mono module for XSP in Mono 2.8.x before 2.8.2 allows remote attackers to obtain the source code for .aspx (ASP.…

Mitigation only
Fix from $1,600 2011-01-11
Mono HIGH 7.5
CVE-2010-4254EPSS 14%

Mono, when Moonlight before 2.3.0.1 or 2.99.x before 2.99.0.10 is used, does not properly validate arguments to generic methods, which allows remote …

Fix: after 2.3.0
Fix from $1,950 2010-12-06
Mono MEDIUM 6.9
CVE-2010-4159

Untrusted search path vulnerability in metadata/loader.c in Mono 2.8 and earlier allows local users to gain privileges via a Trojan horse shared libr…

Fix: after 2.6.7
Fix from $1,600 2010-11-17
Mono HIGH 7.5
CVE-2007-5197

Buffer overflow in the Mono.Math.BigInteger class in Mono 1.2.5.1 and earlier allows context-dependent attackers to execute arbitrary code via unspec…

Fix: after 1.2.5.1
Fix from $1,950 2007-11-02
Mono MEDIUM 5.0
CVE-2007-5473

StaticFileHandler.cs in System.Web in Mono before 1.2.5.2, when running on Windows, allows remote attackers to obtain source code of sensitive files …

Fix: after 1.2.5.1
Fix from $1,600 2007-10-18
Xsp MEDIUM 5.0
CVE-2006-6104EPSS 5%

The System.Web class in the XSP for ASP.NET server 1.1 through 2.0 in Mono does not properly verify local pathnames, which allows remote attackers to…

Patch available
Fix from $1,600 2006-12-21
Mono MEDIUM 6.2
CVE-2006-5072

The System.CodeDom.Compiler classes in Novell Mono create temporary files with insecure permissions, which allows local users to overwrite arbitrary …

Patch available
Fix from $1,600 2006-10-10
Xsp MEDIUM 5.0
CVE-2006-2658

Directory traversal vulnerability in the xsp component in mod_mono in Mono/C# web server, as used in SUSE Open-Enterprise-Server 1 and SUSE Linux 9.2…

Mitigation only
Fix from $1,600 2006-09-12