66.39.67.45

Regular View Raw Data
Last Seen: 2024-05-21
Tags:
starttls

GeneralInformation

Hostnames aaem.org
pairserver.com
mail.pairserver.com
westjem.org
www.westjem.org
Domains aaem.org pairserver.com westjem.org 
Country United States
City Pittsburgh
Organization pair Networks
ISP pair Networks
ASN AS7859

WebTechnologies

Miscellaneous
Tag managers
UI frameworks
Widgets

Vulnerabilities

Note: the device may not be impacted by all of these issues. The vulnerabilities are implied based on the software and version.

CVE-2023-51767 OpenSSH through 9.6, when common types of DRAM are used, might allow row hammer attacks (for authentication bypass) because the integer value of authenticated in mm_answer_authpassword does not resist flips of a single bit. NOTE: this is applicable to a certain threat model of attacker-victim co-location in which the attacker has user privileges.
CVE-2020-11023 4.3In jQuery versions greater than or equal to 1.0.3 and before 3.5.0, passing HTML containing <option> elements from untrusted sources - even after sanitizing it - to one of jQuery's DOM manipulation methods (i.e. .html(), .append(), and others) may execute untrusted code. This problem is patched in jQuery 3.5.0.
CVE-2020-11022 4.3In jQuery versions greater than or equal to 1.2 and before 3.5.0, passing HTML from untrusted sources - even after sanitizing it - to one of jQuery's DOM manipulation methods (i.e. .html(), .append(), and others) may execute untrusted code. This problem is patched in jQuery 3.5.0.
CVE-2019-11358 4.3jQuery before 3.4.0, as used in Drupal, Backdrop CMS, and other products, mishandles jQuery.extend(true, {}, ...) because of Object.prototype pollution. If an unsanitized source object contained an enumerable __proto__ property, it could extend the native Object.prototype.
CVE-2018-14042 4.3In Bootstrap before 4.1.2, XSS is possible in the data-container property of tooltip.
CVE-2018-14041 4.3In Bootstrap before 4.1.2, XSS is possible in the data-target property of scrollspy.
CVE-2018-14040 4.3In Bootstrap before 4.1.2, XSS is possible in the collapse data-parent attribute.
CVE-2016-10735 4.3In Bootstrap 3.x before 3.4.0 and 4.x-beta before 4.0.0-beta.2, XSS is possible in the data-target attribute, a different vulnerability than CVE-2018-14041.
CVE-2008-3844 9.3Certain Red Hat Enterprise Linux (RHEL) 4 and 5 packages for OpenSSH, as signed in August 2008 using a legitimate Red Hat GPG key, contain an externally introduced modification (Trojan Horse) that allows the package authors to have an unknown impact. NOTE: since the malicious packages were not distributed from any official Red Hat sources, the scope of this issue is restricted to users who may have obtained these packages through unofficial distribution points. As of 20080827, no unofficial distributions of this software are known.
CVE-2007-2768 4.3OpenSSH, when using OPIE (One-Time Passwords in Everything) for PAM, allows remote attackers to determine the existence of certain user accounts, which displays a different response if the user account exists and is configured to use one-time passwords (OTP), a similar issue to CVE-2007-2243.
-1181694832 | 2024-05-16T02:36:18.891300
  
21 / tcp
-496536033 | 2024-05-13T04:39:34.663474
  
22 / tcp
277349602 | 2024-05-16T06:01:29.155112
  
25 / tcp
-1898718067 | 2024-05-21T01:02:08.873065
  
26 / tcp
727386696 | 2024-05-20T14:39:32.768805
  
80 / tcp
-481466123 | 2024-05-16T05:36:24.270414
  
110 / tcp
-1921434939 | 2024-05-20T23:02:34.383031
  
143 / tcp
-985386780 | 2024-05-21T09:40:18.562735
  
443 / tcp
1180718078 | 2024-05-11T21:11:24.263601
  
465 / tcp
-95654080 | 2024-05-09T09:14:12.140075
  
587 / tcp
1505986360 | 2024-05-09T17:29:34.310666
  
993 / tcp
-1001764030 | 2024-05-20T18:41:28.842295
  
995 / tcp



Contact Us

Shodan ® - All rights reserved