Latest CVE Feed
-
10.0
HIGHCVE-2012-1712
Directory traversal vulnerability in the Liferay component in Oracle Sun GlassFish Web Space Server before 10.0 Update 7 Patch 2 has unknown impact and attack vectors.... Read more
Affected Products : glassfish_web_space_server10.0- EPSS Score: %0.64
- Published: Dec. 21, 2012
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2008-1320
Multiple buffer overflows in ASG-Sentry Network Manager 7.0.0 and earlier allow remote attackers to execute arbitrary code or cause a denial of service (crash) via (1) a long request to FxIAList on TCP port 6162, or (2) an SNMP request with a long communi... Read more
Affected Products : asg-sentry- EPSS Score: %39.00
- Published: Mar. 13, 2008
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2008-1331
cgi-data/FastJSData.cgi in OmniPCX Office with Internet Access services OXO210 before 210/091.001, OXO600 before 610/014.001, and other versions, allows remote attackers to execute arbitrary commands and "obtain OXO resources" via shell metacharacters in ... Read more
- EPSS Score: %60.90
- Published: Apr. 02, 2008
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2017-13229
A remote code execution vulnerability in the Android media framework (n/a). Product: Android. Versions: 7.0, 7.1.1, 7.1.2, 8.0, 8.1. ID: A-68160703.... Read more
Affected Products : android- EPSS Score: %1.32
- Published: Feb. 12, 2018
- Modified: Nov. 21, 2024
-
10.0
HIGHCVE-2015-9127
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile and Snapdragon Wear MSM8909W, SD 210/SD 212/SD 205, SD 400, SD 410/12, SD 615/16/SD 415, and SD 810, possible null pointer dereference occurs due to failure of memo... Read more
Affected Products : android msm8909w_firmware sd_410_firmware sd_412_firmware sd_210_firmware sd_212_firmware sd_205_firmware sd_615_firmware sd_616_firmware sd_415_firmware +13 more products- EPSS Score: %0.27
- Published: Apr. 18, 2018
- Modified: Nov. 21, 2024
-
10.0
HIGHCVE-2008-3553
Multiple unspecified vulnerabilities in Nokia Series 40 3rd edition devices allow remote attackers to execute arbitrary code via unknown vectors, probably related to MIDP privilege escalation and persistent MIDlets, aka "ISSUES 3-10." NOTE: as of 20080807... Read more
- EPSS Score: %5.15
- Published: Aug. 08, 2008
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2015-9204
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile and Snapdragon Wear MSM8909W, SD 210/SD 212/SD 205, SD 410/12, SD 615/16/SD 415, SD 808, and SD 810, if cchFriendlyName is greater than TZ_PR_MAX_NAME_LEN in functi... Read more
Affected Products : android msm8909w_firmware sd_410_firmware sd_412_firmware sd_210_firmware sd_212_firmware sd_205_firmware sd_615_firmware sd_616_firmware sd_415_firmware +13 more products- EPSS Score: %0.22
- Published: Apr. 18, 2018
- Modified: Nov. 21, 2024
-
10.0
HIGHCVE-2015-9215
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile MDM9615, MDM9625, MDM9635M, and SD 810, improper input validation can cause a null pointer dereference in USB bootloader find_ep() function.... Read more
Affected Products : android mdm9635m_firmware mdm9615_firmware mdm9625_firmware sd_810_firmware mdm9615 mdm9625 mdm9635m sd_810- EPSS Score: %0.18
- Published: Apr. 18, 2018
- Modified: Nov. 21, 2024
-
10.0
HIGHCVE-2015-9210
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Automobile, Snapdragon Mobile, and Snapdragon Wear MDM9206, MDM9650, MSM8909W, SD 210/SD 212/SD 205, SD 400, SD 410/12, SD 425, SD 430, SD 450, SD 615/16/SD 415, SD 617, S... Read more
Affected Products : sd_450_firmware sd_625_firmware sd_820_firmware sd_820a_firmware sd_835_firmware mdm9650_firmware msm8909w_firmware mdm9206_firmware sd_410_firmware sd_412_firmware +44 more products- EPSS Score: %0.22
- Published: Apr. 18, 2018
- Modified: Nov. 21, 2024
-
10.0
HIGHCVE-2015-2797
Stack-based buffer overflow in AirTies Air 6372, 5760, 5750, 5650TT, 5453, 5444TT, 5443, 5442, 5343, 5342, 5341, and 5021 DSL modems with firmware 1.0.2.0 and earlier allows remote attackers to execute arbitrary code via a long string in the redirect para... Read more
Affected Products : air_6372 air_firmware air_5021 air_5341 air_5342 air_5343 air_5442 air_5443 air_5444tt air_5453 +3 more products- EPSS Score: %75.78
- Published: Jun. 19, 2015
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2004-1208
Buffer overflow in Orbz 2.10 and earlier allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a long password field in a join request.... Read more
Affected Products : orbz- EPSS Score: %7.87
- Published: Jan. 10, 2005
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2004-1225
SQL injection vulnerability in SugarCRM Sugar Sales before 2.0.1a allows remote attackers to execute arbitrary SQL commands and gain privileges via the record parameter in a DetailView action to index.php, and record parameters in other functionality.... Read more
Affected Products : sugarcrm- EPSS Score: %0.50
- Published: Jan. 10, 2005
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2005-4730
Unspecified vulnerability in PEAR Text_Password 1.0 has unknown impact and attack vectors, related to "problematic seeding" of the random number generator, possibly predictable seeds.... Read more
Affected Products : text_password- EPSS Score: %0.39
- Published: Dec. 31, 2005
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2004-1256
Multiple buffer overflows in the (1) event_text and (2) event_specific functions in abc2midi 2004.12.04 allow remote attackers to execute arbitrary code via crafted ABC files.... Read more
Affected Products : abcmidi- EPSS Score: %7.96
- Published: Jan. 10, 2005
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2004-1262
Buffer overflow in the bsb_open_header function in libbsb for bsb2ppm 0.0.6 allows remote attackers to execute arbitrary code via crafted BSB pictures.... Read more
Affected Products : bsb2ppm- EPSS Score: %3.41
- Published: Jan. 10, 2005
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2004-1261
Multiple buffer overflows in the preparse function in asp2php 0.76.23 allow remote attackers to execute arbitrary code via crafted ASP scripts.... Read more
Affected Products : asp2php- EPSS Score: %6.74
- Published: Jan. 10, 2005
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2008-3150
Directory traversal vulnerability in index.php in Neutrino Atomic Edition 0.8.4 allows remote attackers to read and modify files, as demonstrated by manipulating data/sess.php in (1) usb and (2) del_pag actions. NOTE: this can be leveraged for code execu... Read more
Affected Products : atomic_edition- EPSS Score: %4.86
- Published: Jul. 11, 2008
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2004-1293
Buffer overflow in the ReadFontTbl function in reader.c for rtf2latex2e 1.0fc2 allows remote attackers to execute arbitrary code via a crafted RTF file.... Read more
Affected Products : rtf2latex2e- EPSS Score: %8.64
- Published: Jan. 10, 2005
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2004-1283
Buffer overflow in the Mesh::type method in mesh.c for the mview program in Mesh Viewer 0.2.2 allows remote attackers to execute arbitrary code via crafted mesh files.... Read more
Affected Products : mesh_viewer- EPSS Score: %3.41
- Published: Jan. 10, 2005
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2008-3042
Unspecified vulnerability in the DAM Frontend (dam_frontend) extension 0.1.0 and earlier for TYPO3 has unknown impact and attack vectors related to "Improper Error Handling."... Read more
Affected Products : dam_frontend_extension- EPSS Score: %0.33
- Published: Jul. 07, 2008
- Modified: Apr. 09, 2025