Latest CVE Feed
-
10.0
HIGHCVE-2018-16144
The test connection functionality in the NetAudit section of Opsview Monitor before 5.3.1 and 5.4.x before 5.4.2 is vulnerable to command injection due to improper sanitization of the rancid_password parameter.... Read more
Affected Products : opsview- EPSS Score: %25.38
- Published: Sep. 05, 2018
- Modified: Nov. 21, 2024
-
10.0
HIGHCVE-2021-40119
A vulnerability in the key-based SSH authentication mechanism of Cisco Policy Suite could allow an unauthenticated, remote attacker to log in to an affected system as the root user. This vulnerability is due to the re-use of static SSH keys across install... Read more
Affected Products : policy_suite- EPSS Score: %4.36
- Published: Nov. 04, 2021
- Modified: Nov. 21, 2024
-
10.0
HIGHCVE-2017-17968
A buffer overflow vulnerability in NetTransport.exe in NetTransport Download Manager 2.96L and earlier could allow remote HTTP servers to execute arbitrary code on NAS devices via a long HTTP response.... Read more
Affected Products : nettransport_download_manager- EPSS Score: %54.59
- Published: Dec. 29, 2017
- Modified: Apr. 20, 2025
-
10.0
HIGHCVE-2003-0731
CiscoWorks Common Management Foundation (CMF) 2.1 and earlier allows the guest user to gain administrative privileges via a certain POST request to com.cisco.nm.cmf.servlet.CsAuthServlet, possibly involving the "cmd" parameter with a modifyUser value and ... Read more
- EPSS Score: %0.38
- Published: Oct. 20, 2003
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2011-2288
Unspecified vulnerability in Sun Integrated Lights Out Manager (ILOM) in SysFW 8.1.0.a and earlier for various Oracle SPARC T3, SPARC Netra T3, Sun Blade, and Sun Fire servers allows remote attackers to affect confidentiality, integrity, and availability,... Read more
Affected Products : sysfw netra_sparc_t3-1 sparc_t3-1 sparc_t3-1b sparc_t3-4 netra_sparc_t3-1b sparc_t3-2- EPSS Score: %2.18
- Published: Jul. 21, 2011
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2015-0545
EMC Unisphere for VMAX 8.x before 8.0.3.4 sets up the Java Debugging Wire Protocol (JDWP) service, which allows remote attackers to execute arbitrary code via unspecified vectors.... Read more
Affected Products : unisphere- EPSS Score: %4.70
- Published: Jun. 29, 2015
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2020-15431
This vulnerability allows remote attackers to execute arbitrary code on affected installations of CentOS Web Panel cwp-e17.0.9.8.923. Authentication is not required to exploit this vulnerability. The specific flaw exists within ajax_crons.php. When parsin... Read more
Affected Products : webpanel- EPSS Score: %2.07
- Published: Jul. 28, 2020
- Modified: Nov. 21, 2024
-
10.0
HIGHCVE-2021-4039
A command injection vulnerability in the web interface of the Zyxel NWA-1100-NH firmware could allow an attacker to execute arbitrary OS commands on the device.... Read more
- EPSS Score: %80.64
- Published: Mar. 01, 2022
- Modified: Nov. 21, 2024
-
10.0
HIGHCVE-2002-1854
Rlaj whois CGI script (whois.cgi) 1.0 allows remote attackers to execute arbitrary commands via shell metacharacters in the domain name field.... Read more
Affected Products : rlaj_whois- EPSS Score: %2.32
- Published: Dec. 31, 2002
- Modified: Apr. 03, 2025
-
10.0
CRITICALCVE-2024-23614
A buffer overflow vulnerability exists in Symantec Messaging Gateway versions 9.5 and before. A remote, anonymous attacker can exploit this vulnerability to achieve remote code execution as root. ... Read more
Affected Products : symantec_messaging_gateway- EPSS Score: %2.13
- Published: Jan. 26, 2024
- Modified: Nov. 21, 2024
-
10.0
HIGHCVE-2014-0603
The rftpcom.dll ActiveX control in Attachmate Reflection FTP Client before 14.1.429 allows remote attackers to cause a denial of service (memory corruption) and execute arbitrary code via vectors related to the (1) GetGlobalSettings or (2) GetSiteProperti... Read more
Affected Products : reflection_ftp_client- EPSS Score: %11.38
- Published: Feb. 06, 2015
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2017-18139
In Android before security patch level 2018-04-05 on Qualcomm Snapdragon Mobile and Snapdragon Wear MDM9206, MDM9607, MDM9635M, MDM9640, MDM9645, MDM9650, MDM9655, MSM8909W, SD 210/SD 212/SD 205, SD 400, SD 410/12, SD 425, SD 430, SD 450, SD 615/16/SD 415... Read more
Affected Products : android sd_450_firmware sd_625_firmware sd_820_firmware sd_835_firmware mdm9650_firmware msm8909w_firmware mdm9206_firmware mdm9607_firmware mdm9635m_firmware +51 more products- EPSS Score: %0.23
- Published: Apr. 11, 2018
- Modified: Nov. 21, 2024
-
10.0
HIGHCVE-2010-2978
Cisco Unified Wireless Network (UWN) Solution 7.x before 7.0.98.0 does not use an adequate message-digest algorithm for a self-signed certificate, which allows remote attackers to bypass intended access restrictions via vectors involving collisions, aka B... Read more
Affected Products : unified_wireless_network_solution_software- EPSS Score: %0.27
- Published: Aug. 10, 2010
- Modified: Apr. 11, 2025
-
10.0
CRITICALCVE-2015-7919
SearchBlox 8.3 before 8.3.1 allows remote attackers to write to the config file, and consequently cause a denial of service (application crash), via unspecified vectors.... Read more
Affected Products : searchblox- EPSS Score: %0.57
- Published: Dec. 21, 2015
- Modified: Apr. 12, 2025
-
10.0
CRITICALCVE-2023-23656
Unrestricted Upload of File with Dangerous Type vulnerability in MainWP MainWP File Uploader Extension.This issue affects MainWP File Uploader Extension: from n/a through 4.1. ... Read more
Affected Products :- Published: Mar. 26, 2024
- Modified: Nov. 21, 2024
-
10.0
HIGHCVE-2000-0706
Buffer overflows in ntop running in web mode allows remote attackers to execute arbitrary commands.... Read more
Affected Products : ntop- EPSS Score: %6.01
- Published: Oct. 20, 2000
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2014-3059
Unspecified vulnerability in the Administrative Console on the IBM WebSphere DataPower XC10 appliance 2.5 allows remote attackers to obtain administrative privileges by leveraging access to an eXtreme Scale distributed ObjectGrid network.... Read more
- EPSS Score: %2.40
- Published: Oct. 02, 2014
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2009-2460
Multiple stack-based buffer overflows in mathtex.cgi in mathTeX, when downloaded before 20090713, have unspecified impact and remote attack vectors.... Read more
Affected Products : mathtex- EPSS Score: %1.04
- Published: Jul. 14, 2009
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2000-1241
Unspecified vulnerability in Haakon Nilsen simple, integrated publishing system (SIPS) before 0.2.4 has an unknown impact and attack vectors, related to a "grave security fault."... Read more
Affected Products : sips- EPSS Score: %0.39
- Published: Dec. 31, 2000
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2018-12668
SV3C L-SERIES HD CAMERA V2.3.4.2103-S50-NTD-B20170508B and V2.3.4.2103-S50-NTD-B20170823B devices have a Hard-coded Password.... Read more
Affected Products : h.264_poe_ip_camera_firmware sv-b01poe-1080p-l sv-b11vpoe-1080p-l sv-d02poe-1080p-l- EPSS Score: %0.80
- Published: Oct. 19, 2018
- Modified: Nov. 21, 2024