Latest CVE Feed
-
9.8
CRITICALCVE-2019-0230
Apache Struts 2.0.0 to 2.5.20 forced double OGNL evaluation, when evaluated on raw user input in tag attributes, may lead to remote code execution.... Read more
- EPSS Score: %93.84
- Published: Sep. 14, 2020
- Modified: Nov. 21, 2024
-
9.8
CRITICALCVE-2019-0002
On EX2300 and EX3400 series, stateless firewall filter configuration that uses the action 'policer' in combination with other actions might not take effect. When this issue occurs, the output of the command: show pfe filter hw summary will not show the en... Read more
- EPSS Score: %0.35
- Published: Jan. 15, 2019
- Modified: Nov. 21, 2024
-
9.8
CRITICALCVE-2018-8793
rdesktop versions up to and including v1.8.3 contain a Heap-Based Buffer Overflow in function cssp_read_tsrequest() that results in a memory corruption and probably even a remote code execution.... Read more
- EPSS Score: %8.10
- Published: Feb. 05, 2019
- Modified: Nov. 21, 2024
-
9.8
CRITICALCVE-2016-9924
Zimbra Collaboration Suite (ZCS) before 8.7.4 allows remote attackers to conduct XML External Entity (XXE) attacks.... Read more
Affected Products : zimbra_collaboration_suite- EPSS Score: %1.76
- Published: Mar. 29, 2017
- Modified: Apr. 20, 2025
-
9.8
CRITICALCVE-2016-9865
An issue was discovered in phpMyAdmin. Due to a bug in serialized string parsing, it was possible to bypass the protection offered by PMA_safeUnserialize() function. All 4.6.x versions (prior to 4.6.5), 4.4.x versions (prior to 4.4.15.9), and 4.0.x versio... Read more
Affected Products : phpmyadmin- EPSS Score: %0.66
- Published: Dec. 11, 2016
- Modified: Apr. 12, 2025
-
9.8
CRITICALCVE-2016-9877
An issue was discovered in Pivotal RabbitMQ 3.x before 3.5.8 and 3.6.x before 3.6.6 and RabbitMQ for PCF 1.5.x before 1.5.20, 1.6.x before 1.6.12, and 1.7.x before 1.7.7. MQTT (MQ Telemetry Transport) connection authentication with a username/password pai... Read more
- EPSS Score: %0.33
- Published: Dec. 29, 2016
- Modified: Apr. 12, 2025
-
9.8
CRITICALCVE-2018-7554
There is an invalid free in ReadImage in input-bmp.ci that leads to a Segmentation fault in sam2p 0.49.4. A crafted input will lead to a denial of service or possibly unspecified other impact.... Read more
- EPSS Score: %0.60
- Published: Feb. 28, 2018
- Modified: Nov. 21, 2024
-
9.8
CRITICALCVE-2016-9836
The file scanning mechanism of JFilterInput::isFileSafe() in Joomla! CMS before 3.6.5 does not consider alternative PHP file extensions when checking uploaded files for PHP content, which enables a user to upload and execute files with the `.php6`, `.php7... Read more
Affected Products : joomla\!- EPSS Score: %0.37
- Published: Dec. 05, 2016
- Modified: Apr. 12, 2025
-
9.8
CRITICALCVE-2024-40782
A use-after-free issue was addressed with improved memory management. This issue is fixed in iOS 16.7.9 and iPadOS 16.7.9, Safari 17.6, iOS 17.6 and iPadOS 17.6, watchOS 10.6, tvOS 17.6, visionOS 1.3, macOS Sonoma 14.6. Processing maliciously crafted web ... Read more
- Published: Jul. 29, 2024
- Modified: Dec. 10, 2024
-
9.8
CRITICALCVE-2024-40766
An improper access control vulnerability has been identified in the SonicWall SonicOS management access, potentially leading to unauthorized resource access and in specific conditions, causing the firewall to crash. This issue affects SonicWall Firewall G... Read more
Affected Products : sonicos nsa_2700 nsa_3700 nsa_4700 nsa_5700 nsa_6700 nssp_10700 nssp_11700 nssp_13700 tz270 +42 more products- Actively Exploited
- Published: Aug. 23, 2024
- Modified: Sep. 16, 2024
-
9.8
CRITICALCVE-2024-40762
Use of Cryptographically Weak Pseudo-Random Number Generator (PRNG) in the SonicOS SSLVPN authentication token generator that, in certain cases, can be predicted by an attacker potentially resulting in authentication bypass.... Read more
Affected Products : sonicos- Published: Jan. 09, 2025
- Modified: Jan. 09, 2025
- Vuln Type: Cryptography
-
9.8
CRITICALCVE-2024-40765
An Integer-based buffer overflow vulnerability in the SonicOS via IPSec allows a remote attacker in specific conditions to cause Denial of Service (DoS) and potentially execute arbitrary code by sending a specially crafted IKEv2 payload.... Read more
Affected Products : sonicos- Published: Jan. 09, 2025
- Modified: Jan. 09, 2025
- Vuln Type: Denial of Service
-
9.8
CRITICALCVE-2018-5206
When the channel topic is set without specifying a sender, Irssi before 1.0.6 may dereference a NULL pointer.... Read more
- EPSS Score: %0.58
- Published: Jan. 06, 2018
- Modified: Nov. 21, 2024
-
9.8
CRITICALCVE-2016-9679
Citrix Provisioning Services before 7.12 allows attackers to execute arbitrary code by overwriting a function pointer.... Read more
Affected Products : provisioning_services- EPSS Score: %3.77
- Published: Jan. 18, 2017
- Modified: Apr. 20, 2025
-
9.8
CRITICALCVE-2024-40624
TorrentPier is an open source BitTorrent Public/Private tracker engine, written in php. In `torrentpier/library/includes/functions.php`, `get_tracks()` uses the unsafe native PHP serialization format to deserialize user-controlled cookies. One can use php... Read more
Affected Products : torrentpier- Published: Jul. 15, 2024
- Modified: Nov. 21, 2024
-
9.8
CRITICALCVE-2016-9565
MagpieRSS, as used in the front-end component in Nagios Core before 4.2.2 might allow remote attackers to read or write to arbitrary files by spoofing a crafted response from the Nagios RSS feed server. NOTE: this vulnerability exists because of an incom... Read more
Affected Products : nagios- EPSS Score: %21.87
- Published: Dec. 15, 2016
- Modified: Apr. 12, 2025
-
9.8
CRITICALCVE-2018-20749
LibVNC before 0.9.12 contains a heap out-of-bounds write vulnerability in libvncserver/rfbserver.c. The fix for CVE-2018-15127 was incomplete.... Read more
- EPSS Score: %8.18
- Published: Jan. 30, 2019
- Modified: Nov. 21, 2024
-
9.8
CRITICALCVE-2024-40540
my-springsecurity-plus before v2024.07.03 was discovered to contain a SQL injection vulnerability via the dataScope parameter at /api/dept.... Read more
Affected Products : my-springsecurity-plus- Published: Jul. 12, 2024
- Modified: Nov. 21, 2024
-
9.8
CRITICALCVE-2024-40541
my-springsecurity-plus before v2024.07.03 was discovered to contain a SQL injection vulnerability via the dataScope parameter at /api/dept/build.... Read more
Affected Products : my-springsecurity-plus- Published: Jul. 12, 2024
- Modified: Nov. 21, 2024
-
9.8
CRITICALCVE-2016-9537
tools/tiffcrop.c in libtiff 4.0.6 has out-of-bounds write vulnerabilities in buffers. Reported as MSVR 35093, MSVR 35096, and MSVR 35097.... Read more
Affected Products : libtiff- EPSS Score: %0.42
- Published: Nov. 22, 2016
- Modified: Apr. 12, 2025