Latest CVE Feed
-
10.0
HIGHCVE-2008-2161
Buffer overflow in TFTP Server SP 1.4 and 1.5 on Windows, and possibly other versions, allows remote attackers to execute arbitrary code via a long TFTP error packet. NOTE: some of these details are obtained from third party information.... Read more
- EPSS Score: %78.90
- Published: May. 12, 2008
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2008-2192
Static code injection vulnerability in box/minichat/boxpop.php in IT!CMS (aka itcms) 1.9 allows remote attackers to inject arbitrary PHP code into box/MiniChat/data/shouts.php via the shout parameter.... Read more
Affected Products : itcms- EPSS Score: %4.25
- Published: May. 14, 2008
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2005-3465
Unspecified vulnerability in JDEdwards HTML Server in Oracle EnterpriseOne 8.94 OneWorld XE up to 8.95_B1, 8.94_Q1, and SP23_K1 has unknown impact and attack vectors, as identified by Oracle Vuln# JDE01.... Read more
- EPSS Score: %3.42
- Published: Nov. 02, 2005
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2002-0537
The admin.html file in StepWeb Search Engine (SWS) 2.5 stores passwords in links to manager.pl, which allows remote attackers who can access the admin.html file to gain administrative privileges to SWS.... Read more
Affected Products : sws- EPSS Score: %1.27
- Published: Jul. 03, 2002
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2020-3691
Possible out of bound memory access in audio due to integer underflow while processing modified contents in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile... Read more
- EPSS Score: %0.33
- Published: Jan. 21, 2021
- Modified: Nov. 21, 2024
-
10.0
HIGHCVE-2007-1796
Multiple unspecified vulnerabilities in JCcorp URLshrink before 1.3.2 have unspecified attack vectors and impact.... Read more
Affected Products : urlshrink- EPSS Score: %0.33
- Published: Apr. 02, 2007
- Modified: Apr. 09, 2025
-
10.0
CRITICALCVE-2015-7426
The Data Protection extension in the VMware GUI in IBM Tivoli Storage Manager for Virtual Environments: Data Protection for VMware (aka Spectrum Protect for Virtual Environments) 7.1 before 7.1.3.0 and Tivoli Storage FlashCopy Manager for VMware (aka Spec... Read more
- EPSS Score: %2.73
- Published: Jan. 02, 2016
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2013-1592
A Buffer Overflow vulnerability exists in the Message Server service _MsJ2EE_AddStatistics() function when sending specially crafted SAP Message Server packets to remote TCP ports 36NN and/or 39NN in SAP NetWeaver 2004s, 7.01 SR1, 7.02 SP06, and 7.30 SP04... Read more
Affected Products : netweaver- EPSS Score: %68.89
- Published: Jan. 23, 2020
- Modified: Nov. 21, 2024
-
10.0
HIGHCVE-2014-0605
Directory traversal vulnerability in the rftpcom.dll ActiveX control in Attachmate Reflection FTP Client before 14.1.429 allows remote attackers to execute arbitrary code via unspecified vectors to the SaveSettings method.... Read more
Affected Products : reflection_ftp_client- EPSS Score: %9.02
- Published: Feb. 06, 2015
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2017-18134
In Android before security patch level 2018-04-05 on Qualcomm Snapdragon Mobile SD 845, SD 850, a buffer overflow may potentially occur while processing a response from the SIM card.... Read more
- EPSS Score: %0.23
- Published: Apr. 11, 2018
- Modified: Nov. 21, 2024
-
10.0
HIGHCVE-2017-18137
In Android before security patch level 2018-04-05 on Qualcomm Snapdragon Mobile MDM9640, MDM9645, MDM9650, MDM9655, SD 450, SD 625, SD 650/52, SD 810, SD 820, SD 835, while processing the IPv6 pdp address of the pdp context, a buffer overflow can occur.... Read more
Affected Products : android sd_450_firmware sd_625_firmware sd_820_firmware sd_835_firmware mdm9650_firmware mdm9640_firmware mdm9645_firmware mdm9655_firmware sd_650_firmware +13 more products- EPSS Score: %0.23
- Published: Apr. 11, 2018
- Modified: Nov. 21, 2024
-
10.0
HIGHCVE-2007-1867
Buffer overflow in IrfanView 3.99 allows remote attackers to execute arbitrary code via a crafted animated cursor (ANI) file.... Read more
Affected Products : irfanview- EPSS Score: %28.30
- Published: Apr. 04, 2007
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2017-18160
AGPS session failure in GNSS module due to cyphersuites are hardcoded and needed manual update everytime in snapdragon mobile and snapdragon wear in versions MDM9635M, MDM9645, MDM9650, MDM9655, MSM8909W, SD 835, SD 845, SD 850... Read more
Affected Products : android sd_835_firmware mdm9650_firmware msm8909w_firmware mdm9635m_firmware mdm9645_firmware mdm9655_firmware sd_845_firmware sd_850_firmware mdm9635m +7 more products- EPSS Score: %0.22
- Published: Jan. 18, 2019
- Modified: Nov. 21, 2024
-
10.0
HIGHCVE-2010-3761
Unspecified vulnerability in IBM Tivoli Storage Manager (TSM) FastBack 5.5.0.0 through 5.5.6.0 and 6.1.0.0 through 6.1.0.1 allows remote attackers to execute arbitrary code via unknown vectors, aka ZDI-CAN-700. NOTE: this might overlap CVE-2010-3058 or C... Read more
Affected Products : tivoli_storage_manager_fastback- EPSS Score: %9.23
- Published: Oct. 05, 2010
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2007-2053
Multiple stack-based buffer overflows in AFFLIB before 2.2.6 allow remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via (1) a long LastModified value in an S3 XML response in lib/s3.cpp; (2) a long (a) path or (b) b... Read more
Affected Products : afflib- EPSS Score: %14.87
- Published: Apr. 30, 2007
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2011-0918
Stack-based buffer overflow in the NRouter (aka Router) service in IBM Lotus Domino allows remote attackers to execute arbitrary code via long filenames associated with Content-ID and ATTACH:CID headers in attachments in malformed calendar-request e-mail ... Read more
Affected Products : lotus_domino- EPSS Score: %10.61
- Published: Feb. 08, 2011
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2021-1916
Possible buffer underflow due to lack of check for negative indices values when processing user provided input in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon ... Read more
Affected Products : aqt1000_firmware qca6390_firmware qca6391_firmware qca6420_firmware qca6426_firmware qca6430_firmware qca6436_firmware qca6574au_firmware qca6595au_firmware qca6696_firmware +354 more products- EPSS Score: %0.24
- Published: Sep. 08, 2021
- Modified: Nov. 21, 2024
-
10.0
HIGHCVE-2014-10057
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile MDM9615, MDM9625, MDM9635M, MDM9640, MDM9650, SD 210/SD 212/SD 205, SD 400, SD 425, SD 430, SD 435, SD 617, SD 625, and Snapdragon_High_Med_2016, binary Calibration... Read more
Affected Products : android sd_625_firmware mdm9650_firmware mdm9635m_firmware mdm9640_firmware mdm9615_firmware mdm9625_firmware sd_210_firmware sd_212_firmware sd_205_firmware +19 more products- EPSS Score: %0.16
- Published: Apr. 18, 2018
- Modified: Nov. 21, 2024
-
10.0
HIGHCVE-2017-5219
An issue was discovered in SageCRM 7.x before 7.3 SP3. The Component Manager functionality, provided by SageCRM, permits additional components to be added to the application to enhance provided functionality. This functionality allows a zip file to be upl... Read more
Affected Products : sagecrm- EPSS Score: %4.03
- Published: Feb. 02, 2017
- Modified: Apr. 20, 2025