Latest CVE Feed
-
9.3
HIGHCVE-2008-3207
PHP remote file inclusion vulnerability in cms/modules/form.lib.php in Pragyan CMS 2.6.2, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the (1) sourceFolder or (2) moduleFolder parameter.... Read more
Affected Products : praygan_cms- EPSS Score: %3.73
- Published: Jul. 18, 2008
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2008-3239
Unrestricted file upload vulnerability in the writeLogEntry function in system/v_cron_proc.php in PHPizabi 0.848b C1 HFP1, when register_globals is enabled, allows remote attackers to upload and execute arbitrary code via a filename in the CONF[CRON_LOGFI... Read more
Affected Products : phpizabi- EPSS Score: %5.56
- Published: Jul. 21, 2008
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2007-2952
Multiple stack-based buffer overflows in the filter service (aka k9filter.exe) in Blue Coat K9 Web Protection 3.2.44 with Filter 3.2.32 allow (1) remote attackers to execute arbitrary code via a long HTTP Referer header to the K9 Web Protection Administra... Read more
- EPSS Score: %18.32
- Published: Aug. 01, 2008
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2008-3733
Stack-based buffer overflow in EO Video (eo-video) 1.36 allows remote attackers to cause a denial of service (application crash) or execute arbitrary code via a .eop (aka playlist) file with a ProjectElement element that contains a long Name element.... Read more
Affected Products : eo-video- EPSS Score: %19.32
- Published: Aug. 20, 2008
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2008-3877
Stack-based buffer overflow in Acoustica Mixcraft 4.1 Build 96 and 4.2 Build 98 allows user-assisted attackers to execute arbitrary code via a crafted .mx4 file. NOTE: it was later reported that version 3 is also affected.... Read more
Affected Products : mixcraft- EPSS Score: %22.52
- Published: Sep. 02, 2008
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2008-3919
Unspecified vulnerability in multiple JustSystems Ichitaro products allows remote attackers to execute arbitrary code via a crafted JTD document, as exploited in the wild in August 2008.... Read more
Affected Products : ichitaro- EPSS Score: %5.81
- Published: Sep. 04, 2008
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2008-3957
The Microsoft Windows Image Acquisition Logger ActiveX control allows remote attackers to force the download of arbitrary files onto a client system via a URL in the first argument to the Open method, in conjunction with a full destination pathname in the... Read more
Affected Products : windows_image_acquisition_logger- EPSS Score: %33.27
- Published: Sep. 11, 2008
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2008-3961
Multiple unspecified vulnerabilities in Adobe Illustrator CS2 on Macintosh allow user-assisted attackers to execute arbitrary code via a crafted AI file.... Read more
Affected Products : illustrator- EPSS Score: %3.48
- Published: Sep. 18, 2008
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2008-4116
Buffer overflow in Apple QuickTime 7.5.5 and iTunes 8.0 allows remote attackers to cause a denial of service (browser crash) or possibly execute arbitrary code via a long type attribute in a quicktime tag (1) on a web page or embedded in a (2) .mp4 or (3)... Read more
- EPSS Score: %9.68
- Published: Sep. 18, 2008
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2008-4132
Stack-based buffer overflow in the VSFlexGrid.VSFlexGridL ActiveX control in ComponentOne VSFlexGrid 7.0.1.151 and 8.0.20072.239 allows remote attackers to execute arbitrary code via a long first argument to the Archive method. NOTE: the provenance of th... Read more
Affected Products : vsflexgrid- EPSS Score: %4.78
- Published: Sep. 19, 2008
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2008-4396
Stack-based buffer overflow in Safer Networking FileAlyzer 1.6.0.0 and 1.6.0.4 beta, and possibly other versions, allows user-assisted remote attackers to execute arbitrary code via an executable with malformed version data.... Read more
Affected Products : filealyzer- EPSS Score: %4.21
- Published: Oct. 02, 2008
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2008-4434
Stack-based buffer overflow in (1) uTorrent 1.7.7 build 8179 and earlier and (2) BitTorrent 6.0.3 build 8642 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long Created By field in a .tor... Read more
- EPSS Score: %22.29
- Published: Oct. 03, 2008
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2008-4547
Heap-based buffer overflow in the PdvrAtl.PdvrOcx.1 ActiveX control (pdvratl.dll) in DVRHOST Web CMS OCX 1.0.1.25 allows remote attackers to execute arbitrary code via a long second argument to the TimeSpanFormat method.... Read more
Affected Products : dvrstation_cms- EPSS Score: %12.37
- Published: Oct. 14, 2008
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2008-4719
PHP remote file inclusion vulnerability in cms/classes/openengine/filepool.php in openEngine 2.0 beta2, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the oe_classpath parameter, a different vector tha... Read more
Affected Products : openengine- EPSS Score: %1.01
- Published: Oct. 23, 2008
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2008-4922
Buffer overflow in the DjVu ActiveX Control 3.0 for Microsoft Office (DjVu_ActiveX_MSOffice.dll) allows remote attackers to execute arbitrary code via a long (1) ImageURL property, and possibly the (2) Mode, (3) Page, or (4) Zoom properties.... Read more
- EPSS Score: %67.09
- Published: Nov. 04, 2008
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2008-5089
Multiple insecure method vulnerabilities in the DDActiveReportsViewer2.ARViewer2 ActiveX control (arview2.ocx) in Data Dynamics ActiveReports 2.5.0.1314 allow remote attackers to overwrite arbitrary files via a call to the (1) Pages.Save, (2) PrintReport,... Read more
Affected Products : activereports- EPSS Score: %0.86
- Published: Nov. 14, 2008
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2008-5167
PHP remote file inclusion vulnerability in layout/default/params.php in Boonex Orca 2.0 and 2.0.2, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the gConf[dir][layouts] parameter.... Read more
Affected Products : orca- EPSS Score: %1.52
- Published: Nov. 19, 2008
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2008-4391
Stack-based buffer overflow in the SetSource method in the NetCamPlayerWeb11gv2 ActiveX control in NetCamPlayerWeb11gv2.ocx on the Cisco Linksys WVC54GC wireless video camera before firmware 1.25 allows remote attackers to execute arbitrary code via long ... Read more
Affected Products : wvc54gc- EPSS Score: %5.23
- Published: Dec. 09, 2008
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2008-5406
Stack-based buffer overflow in Apple QuickTime Player 7.5.5 and iTunes 8.0.2.20 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a MOV file with "long arguments," related to an "off by one ov... Read more
- EPSS Score: %6.12
- Published: Dec. 10, 2008
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2008-5409
Unspecified vulnerability in the pdf.xmd module in (1) BitDefender Free Edition 10 and Antivirus Standard 10, (2) BullGuard Internet Security 8.5, and (3) Software602 Groupware Server 6.0.08.1118 allows remote attackers to cause a denial of service (appli... Read more
- EPSS Score: %21.88
- Published: Dec. 10, 2008
- Modified: Apr. 09, 2025