Latest CVE Feed
-
9.3
HIGHCVE-2008-3919
Unspecified vulnerability in multiple JustSystems Ichitaro products allows remote attackers to execute arbitrary code via a crafted JTD document, as exploited in the wild in August 2008.... Read more
Affected Products : ichitaro- EPSS Score: %6.46
- Published: Sep. 04, 2008
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2008-3957
The Microsoft Windows Image Acquisition Logger ActiveX control allows remote attackers to force the download of arbitrary files onto a client system via a URL in the first argument to the Open method, in conjunction with a full destination pathname in the... Read more
Affected Products : windows_image_acquisition_logger- EPSS Score: %33.27
- Published: Sep. 11, 2008
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2008-3961
Multiple unspecified vulnerabilities in Adobe Illustrator CS2 on Macintosh allow user-assisted attackers to execute arbitrary code via a crafted AI file.... Read more
Affected Products : illustrator- EPSS Score: %3.48
- Published: Sep. 18, 2008
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2008-4116
Buffer overflow in Apple QuickTime 7.5.5 and iTunes 8.0 allows remote attackers to cause a denial of service (browser crash) or possibly execute arbitrary code via a long type attribute in a quicktime tag (1) on a web page or embedded in a (2) .mp4 or (3)... Read more
- EPSS Score: %9.68
- Published: Sep. 18, 2008
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2008-4132
Stack-based buffer overflow in the VSFlexGrid.VSFlexGridL ActiveX control in ComponentOne VSFlexGrid 7.0.1.151 and 8.0.20072.239 allows remote attackers to execute arbitrary code via a long first argument to the Archive method. NOTE: the provenance of th... Read more
Affected Products : vsflexgrid- EPSS Score: %4.78
- Published: Sep. 19, 2008
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2008-4396
Stack-based buffer overflow in Safer Networking FileAlyzer 1.6.0.0 and 1.6.0.4 beta, and possibly other versions, allows user-assisted remote attackers to execute arbitrary code via an executable with malformed version data.... Read more
Affected Products : filealyzer- EPSS Score: %4.21
- Published: Oct. 02, 2008
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2008-4434
Stack-based buffer overflow in (1) uTorrent 1.7.7 build 8179 and earlier and (2) BitTorrent 6.0.3 build 8642 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long Created By field in a .tor... Read more
- EPSS Score: %22.29
- Published: Oct. 03, 2008
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2008-4547
Heap-based buffer overflow in the PdvrAtl.PdvrOcx.1 ActiveX control (pdvratl.dll) in DVRHOST Web CMS OCX 1.0.1.25 allows remote attackers to execute arbitrary code via a long second argument to the TimeSpanFormat method.... Read more
Affected Products : dvrstation_cms- EPSS Score: %12.37
- Published: Oct. 14, 2008
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2008-4719
PHP remote file inclusion vulnerability in cms/classes/openengine/filepool.php in openEngine 2.0 beta2, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the oe_classpath parameter, a different vector tha... Read more
Affected Products : openengine- EPSS Score: %1.01
- Published: Oct. 23, 2008
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2008-4922
Buffer overflow in the DjVu ActiveX Control 3.0 for Microsoft Office (DjVu_ActiveX_MSOffice.dll) allows remote attackers to execute arbitrary code via a long (1) ImageURL property, and possibly the (2) Mode, (3) Page, or (4) Zoom properties.... Read more
- EPSS Score: %67.09
- Published: Nov. 04, 2008
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2008-5089
Multiple insecure method vulnerabilities in the DDActiveReportsViewer2.ARViewer2 ActiveX control (arview2.ocx) in Data Dynamics ActiveReports 2.5.0.1314 allow remote attackers to overwrite arbitrary files via a call to the (1) Pages.Save, (2) PrintReport,... Read more
Affected Products : activereports- EPSS Score: %0.86
- Published: Nov. 14, 2008
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2008-5167
PHP remote file inclusion vulnerability in layout/default/params.php in Boonex Orca 2.0 and 2.0.2, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the gConf[dir][layouts] parameter.... Read more
Affected Products : orca- EPSS Score: %1.52
- Published: Nov. 19, 2008
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2008-4391
Stack-based buffer overflow in the SetSource method in the NetCamPlayerWeb11gv2 ActiveX control in NetCamPlayerWeb11gv2.ocx on the Cisco Linksys WVC54GC wireless video camera before firmware 1.25 allows remote attackers to execute arbitrary code via long ... Read more
Affected Products : wvc54gc- EPSS Score: %5.23
- Published: Dec. 09, 2008
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2008-5406
Stack-based buffer overflow in Apple QuickTime Player 7.5.5 and iTunes 8.0.2.20 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a MOV file with "long arguments," related to an "off by one ov... Read more
- EPSS Score: %6.12
- Published: Dec. 10, 2008
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2008-5409
Unspecified vulnerability in the pdf.xmd module in (1) BitDefender Free Edition 10 and Antivirus Standard 10, (2) BullGuard Internet Security 8.5, and (3) Software602 Groupware Server 6.0.08.1118 allows remote attackers to cause a denial of service (appli... Read more
- EPSS Score: %21.88
- Published: Dec. 10, 2008
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2008-5492
Heap-based buffer overflow in the PDFVIEW.PdfviewCtrl.1 ActiveX control in pdfview.ocx 2.0.0.1 in VeryDOC PDF Viewer OCX Control allows remote attackers to execute arbitrary code via a long first argument to the OpenPDF method. NOTE: some of these detail... Read more
Affected Products : verydoc_pdf_viewer- EPSS Score: %70.18
- Published: Dec. 12, 2008
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2008-5521
Avira AntiVir 7.9.0.36 and possibly 7.8.1.28, when Internet Explorer 6 or 7 is used, allows remote attackers to bypass detection of malware in an HTML document by placing an MZ header (aka "EXE info") at the beginning, and modifying the filename to have (... Read more
- EPSS Score: %0.29
- Published: Dec. 12, 2008
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2008-5523
avast! antivirus 4.8.1281.0, when Internet Explorer 6 or 7 is used, allows remote attackers to bypass detection of malware in an HTML document by placing an MZ header (aka "EXE info") at the beginning, and modifying the filename to have (1) no extension, ... Read more
- EPSS Score: %0.31
- Published: Dec. 12, 2008
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2008-5526
DrWeb Anti-virus 4.44.0.09170, when Internet Explorer 6 or 7 is used, allows remote attackers to bypass detection of malware in an HTML document by placing an MZ header (aka "EXE info") at the beginning, and modifying the filename to have (1) no extension... Read more
- EPSS Score: %0.31
- Published: Dec. 12, 2008
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2008-5531
Fortinet Antivirus 3.113.0.0, when Internet Explorer 6 or 7 is used, allows remote attackers to bypass detection of malware in an HTML document by placing an MZ header (aka "EXE info") at the beginning, and modifying the filename to have (1) no extension,... Read more
- EPSS Score: %0.31
- Published: Dec. 12, 2008
- Modified: Apr. 09, 2025