Latest CVE Feed
-
9.3
HIGHCVE-2009-1028
Stack-based buffer overflow in ediSys eZip Wizard 3.0 allows remote attackers to execute arbitrary code via a crafted .zip file.... Read more
Affected Products : ezip_wizard- EPSS Score: %67.09
- Published: Mar. 20, 2009
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2009-1040
Buffer overflow in WinAsm Studio 5.1.5.0 allows user-assisted remote attackers to execute arbitrary code via a crafted project (.wap) file.... Read more
Affected Products : winasm_studio- EPSS Score: %8.51
- Published: Mar. 20, 2009
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2009-1054
Unspecified vulnerability in JustSystems Ichitaro 13, 2004 through 2008, Lite2, and Ichitaro viewer 5.1.5.0 and earlier allows remote attackers to execute arbitrary code via a crafted file, as exploited in the wild by Trojan.Tarodrop.H in March 2009.... Read more
- EPSS Score: %6.46
- Published: Mar. 24, 2009
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2009-1092
Use-after-free vulnerability in the LIVEAUDIO.LiveAudioCtrl.1 ActiveX control in LIVEAU~1.OCX 7.0 for GeoVision DVR systems allows remote attackers to execute arbitrary code by calling the GetAudioPlayingTime method with certain arguments.... Read more
Affected Products : liveaudio_activex_control- EPSS Score: %5.49
- Published: Mar. 25, 2009
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2008-6563
Buffer overflow in the XML parser in Trillian 3.1.9.0, and possibly earlier, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted DTD file.... Read more
Affected Products : trillian- EPSS Score: %7.49
- Published: Mar. 31, 2009
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2008-6583
Buffer overflow in BS.player 2.27 build 959 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long string in a .SRT file.... Read more
Affected Products : bs.player- EPSS Score: %5.44
- Published: Apr. 03, 2009
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2017-13249
In impeg2d_api_set_display_frame of impeg2d_api_main.c, there is an out of bound write due to a missing bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is needed for exploitation. Pro... Read more
Affected Products : android- EPSS Score: %0.21
- Published: Apr. 04, 2018
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2009-1329
Stack-based buffer overflow in Mini-stream Shadow Stream Recorder 3.0.1.7 allows remote attackers to execute arbitrary code via a long URI in a playlist (.m3u) file.... Read more
Affected Products : shadow_stream_recorder- EPSS Score: %9.71
- Published: Apr. 17, 2009
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2009-1437
Stack-based buffer overflow in PortableApps CoolPlayer Portable (aka CoolPlayer+ Portable) 2.19.6 and earlier allows remote attackers to execute arbitrary code via a long string in a malformed playlist (.m3u) file. NOTE: this may overlap CVE-2008-3408.... Read more
Affected Products : coolplayer- EPSS Score: %9.71
- Published: Apr. 27, 2009
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2009-1449
Stack-based buffer overflow in PortableApps CoolPlayer Portable (aka CoolPlayer+ Portable) 2.19.1 allows remote attackers to execute arbitrary code via a skin file (skin.ini) with a large PlaylistSkin parameter. NOTE: this may overlap CVE-2008-5735.... Read more
Affected Products : coolplayer- EPSS Score: %6.89
- Published: Apr. 27, 2009
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2009-1497
Stack-based buffer overflow in srt2smi.exe in Gretech Online Movie Player (GOM Player) 2.1.16.4635 allows remote attackers to cause a denial of service (crash) or execute arbitrary code via a long string in an SRT file.... Read more
Affected Products : gom_player- EPSS Score: %10.90
- Published: May. 01, 2009
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2009-0194
The domain-locking implementation in the GARMINAXCONTROL.GarminAxControl_t.1 ActiveX control in npGarmin.dll in the Garmin Communicator Plug-In 2.6.4.0 does not properly enforce the restrictions that (1) download and (2) upload requests come from a web si... Read more
Affected Products : garmin_communicator_plugin- EPSS Score: %1.32
- Published: May. 11, 2009
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2009-1600
Apple Safari executes DOM calls in response to a javascript: URI in the target attribute of a submit element within a form contained in an inline PDF file, which might allow remote attackers to bypass intended Adobe Acrobat JavaScript restrictions on acce... Read more
- EPSS Score: %0.24
- Published: May. 11, 2009
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2009-1606
Multiple stack-based and heap-based buffer overflows in Dafolo DafoloControl ActiveX control (DafoloFFControl.dll) 1.108.6.195 allow remote attackers to execute arbitrary code via long (1) baseurl, (2) kommune, (3) felter, (4) afdeling, (5) Flags, (6) Hel... Read more
Affected Products : dafolocontrol- EPSS Score: %12.89
- Published: May. 11, 2009
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2009-1647
Heap-based buffer overflow in popcorn.exe in Ultrafunk Popcorn 1.87 allows remote POP3 servers to cause a denial of service (application crash) via a long string in a +OK response. NOTE: some of these details are obtained from third party information.... Read more
Affected Products : popcorn- EPSS Score: %3.46
- Published: May. 15, 2009
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2009-1660
Stack-based buffer overflow in URUWorks ViPlay3 3.0 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long file entry in a .vpl file.... Read more
Affected Products : viplay3- EPSS Score: %5.93
- Published: May. 18, 2009
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2009-1672
The Deployment Toolkit ActiveX control in deploytk.dll 6.0.130.3 in Sun Java SE Runtime Environment (aka JRE) 6 Update 13 allows remote attackers to (1) execute arbitrary code via a .jnlp URL in the argument to the launch method, and might allow remote at... Read more
Affected Products : jre- EPSS Score: %7.28
- Published: May. 18, 2009
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2009-1740
Multiple heap-based buffer overflows in the D-Link MPEG4 Viewer ActiveX Control (csviewer.ocx) 2.11.918.2006 allow remote attackers to execute arbitrary code via a long argument to the (1) SetFilePath and (2) SetClientCookie methods. NOTE: the provenance... Read more
Affected Products : mpeg4_viewer_activex_control- EPSS Score: %2.92
- Published: May. 20, 2009
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2009-1807
Unspecified vulnerability in Config.dll in Baofeng products 3.09.04.17 and earlier allows remote attackers to execute arbitrary code by calling the SetAttributeValue method, as exploited in the wild in April and May 2009.... Read more
Affected Products : storm- EPSS Score: %3.46
- Published: May. 28, 2009
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2009-1944
Stack-based buffer overflow in AIMP 2.51 build 330 allows remote attackers to execute arbitrary code via an MP3 file with a long ID3 tag.... Read more
Affected Products : aimp- EPSS Score: %8.91
- Published: Jun. 05, 2009
- Modified: Apr. 09, 2025