Latest CVE Feed
-
9.3
HIGHCVE-2010-1932
Heap-based buffer overflow in XnView 1.97.4 and possibly earlier allows remote attackers to execute arbitrary code via a MultiBitMap (MBM) file with a Paint Data Section that contains a malformed Encoding field.... Read more
Affected Products : xnview- EPSS Score: %10.42
- Published: Jun. 16, 2010
- Modified: Apr. 11, 2025
-
9.3
HIGHCVE-2010-2329
Buffer overflow in Rosoft Audio Converter 4.4.4 allows remote attackers to execute arbitrary code via a long playlist entry in a .m3u file.... Read more
Affected Products : rosoft_audio_converter- EPSS Score: %13.27
- Published: Jun. 18, 2010
- Modified: Apr. 11, 2025
-
9.3
HIGHCVE-2010-2440
Stack-based buffer overflow in st-wizard.exe in Subtitle Translation Wizard 3.0 allows user-assisted remote attackers to execute arbitrary code via a crafted SRT file with a long line after a time range. NOTE: some of these details are obtained from thir... Read more
Affected Products : subtitle_translation_wizard- EPSS Score: %7.91
- Published: Jun. 24, 2010
- Modified: Apr. 11, 2025
-
9.3
HIGHCVE-2009-4962
Stack-based buffer overflow in Fat Player 0.6b allows remote attackers to execute arbitrary code via a long string in a .wav file. NOTE: some of these details are obtained from third party information.... Read more
Affected Products : fat_player- EPSS Score: %69.33
- Published: Jul. 28, 2010
- Modified: Apr. 11, 2025
-
9.3
HIGHCVE-2009-4964
Stack-based buffer overflow in KSP 2006 FINAL allows remote attackers to execute arbitrary code via a long string in a .M3U playlist file.... Read more
Affected Products : ksp_sound_player- EPSS Score: %5.82
- Published: Jul. 28, 2010
- Modified: Apr. 11, 2025
-
9.3
HIGHCVE-2010-2860
The EMC Celerra Network Attached Storage (NAS) appliance accepts external network traffic to IP addresses intended for an intranet network within the appliance, which allows remote attackers to read, create, or modify arbitrary files in the user data dire... Read more
Affected Products : celerra_network_attached_storage- EPSS Score: %10.02
- Published: Aug. 05, 2010
- Modified: Apr. 11, 2025
-
9.3
HIGHCVE-2010-2932
Buffer overflow in BarCodeWiz BarCode 3.29 ActiveX control (BarcodeWiz.dll) allows remote attackers to execute arbitrary code via a long argument to the LoadProperties method.... Read more
Affected Products : barcode_activex_control- EPSS Score: %24.26
- Published: Aug. 05, 2010
- Modified: Apr. 11, 2025
-
9.3
HIGHCVE-2010-3096
Directory traversal vulnerability in SoftX FTP Client 3.3 and possibly earlier allows remote FTP servers to write arbitrary files via "..\" (dot dot backslash) sequences in a filename.... Read more
Affected Products : ftp_client- EPSS Score: %0.17
- Published: Aug. 20, 2010
- Modified: Apr. 11, 2025
-
9.3
HIGHCVE-2010-3103
Directory traversal vulnerability in FTPGetter Team FTPGetter 3.51.0.05, and probably earlier versions, allows remote FTP servers to write arbitrary files via a "..\" (dot dot backslash) in a filename.... Read more
Affected Products : ftpgetter- EPSS Score: %0.15
- Published: Aug. 21, 2010
- Modified: Apr. 11, 2025
-
9.3
HIGHCVE-2010-3125
Untrusted search path vulnerability in TeamMate Audit Management Software Suite 8.0 patch 2 allows local users, and possibly remote attackers, to execute arbitrary code and conduct DLL hijacking attacks via a Trojan horse mfc71enu.dll that is located in t... Read more
Affected Products : teammate_audit_management_software_suite- EPSS Score: %1.67
- Published: Aug. 26, 2010
- Modified: Apr. 11, 2025
-
9.3
HIGHCVE-2010-3141
Untrusted search path vulnerability in Microsoft PowerPoint 2010 allows local users, and possibly remote attackers, to execute arbitrary code and conduct DLL hijacking attacks via a Trojan horse pptimpconv.dll that is located in the same folder as a .odp,... Read more
Affected Products : powerpoint- EPSS Score: %5.89
- Published: Aug. 27, 2010
- Modified: Apr. 11, 2025
-
9.3
HIGHCVE-2010-3149
Untrusted search path vulnerability in Adobe Device Central CS5 3.0.0(376), 3.0.1.0 (3027), and probably other versions allows local users, and possibly remote attackers, to execute arbitrary code and conduct DLL hijacking attacks via a Trojan horse qtcf.... Read more
Affected Products : device_central_cs5- EPSS Score: %4.17
- Published: Aug. 27, 2010
- Modified: Apr. 11, 2025
-
9.3
HIGHCVE-2010-3191
Untrusted search path vulnerability in Adobe Captivate 5.0.0.596, and possibly other versions, allows local users, and possibly remote attackers, to execute arbitrary code and conduct DLL hijacking attacks via a Trojan horse dwmapi.dll that is located in ... Read more
Affected Products : captivate- EPSS Score: %6.24
- Published: Aug. 31, 2010
- Modified: Apr. 11, 2025
-
9.3
HIGHCVE-2010-3402
Untrusted search path vulnerability in IDM Computer Solutions UltraEdit 16.20.0.1009, 16.10.0.1036, and probably other versions allows local users, and possibly remote attackers, to execute arbitrary code and conduct DLL hijacking attacks via a Trojan hor... Read more
- EPSS Score: %2.72
- Published: Sep. 16, 2010
- Modified: Apr. 11, 2025
-
9.3
HIGHCVE-2010-3403
Untrusted search path vulnerability in Qualcomm eXtensible Diagnostic Monitor (QXDM) 03.09.19 allows local users, and possibly remote attackers, to execute arbitrary code and conduct DLL hijacking attacks via a Trojan horse mfc71enu.dll that is located in... Read more
Affected Products : extensible_diagnostic_monitor- EPSS Score: %2.00
- Published: Sep. 16, 2010
- Modified: Apr. 11, 2025
-
9.3
HIGHCVE-2010-4095
Directory traversal vulnerability in the FTP client in Serengeti Systems Incorporated Robo-FTP 3.7.3, and probably other versions before 3.7.5, allows remote FTP servers to write arbitrary files via a .. (dot dot) in a filename in a server response.... Read more
Affected Products : robo-ftp- EPSS Score: %0.39
- Published: Oct. 26, 2010
- Modified: Apr. 11, 2025
-
9.3
HIGHCVE-2010-4154
Directory traversal vulnerability in Rhino Software, Inc. FTP Voyager 15.2.0.11, and possibly earlier, allows remote FTP servers to write arbitrary files via a "..\" (dot dot backslash) in a filename.... Read more
Affected Products : ftp_voyager- EPSS Score: %0.51
- Published: Nov. 03, 2010
- Modified: Apr. 11, 2025
-
9.3
HIGHCVE-2010-4588
The WBEMSingleView.ocx ActiveX control 1.50.1131.0 in Microsoft WMI Administrative Tools 1.1 and earlier allows remote attackers to execute arbitrary code via a crafted argument to the ReleaseContext method, a different vector than CVE-2010-3973, possibly... Read more
Affected Products : wmi_administrative_tools- EPSS Score: %73.59
- Published: Dec. 23, 2010
- Modified: Apr. 11, 2025
-
9.3
HIGHCVE-2010-3044
Multiple buffer overflows in the Cisco WebEx Recording Format (WRF) and Advanced Recording Format (ARF) Players T27LB before SP21 EP3 and T27LC before SP22 allow remote attackers to cause a denial of service (application crash) or possibly execute arbitra... Read more
- EPSS Score: %10.94
- Published: Feb. 02, 2011
- Modified: Apr. 11, 2025
-
9.3
HIGHCVE-2011-0912
Argument injection vulnerability in IBM Lotus Notes 8.0.x before 8.0.2 FP6 and 8.5.x before 8.5.1 FP5 allows remote attackers to execute arbitrary code via a cai:// URL containing a --launcher.library option that specifies a UNC share pathname for a DLL f... Read more
- EPSS Score: %1.71
- Published: Feb. 08, 2011
- Modified: Apr. 11, 2025