Latest CVE Feed
-
9.3
HIGHCVE-2011-3141
Buffer overflow in the InBatch BatchField ActiveX control for Invensys Wonderware InBatch 8.1 SP1, 9.0, and 9.0 SP1 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via unspecified vectors.... Read more
Affected Products : wonderware_inbatch- EPSS Score: %3.66
- Published: Aug. 16, 2011
- Modified: Apr. 11, 2025
-
9.3
HIGHCVE-2011-2594
Heap-based buffer overflow in KMPlayer 3.0.0.1441, and possibly other versions, allows remote attackers to execute arbitrary code via a playlist (.KPL) file with a long Title field.... Read more
Affected Products : kmplayer- EPSS Score: %7.46
- Published: Sep. 02, 2011
- Modified: Apr. 11, 2025
-
9.3
HIGHCVE-2011-2443
Multiple buffer overflows in Adobe Photoshop Elements 8.0 and earlier allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via a crafted (1) .grd or (2) .abr file, a related issue... Read more
Affected Products : photoshop_elements- EPSS Score: %45.19
- Published: Oct. 04, 2011
- Modified: Apr. 11, 2025
-
9.3
HIGHCVE-2011-4004
Buffer overflow in the ATAS32 processing functionality in the Cisco WebEx Recording Format (WRF) player T26 before SP49 EP40 and T27 before SP28 allows remote attackers to execute arbitrary code via a crafted WRF file.... Read more
Affected Products : webex_recording_format_player- EPSS Score: %3.57
- Published: Oct. 27, 2011
- Modified: Apr. 11, 2025
-
9.3
HIGHCVE-2011-1367
Unspecified vulnerability in the File Load feature in IBM Rational AppScan Standard and Express 7.8.x, 7.9.x, and 8.0.x before 8.0.0.3 allows remote attackers to execute arbitrary commands via a crafted .scan file.... Read more
Affected Products : rational_appscan- EPSS Score: %1.15
- Published: Oct. 30, 2011
- Modified: Apr. 11, 2025
-
9.3
HIGHCVE-2011-4223
Unspecified vulnerability in Investintech.com Absolute PDF Server allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted PDF document.... Read more
Affected Products : absolute_pdf_server- EPSS Score: %2.79
- Published: Nov. 01, 2011
- Modified: Apr. 11, 2025
-
9.3
HIGHCVE-2011-4034
Buffer overflow in the Steema TeeChart ActiveX control, as used in Schneider Electric Vijeo Historian 4.30 and earlier, CitectHistorian 4.30 and earlier, and CitectSCADAReports 4.10 and earlier, allows remote attackers to execute arbitrary code or cause a... Read more
- EPSS Score: %4.42
- Published: Dec. 02, 2011
- Modified: Apr. 11, 2025
-
9.3
HIGHCVE-2011-4854
The Control Panel in Parallels Plesk Panel 10.4.4_build20111103.18 does not ensure that Content-Type HTTP headers match the corresponding Content-Type data in HTML META elements, which might allow remote attackers to have an unspecified impact by leveragi... Read more
- EPSS Score: %0.73
- Published: Dec. 16, 2011
- Modified: Apr. 11, 2025
-
9.3
HIGHCVE-2011-4508
The HMI web server in Siemens WinCC flexible 2004, 2005, 2007, and 2008 before SP3; WinCC V11 (aka TIA portal) before SP2 Update 1; the TP, OP, MP, Comfort Panels, and Mobile Panels SIMATIC HMI panels; WinCC V11 Runtime Advanced; and WinCC flexible Runtim... Read more
Affected Products : simatic_wincc wincc wincc_flexible simatic_hmi_panels wincc_runtime_advanced wincc_flexible_runtime- EPSS Score: %0.19
- Published: Feb. 03, 2012
- Modified: Apr. 11, 2025
-
9.3
HIGHCVE-2012-0736
IBM Rational AppScan Enterprise 5.x and 8.x before 8.5.0.1 does not properly create scan jobs, which allows remote attackers to execute arbitrary code via a crafted web site.... Read more
Affected Products : rational_appscan- EPSS Score: %3.83
- Published: May. 03, 2012
- Modified: Apr. 11, 2025
-
9.3
HIGHCVE-2012-2611
The DiagTraceR3Info function in the Dialog processor in disp+work.exe 7010.29.15.58313 and 7200.70.18.23869 in the Dispatcher in SAP NetWeaver 7.0 EHP1 and EHP2, when a certain Developer Trace configuration is enabled, allows remote attackers to execute a... Read more
Affected Products : netweaver- EPSS Score: %77.66
- Published: May. 15, 2012
- Modified: Apr. 11, 2025
-
9.3
HIGHCVE-2012-3815
Buffer overflow in RunTime.exe in Sielco Sistemi Winlog Pro SCADA before 2.07.18 and Winlog Lite SCADA before 2.07.18 allows remote attackers to execute arbitrary code via a crafted packet to TCP port 46824. NOTE: some of these details are obtained from ... Read more
- EPSS Score: %80.82
- Published: Jun. 27, 2012
- Modified: Apr. 11, 2025
-
9.3
HIGHCVE-2012-4353
Stack-based buffer overflow in RunTime.exe in Sielco Sistemi Winlog Pro SCADA before 2.07.17 and Winlog Lite SCADA before 2.07.17 allows remote attackers to execute arbitrary code via a crafted port-46824 TCP packet that triggers an incorrect file-open at... Read more
- EPSS Score: %13.21
- Published: Aug. 19, 2012
- Modified: Apr. 11, 2025
-
9.3
HIGHCVE-2012-4355
TCPIPS_Story.dll in Sielco Sistemi Winlog Pro SCADA before 2.07.18 and Winlog Lite SCADA before 2.07.18 allows remote attackers to execute arbitrary code via a port-46824 TCP packet with a crafted negative integer after the opcode, triggering incorrect fu... Read more
- EPSS Score: %30.76
- Published: Aug. 19, 2012
- Modified: Apr. 11, 2025
-
9.3
HIGHCVE-2012-4357
Array index error in Sielco Sistemi Winlog Pro SCADA before 2.07.17 and Winlog Lite SCADA before 2.07.17 might allow remote attackers to execute arbitrary code by referencing, within a port-46824 TCP packet, an invalid file-pointer index that leads to exe... Read more
- EPSS Score: %23.45
- Published: Aug. 19, 2012
- Modified: Apr. 11, 2025
-
9.3
HIGHCVE-2012-4358
Sielco Sistemi Winlog Pro SCADA before 2.07.17 and Winlog Lite SCADA before 2.07.17 do not validate the return value of the realloc function, which allows remote attackers to cause a denial of service (invalid 0x00 write operation and daemon crash) or pos... Read more
- EPSS Score: %1.68
- Published: Aug. 19, 2012
- Modified: Apr. 11, 2025
-
9.3
HIGHCVE-2010-5189
Blue Coat ProxySG before SGOS 4.3.4.1, 5.x before SGOS 5.4.5.1, 5.5 before SGOS 5.5.4.1, and 6.x before SGOS 6.1.1.1 allows remote authenticated users to execute arbitrary CLI commands by leveraging read-only administrator privileges and establishing an H... Read more
Affected Products : sgos proxysg proxysg_sg210-10 proxysg_sg210-25 proxysg_sg210-5 proxysg_sg510-10 proxysg_sg510-20 proxysg_sg510-25 proxysg_sg510-5 proxysg_sg810-10 +6 more products- EPSS Score: %0.57
- Published: Aug. 26, 2012
- Modified: Apr. 11, 2025
-
9.3
HIGHCVE-2011-5171
Multiple stack-based buffer overflows in CyberLink Power2Go 7 (build 196) and 8 (build 1031) allow remote attackers to execute arbitrary code via the (1) src and (2) name parameters in a p2g project file.... Read more
Affected Products : power2go- EPSS Score: %59.81
- Published: Sep. 15, 2012
- Modified: Apr. 11, 2025
-
9.3
HIGHCVE-2012-5006
Heap-based buffer overflow in npdjvu.dll in Caminova DjVu Browser Plug-in 6.1.4 Build 27351 and other versions before 6.1.4.27993 allows remote attackers to execute arbitrary code via a crafted Sjbz chunk in a djvu file.... Read more
Affected Products : djvu_browser_plug-in- EPSS Score: %7.85
- Published: Sep. 19, 2012
- Modified: Apr. 11, 2025
-
9.3
HIGHCVE-2012-6422
The kernel in Samsung Galaxy S2, Galaxy Note 2, MEIZU MX, and possibly other Android devices, when running an Exynos 4210 or 4412 processor, uses weak permissions (0666) for /dev/exynos-mem, which allows attackers to read or write arbitrary physical memor... Read more
- EPSS Score: %6.61
- Published: Dec. 18, 2012
- Modified: Apr. 11, 2025