Latest CVE Feed
-
9.3
HIGHCVE-2015-6621
SystemUI in Android 5.x before 5.1.1 LMY48Z and 6.0 before 2015-12-01 allows attackers to gain privileges via a crafted application, as demonstrated by obtaining Signature or SignatureOrSystem access, aka internal bug 23909438.... Read more
Affected Products : android- EPSS Score: %0.16
- Published: Dec. 08, 2015
- Modified: Apr. 12, 2025
-
9.3
HIGHCVE-2015-6637
The MediaTek misc-sd driver in Android before 5.1.1 LMY49F and 6.0 before 2016-01-01 allows attackers to gain privileges via a crafted application, aka internal bug 25307013.... Read more
Affected Products : android- EPSS Score: %0.07
- Published: Jan. 06, 2016
- Modified: Apr. 12, 2025
-
9.3
HIGHCVE-2009-1260
Multiple stack-based buffer overflows in UltraISO 9.3.3.2685 and earlier allow remote attackers to cause a denial of service (crash) or execute arbitrary code via a crafted (1) CCD or (2) IMG file.... Read more
Affected Products : ultraiso- EPSS Score: %74.52
- Published: Apr. 07, 2009
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2007-0509
Multiple unspecified vulnerabilities in MaklerPlus before 1.2 have unknown impact and attack vectors, possibly relating to cross-site scripting (XSS) in the slogan parameter in main.tpl, or information leaks in error messages.... Read more
Affected Products : maklerplus- EPSS Score: %0.64
- Published: Jan. 26, 2007
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2010-2434
Buffer overflow in Arcext.dll 2.16.1 and earlier in pon software Explzh 5.62 and earlier allows remote attackers to execute arbitrary code via an LZH LHA file with a crafted header that is not properly handled during expansion.... Read more
Affected Products : explzh- EPSS Score: %6.80
- Published: Jun. 25, 2010
- Modified: Apr. 11, 2025
-
9.3
HIGHCVE-2012-4865
Buffer overflow in Oreans Themida 2.1.8.0 allows remote attackers to execute arbitrary code via a crafted .TMD file.... Read more
Affected Products : themida- EPSS Score: %28.76
- Published: Sep. 06, 2012
- Modified: Apr. 11, 2025
-
9.3
HIGHCVE-2010-2590
Heap-based buffer overflow in the CrystalReports12.CrystalPrintControl.1 ActiveX control in PrintControl.dll 12.3.2.753 in SAP Crystal Reports 2008 SP3 Fix Pack 3.2 allows remote attackers to execute arbitrary code via a long ServerResourceVersion propert... Read more
Affected Products : crystal_reports- EPSS Score: %71.78
- Published: Dec. 22, 2010
- Modified: Apr. 11, 2025
-
9.3
HIGHCVE-2007-3210
Stack-based buffer overflow in nptoken.mox in the Cellosoft Tokens Object 2.0.0.6 extension for Vitalize! allows remote attackers to execute arbitrary code via a long string argument to the RemoveChr method. NOTE: the provenance of this information is un... Read more
Affected Products : cellosoft_tokens_object- EPSS Score: %4.14
- Published: Jun. 14, 2007
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2007-2864
Stack-based buffer overflow in the Anti-Virus engine before content update 30.6 in multiple CA (formerly Computer Associates) products allows remote attackers to execute arbitrary code via a large invalid value of the coffFiles field in a .CAB file.... Read more
- EPSS Score: %79.93
- Published: Jun. 06, 2007
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2010-3155
Untrusted search path vulnerability in Adobe ExtendScript Toolkit (ESTK) CS5 3.5.0.52 allows local users, and possibly remote attackers, to execute arbitrary code and conduct DLL hijacking attacks via a Trojan horse dwmapi.dll that is located in the same ... Read more
Affected Products : extendedscript_toolkit_cs5- EPSS Score: %3.34
- Published: Aug. 27, 2010
- Modified: Apr. 11, 2025
-
9.3
HIGHCVE-2010-3150
Untrusted search path vulnerability in Adobe Premier Pro CS4 4.0.0 (314 (MC: 160820)) allows local users, and possibly remote attackers, to execute arbitrary code and conduct DLL hijacking attacks via a Trojan horse ibfs32.dll that is located in the same ... Read more
Affected Products : premier_pro_cs4- EPSS Score: %3.48
- Published: Aug. 27, 2010
- Modified: Apr. 11, 2025
-
9.3
HIGHCVE-2016-1894
NetApp OnCommand Workflow Automation before 3.1P2 allows remote attackers to bypass authentication via unspecified vectors.... Read more
Affected Products : oncommand_workflow_automation- EPSS Score: %0.41
- Published: Feb. 07, 2017
- Modified: Apr. 20, 2025
-
9.3
HIGHCVE-2012-5360
Libavcodec in FFmpeg before 0.11 allows remote attackers to execute arbitrary code via a crafted QT file.... Read more
Affected Products : ffmpeg- EPSS Score: %0.79
- Published: Feb. 08, 2018
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2010-2974
Stack-based buffer overflow in the IConfigurationAccess interface in the Invensys Wonderware Archestra ConfigurationAccessComponent ActiveX control in Wonderware Application Server (WAS) before 3.1 SP2 P01, as used in the Wonderware Archestra Integrated D... Read more
- EPSS Score: %5.27
- Published: Aug. 05, 2010
- Modified: Apr. 11, 2025
-
9.3
CRITICALCVE-2024-49305
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in WPFactory Email Verification for WooCommerce allows SQL Injection.This issue affects Email Verification for WooCommerce: from n/a through 2.8.10.... Read more
Affected Products : customer_email_verification_for_woocommerce- Published: Oct. 17, 2024
- Modified: Oct. 18, 2024
-
9.3
HIGHCVE-2020-1458
A remote code execution vulnerability exists when Microsoft Office improperly validates input before loading dynamic link library (DLL) files, aka 'Microsoft Office Remote Code Execution Vulnerability'.... Read more
Affected Products : 365_apps- EPSS Score: %8.87
- Published: Jul. 14, 2020
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2009-1328
Stack-based buffer overflow in Mini-stream RM-MP3 Converter 3.0.0.7 allows remote attackers to execute arbitrary code via a long URI in a playlist (.m3u) file.... Read more
Affected Products : rm-mp3_converter- EPSS Score: %10.09
- Published: Apr. 17, 2009
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2017-13162
An elevation of privilege vulnerability in the kernel binder. Product: Android. Versions: Android kernel. Android ID A-64216036.... Read more
Affected Products : android- EPSS Score: %0.04
- Published: Dec. 06, 2017
- Modified: Apr. 20, 2025
-
9.3
HIGHCVE-2013-5021
Multiple absolute path traversal vulnerabilities in National Instruments cwui.ocx, as used in National Instruments LabWindows/CVI 2012 SP1 and earlier, National Instruments LabVIEW 2012 SP1 and earlier, the Data Analysis component in ABB DataManager 1 thr... Read more
- EPSS Score: %0.74
- Published: Aug. 06, 2013
- Modified: Apr. 11, 2025
-
9.3
HIGHCVE-2013-5026
An ActiveX control in lookout650.ocx, lookout660.ocx, and lookout670.ocx in National Instruments Lookout 6.5 through 6.7 allows remote attackers to execute arbitrary code by triggering the download of, and calls to, an arbitrary DLL file.... Read more
Affected Products : lookout- EPSS Score: %4.42
- Published: Aug. 06, 2013
- Modified: Apr. 11, 2025