Latest CVE Feed
-
10.0
HIGHCVE-2002-1560
index.php in gBook 1.4 allows remote attackers to bypass authentication and gain administrative privileges by setting the login parameter to true.... Read more
Affected Products : gbook- EPSS Score: %2.36
- Published: Mar. 31, 2003
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2002-2250
Multiple buffer overflows in Sybase Adaptive Server 12.0 and 12.5 allow remote attackers to execute arbitrary code via (1) a long parameter to the xp_freedll extended stored procedure or (2) a long database name argument to the DBCC CHECKVERIFY function.... Read more
Affected Products : adaptive_server- EPSS Score: %16.47
- Published: Dec. 31, 2002
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2003-0280
Multiple buffer overflows in the SMTP Service for ESMTP CMailServer 4.0.2003.03.27 allow remote attackers to execute arbitrary code via long (1) MAIL FROM or (2) RCPT TO commands.... Read more
Affected Products : cmailserver- EPSS Score: %11.16
- Published: Jun. 16, 2003
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2003-0640
BEA WebLogic Server and Express, when using NodeManager to start servers, provides Operator users with privileges to overwrite usernames and passwords, which may allow Operators to gain Admin privileges.... Read more
Affected Products : weblogic_server- EPSS Score: %0.65
- Published: Aug. 27, 2003
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2001-0134
Buffer overflow in cpqlogin.htm in web-enabled agents for various Compaq management software products such as Insight Manager and Management Agents allows remote attackers to execute arbitrary commands via a long user name.... Read more
- EPSS Score: %2.03
- Published: Mar. 12, 2001
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2007-5383
The Thomson/Alcatel SpeedTouch 7G router, as used for the BT Home Hub 6.2.6.B and earlier, allows remote attackers on an intranet to bypass authentication and gain administrative access via vectors including a '/' (slash) character at the end of the PATH_... Read more
- EPSS Score: %1.11
- Published: Oct. 12, 2007
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2007-5657
TIBCO SmartSockets RTserver 6.8.0 and earlier, RTworks before 4.0.4, and Enterprise Message Service (EMS) 4.0.0 through 4.4.1 allows remote attackers to execute arbitrary code via crafted requests containing values that are used as pointer offsets.... Read more
- EPSS Score: %11.47
- Published: Jan. 16, 2008
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2007-5658
Heap-based buffer overflow in TIBCO SmartSockets RTserver 6.8.0 and earlier, RTworks before 4.0.4, and Enterprise Message Service (EMS) 4.0.0 through 4.4.1 allows remote attackers to execute arbitrary code via crafted requests containing size and copy-len... Read more
- EPSS Score: %15.94
- Published: Jan. 16, 2008
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2008-4592
Directory traversal vulnerability in index.php in Sports Clubs Web Panel 0.0.1 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the p parameter.... Read more
Affected Products : sports_clubs_web_portal- EPSS Score: %2.77
- Published: Oct. 16, 2008
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2007-5890
Directory traversal vulnerability in index.php in easyGB 2.1.1 allows remote attackers to include arbitrary files via the DatabaseType parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party inform... Read more
Affected Products : easygb- EPSS Score: %2.80
- Published: Nov. 08, 2007
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2007-6011
Unspecified vulnerability in main.php of BugHotel Reservation System before 4.9.9 P3 allows remote attackers to bypass authentication and gain administrative access via unspecified vectors. NOTE: the provenance of this information is unknown; the details... Read more
Affected Products : bughotel_reservation_system- EPSS Score: %0.60
- Published: Nov. 16, 2007
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2007-6044
Multiple unspecified vulnerabilities in IBM WebSphere MQ 6.0 have unknown impact and remote attack vectors involving "memory corruption." NOTE: as of 20071116, the only disclosure is a vague pre-advisory with no actionable information. However, since it i... Read more
Affected Products : websphere_mq- EPSS Score: %0.54
- Published: Nov. 20, 2007
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2007-5538
Buffer overflow in the Centralized TFTP File Locator Service in Cisco Unified Communications Manager (CUCM, formerly CallManager) 5.1 before 5.1(3), and Unified CallManager 5.0, allows remote attackers to execute arbitrary code or cause a denial of servic... Read more
- EPSS Score: %7.50
- Published: Oct. 18, 2007
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2008-0014
Heap-based buffer overflow in an unspecified procedure in Trend Micro ServerProtect 5.7 and 5.58 allows remote attackers to execute arbitrary code via unknown vectors, possibly related to the product's configuration, a different vulnerability than CVE-200... Read more
- EPSS Score: %14.80
- Published: Nov. 17, 2008
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2011-3421
Multiple unspecified vulnerabilities in Google Chrome before 14.0.835.125 on the Acer AC700, Samsung Series 5, and Cr-48 Chromebook platforms have unknown impact and attack vectors.... Read more
- EPSS Score: %0.47
- Published: Sep. 12, 2011
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2008-5791
Multiple unspecified vulnerabilities in PrestaShop e-Commerce Solution before 1.1 Beta 2 (aka 1.1.0.1) have unknown impact and attack vectors, related to the (1) bankwire module, (2) cheque module, and other components.... Read more
Affected Products : prestashop- EPSS Score: %0.40
- Published: Dec. 31, 2008
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2008-0477
Stack-based buffer overflow in the QMPUpgrade.Upgrade.1 ActiveX control in QMPUpgrade.dll 1.0.0.1 in Move Networks Upgrade Manager allows remote attackers to execute arbitrary code via a long first argument to the Upgrade method. NOTE: some of these deta... Read more
Affected Products : move_media_player- EPSS Score: %17.27
- Published: Jan. 29, 2008
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-1999-0213
libnsl in Solaris allowed an attacker to perform a denial of service of rpcbind.... Read more
- EPSS Score: %0.48
- Published: Jul. 15, 1998
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2008-0949
Unspecified vulnerability in IBM Informix Dynamic Server (IDS) 7.x through 11.x allows remote attackers to gain privileges via a malformed connection request packet.... Read more
Affected Products : informix_dynamic_server- EPSS Score: %4.36
- Published: Mar. 18, 2008
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2008-1117
Directory traversal vulnerability in the Notes (aka Flash Notes or instant messages) feature in tb2ftp.dll in Timbuktu Pro 8.6.5 for Windows, and possibly 8.7 for Mac OS X, allows remote attackers to upload files to arbitrary locations via a destination f... Read more
Affected Products : timbuktu_pro- EPSS Score: %77.31
- Published: Mar. 14, 2008
- Modified: Apr. 09, 2025