Latest CVE Feed
-
9.3
HIGHCVE-2022-27790
Acrobat Reader DC versions 22.001.20085 (and earlier), 20.005.3031x (and earlier) and 17.012.30205 (and earlier) are affected by a use-after-free vulnerability in the processing of fonts that could result in arbitrary code execution in the context of the ... Read more
- EPSS Score: %5.00
- Published: May. 11, 2022
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2022-27226
A CSRF issue in /api/crontab on iRZ Mobile Routers through 2022-03-16 allows a threat actor to create a crontab entry in the router administration panel. The cronjob will consequently execute the entry on the threat actor's defined interval, leading to re... Read more
Affected Products : ru21_firmware ru21w_firmware rl21_firmware ru41_firmware rl01_firmware ru21 ru21w rl21 ru41 rl01- EPSS Score: %2.46
- Published: Mar. 19, 2022
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2022-26749
A buffer overflow issue was addressed with improved memory handling. This issue is fixed in macOS Monterey 12.4. An application may be able to execute arbitrary code with kernel privileges.... Read more
Affected Products : macos- EPSS Score: %0.45
- Published: May. 26, 2022
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2022-26763
An out-of-bounds access issue was addressed with improved bounds checking. This issue is fixed in tvOS 15.5, iOS 15.5 and iPadOS 15.5, Security Update 2022-004 Catalina, watchOS 8.6, macOS Big Sur 11.6.6, macOS Monterey 12.4. A malicious application may b... Read more
- EPSS Score: %7.52
- Published: May. 26, 2022
- Modified: May. 30, 2025
-
9.3
HIGHCVE-2022-26715
An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in Security Update 2022-004 Catalina, macOS Monterey 12.4, macOS Big Sur 11.6.6. An application may be able to gain elevated privileges.... Read more
- EPSS Score: %0.15
- Published: May. 26, 2022
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2022-26738
An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in tvOS 15.5, macOS Monterey 12.4, iOS 15.5 and iPadOS 15.5. An application may be able to execute arbitrary code with kernel privileges.... Read more
- EPSS Score: %0.29
- Published: May. 26, 2022
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2022-26756
An out-of-bounds write issue was addressed with improved input validation. This issue is fixed in Security Update 2022-004 Catalina, macOS Monterey 12.4, macOS Big Sur 11.6.6. An application may be able to execute arbitrary code with kernel privileges.... Read more
- EPSS Score: %0.29
- Published: May. 26, 2022
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2022-26740
An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in tvOS 15.5, macOS Monterey 12.4, iOS 15.5 and iPadOS 15.5. An application may be able to execute arbitrary code with kernel privileges.... Read more
- EPSS Score: %0.29
- Published: May. 26, 2022
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2022-26714
A memory corruption issue was addressed with improved validation. This issue is fixed in tvOS 15.5, iOS 15.5 and iPadOS 15.5, Security Update 2022-004 Catalina, watchOS 8.6, macOS Big Sur 11.6.6, macOS Monterey 12.4. An application may be able to execute ... Read more
- EPSS Score: %0.48
- Published: May. 26, 2022
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2022-26702
A use after free issue was addressed with improved memory management. This issue is fixed in watchOS 8.6, tvOS 15.5, iOS 15.5 and iPadOS 15.5. An application may be able to execute arbitrary code with kernel privileges.... Read more
- EPSS Score: %0.24
- Published: May. 26, 2022
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2012-0606
WebKit, as used in Apple iOS before 5.1 and iTunes before 10.6, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CV... Read more
- EPSS Score: %2.00
- Published: Mar. 08, 2012
- Modified: Apr. 11, 2025
-
9.3
HIGHCVE-2022-25218
The use of the RSA algorithm without OAEP, or any other padding scheme, in telnetd_startup, allows an unauthenticated attacker on the local area network to achieve a significant degree of control over the "plaintext" to which an arbitrary blob of cipherte... Read more
Affected Products : k2_firmware k3_firmware k3c_firmware k2g_firmware k2p_firmware k2 k3 k3c k2g k2p- EPSS Score: %1.16
- Published: Mar. 10, 2022
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2017-6998
An issue was discovered in certain Apple products. iOS before 10.3.2 is affected. tvOS before 10.2.1 is affected. watchOS before 3.2.2 is affected. The issue involves the "AVEVideoEncoder" component. It allows attackers to execute arbitrary code in a priv... Read more
- EPSS Score: %0.68
- Published: May. 22, 2017
- Modified: Apr. 20, 2025
-
9.3
HIGHCVE-2022-24541
Windows Server Service Remote Code Execution Vulnerability... Read more
Affected Products : windows_10 windows_7 windows_8.1 windows_rt_8.1 windows_server_2008 windows_server_2012 windows_server_2016 windows_server_2019 windows_10_1607 windows_10_1809 +13 more products- EPSS Score: %7.63
- Published: Apr. 15, 2022
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2011-0249
Heap-based buffer overflow in Apple QuickTime before 7.7 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via crafted STSC atoms in a QuickTime movie file.... Read more
- EPSS Score: %5.70
- Published: Aug. 04, 2011
- Modified: Apr. 11, 2025
-
9.3
HIGHCVE-2022-24092
Acrobat Reader DC version 21.007.20099 (and earlier), 20.004.30017 (and earlier) and 17.011.30204 (and earlier) are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploita... Read more
- EPSS Score: %11.45
- Published: Mar. 18, 2022
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2022-24102
Acrobat Reader DC versions 20.001.20085 (and earlier), 20.005.3031x (and earlier) and 17.012.30205 (and earlier) are affected by a use-after-free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation ... Read more
- EPSS Score: %5.00
- Published: May. 11, 2022
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2021-43046
The Interior Server and Gateway Server components of TIBCO Software Inc.'s TIBCO PartnerExpress contain an easily exploitable vulnerability that allows an unauthenticated attacker with network access to obtain session tokens for the affected system. A suc... Read more
Affected Products : partnerexpress- EPSS Score: %0.44
- Published: Nov. 16, 2021
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2022-23270
Windows Point-to-Point Tunneling Protocol Remote Code Execution Vulnerability... Read more
Affected Products : windows_10 windows_7 windows_8.1 windows_rt_8.1 windows_server_2008 windows_server_2012 windows_server_2016 windows_server_2019 windows_server windows_10_1607 +14 more products- EPSS Score: %52.35
- Published: May. 10, 2022
- Modified: Jan. 02, 2025
-
9.3
HIGHCVE-2022-22675
An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in tvOS 15.5, watchOS 8.6, macOS Big Sur 11.6.6, macOS Monterey 12.3.1, iOS 15.4.1 and iPadOS 15.4.1. An application may be able to execute arbitrary code with k... Read more
- Actively Exploited
- EPSS Score: %0.53
- Published: May. 26, 2022
- Modified: Feb. 14, 2025