Latest CVE Feed
-
9.3
HIGHCVE-2007-5450
Unspecified vulnerability in Safari on the Apple iPod touch (aka iTouch) and iPhone 1.1.1 allows user-assisted remote attackers to cause a denial of service (application crash), and enable filesystem browsing by the local user, via a certain TIFF file.... Read more
- EPSS Score: %1.81
- Published: Oct. 14, 2007
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2017-0563
An elevation of privilege vulnerability in the HTC touchscreen driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as Critical due to the possibility of a local permanent device... Read more
- EPSS Score: %0.18
- Published: Apr. 07, 2017
- Modified: Apr. 20, 2025
-
9.3
CRITICALCVE-2020-13532
A privilege escalation vulnerability exists in Dream Report 5 R20-2. In the default configuration, the Syncfusion Dashboard Service service binary can be replaced by attackers to escalate privileges to NT SYSTEM. An attacker can provide a malicious file t... Read more
- EPSS Score: %0.05
- Published: Apr. 09, 2021
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2017-0637
A remote code execution vulnerability in libhevc in Mediaserver could enable an attacker using a specially crafted file to cause memory corruption during media file and data processing. This issue is rated as Critical due to the possibility of remote code... Read more
Affected Products : android- EPSS Score: %0.84
- Published: Jun. 14, 2017
- Modified: Apr. 20, 2025
-
9.3
HIGHCVE-2017-0678
A remote code execution vulnerability in the Android media framework. Product: Android. Versions: 7.0, 7.1.1, 7.1.2. Android ID: A-36576151.... Read more
Affected Products : android- EPSS Score: %0.25
- Published: Jul. 06, 2017
- Modified: Apr. 20, 2025
-
9.3
HIGHCVE-2017-0680
A remote code execution vulnerability in the Android media framework. Product: Android. Versions: 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2. Android ID: A-37008096.... Read more
Affected Products : android- EPSS Score: %0.21
- Published: Jul. 06, 2017
- Modified: Apr. 20, 2025
-
9.3
HIGHCVE-2018-13903
u'Error in UE due to race condition in EPCO handling' in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables in APQ8053, MDM9205, MDM9206, MSM8909W, MSM8917, MSM8920, MSM8937, MS... Read more
Affected Products : sm8150_firmware msm8909w_firmware mdm9206_firmware mdm9205_firmware apq8053_firmware msm8953_firmware msm8917_firmware msm8920_firmware msm8937_firmware msm8940_firmware +12 more products- EPSS Score: %0.22
- Published: Sep. 08, 2020
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2022-27835
Improper boundary check in UWB firmware prior to SMR Apr-2022 Release 1 allows arbitrary memory write.... Read more
- EPSS Score: %0.04
- Published: Apr. 11, 2022
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2007-4634
Multiple SQL injection vulnerabilities in Cisco CallManager and Unified Communications Manager (CUCM) before 3.3(5)sr2b, 4.1 before 4.1(3)sr5, 4.2 before 4.2(3)sr2, and 4.3 before 4.3(1)sr1 allow remote attackers to execute arbitrary SQL commands via the ... Read more
- EPSS Score: %1.77
- Published: Aug. 31, 2007
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2008-2745
Stack-based buffer overflow in BiAnno ActiveX Control (BiAnno.ocx) in Black Ice Software Annotation Plugin 10.95 allows remote attackers to execute arbitrary code via a long parameter to the AnnoSaveToTiff method.... Read more
Affected Products : annotation_software- EPSS Score: %18.57
- Published: Jun. 17, 2008
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2010-2305
Buffer overflow in an ActiveX control in SSHelper.dll for Symantec Sygate Personal Firewall 5.6 build 2808 allows remote attackers to execute arbitrary code via a long third argument to the SetRegString method.... Read more
Affected Products : sygate_personal_firewall- EPSS Score: %6.15
- Published: Jun. 16, 2010
- Modified: Apr. 11, 2025
-
9.3
HIGHCVE-2010-2311
Stack-based buffer overflow in Power Tab Editor 1.7 build 80 allows user-assisted remote attackers to execute arbitrary code via a .ptb file with a long font name.... Read more
Affected Products : power_tab_editor- EPSS Score: %8.23
- Published: Jun. 16, 2010
- Modified: Apr. 11, 2025
-
9.3
HIGHCVE-2010-2330
Stack-based buffer overflow in iSharer File Sharing Wizard 1.5.0 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long Content-Length header.... Read more
Affected Products : isharer_file_sharing_wizard- EPSS Score: %21.95
- Published: Jun. 18, 2010
- Modified: Apr. 11, 2025
-
9.3
HIGHCVE-2011-4216
Investintech.com SlimPDF Reader does not properly restrict write operations, which allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted PDF document.... Read more
Affected Products : slimpdf_reader- EPSS Score: %2.79
- Published: Nov. 01, 2011
- Modified: Apr. 11, 2025
-
9.3
HIGHCVE-2012-4924
Buffer overflow in the CxDbgPrint function in the ipswcom.dll ActiveX component 1.0.0.1 for ASUS Net4Switch 1.0.0020 allows remote attackers to execute arbitrary code via a long parameter to the Alert method.... Read more
- EPSS Score: %79.90
- Published: Sep. 15, 2012
- Modified: Apr. 11, 2025
-
9.3
HIGHCVE-2014-5406
The Hospira LifeCare PCA Infusion System before 7.0 does not validate network traffic associated with sending a (1) drug library, (2) software update, or (3) configuration change, which allows remote attackers to modify settings or medication data via pac... Read more
- EPSS Score: %0.61
- Published: Jul. 06, 2015
- Modified: Apr. 12, 2025
-
9.3
HIGHCVE-2016-8385
An exploitable uninitialized variable vulnerability which leads to a stack-based buffer overflow exists in Iceni Argus. When it attempts to convert a malformed PDF to XML a stack variable will be left uninitialized which will later be used to fetch a leng... Read more
Affected Products : argus- EPSS Score: %0.95
- Published: Feb. 27, 2017
- Modified: Apr. 20, 2025
-
9.3
HIGHCVE-2006-5820
The LinkSBIcons method in the SuperBuddy ActiveX control (Sb.SuperBuddy.1) in America Online 9.0 Security Edition dereferences an arbitrary function pointer, which allows remote attackers to execute arbitrary code via a modified pointer value.... Read more
Affected Products : aol- EPSS Score: %40.74
- Published: Apr. 02, 2007
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2018-10731
All Phoenix Contact managed FL SWITCH 3xxx, 4xxx, 48xx products running firmware version 1.0 to 1.33 are prone to buffer overflows when handling very large cookies (a different vulnerability than CVE-2018-10728).... Read more
Affected Products : fl_switch_3005_firmware fl_switch_3005t_firmware fl_switch_3004t-fx_firmware fl_switch_3004t-fx_st_firmware fl_switch_3008_firmware fl_switch_3008t_firmware fl_switch_3006t-2fx_firmware fl_switch_3006t-2fx_st_firmware fl_switch_3012e-2sfx_firmware fl_switch_3016e_firmware +48 more products- EPSS Score: %1.47
- Published: May. 17, 2018
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2007-2244
Multiple buffer overflows in Adobe Photoshop CS2 and CS3, Illustrator CS3, and GoLive 9 allow user-assisted remote attackers to execute arbitrary code via a crafted (1) BMP, (2) DIB, or (3) RLE file.... Read more
- EPSS Score: %24.17
- Published: Apr. 25, 2007
- Modified: Apr. 09, 2025