Latest CVE Feed
-
9.3
HIGHCVE-2021-40847
The update process of the Circle Parental Control Service on various NETGEAR routers allows remote attackers to achieve remote code execution as root via a MitM attack. While the parental controls themselves are not enabled by default on the routers, the ... Read more
Affected Products : r6700_firmware r6900_firmware r6900p_firmware r7000_firmware r7000p_firmware r6400v2_firmware r6700v3_firmware r7850_firmware r7900_firmware r8000_firmware +12 more products- EPSS Score: %6.13
- Published: Sep. 21, 2021
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2016-0019
The Remote Desktop Protocol (RDP) service implementation in Microsoft Windows 10 Gold and 1511 allows remote attackers to bypass intended access restrictions and establish sessions for blank-password accounts via a modified RDP client, aka "Windows Remote... Read more
Affected Products : windows_10- EPSS Score: %9.93
- Published: Jan. 13, 2016
- Modified: Apr. 12, 2025
-
9.3
HIGHCVE-2012-0023
Double free vulnerability in the get_chunk_header function in modules/demux/ty.c in VideoLAN VLC media player 0.9.0 through 1.1.12 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted TiVo (TY) fil... Read more
Affected Products : vlc_media_player- EPSS Score: %9.19
- Published: Oct. 30, 2012
- Modified: Apr. 11, 2025
-
9.3
HIGHCVE-2021-40786
Adobe Premiere Elements 20210809.daily.2242976 (and earlier) is affected by a memory corruption vulnerability due to insecure handling of a malicious file, potentially resulting in arbitrary code execution in the context of the current user. User interact... Read more
- EPSS Score: %1.63
- Published: Mar. 16, 2022
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2021-40780
Adobe Media Encoder version 15.4.1 (and earlier) is affected by a memory corruption vulnerability due to insecure handling of a malicious file, potentially resulting in arbitrary code execution in the context of the current user. User interaction is requi... Read more
- EPSS Score: %1.63
- Published: Mar. 16, 2022
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2016-0185
Media Center in Microsoft Windows Vista SP2, Windows 7 SP1, and Windows 8.1 allows remote attackers to execute arbitrary code via a crafted Media Center link (aka .mcl) file, aka "Windows Media Center Remote Code Execution Vulnerability."... Read more
- Actively Exploited
- EPSS Score: %82.75
- Published: May. 11, 2016
- Modified: Apr. 12, 2025
-
9.3
HIGHCVE-2021-40754
Adobe After Effects version 18.4.1 (and earlier) is affected by a memory corruption vulnerability due to insecure handling of a malicious WAV file, potentially resulting in arbitrary code execution in the context of the current user. User interaction is r... Read more
- EPSS Score: %1.72
- Published: Nov. 18, 2021
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2021-40759
Adobe After Effects version 18.4.1 (and earlier) is affected by a memory corruption vulnerability due to insecure handling of a malicious .m4a file, potentially resulting in arbitrary code execution in the context of the current user. User interaction is ... Read more
- EPSS Score: %1.63
- Published: Nov. 18, 2021
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2021-40757
Adobe After Effects version 18.4.1 (and earlier) is affected by a memory corruption vulnerability due to insecure handling of a malicious MXF file, potentially resulting in arbitrary code execution in the context of the current user. User interaction is r... Read more
- EPSS Score: %0.88
- Published: Nov. 18, 2021
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2021-40753
Adobe After Effects version 18.4.1 (and earlier) is affected by a memory corruption vulnerability due to insecure handling of a malicious SVG file, potentially resulting in arbitrary code execution in the context of the current user. User interaction is r... Read more
- EPSS Score: %1.72
- Published: Nov. 18, 2021
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2014-2755
Microsoft Internet Explorer 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2014-1769... Read more
Affected Products : internet_explorer- EPSS Score: %48.09
- Published: Jun. 11, 2014
- Modified: Apr. 12, 2025
-
9.3
HIGHCVE-2021-40734
Adobe Audition version 14.4 (and earlier) is affected by a memory corruption vulnerability when parsing a SVG file, potentially resulting in arbitrary code execution in the context of the current user. User interaction is required to exploit this vulnerab... Read more
- EPSS Score: %2.12
- Published: Mar. 16, 2022
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2021-40738
Adobe Audition version 14.4 (and earlier) is affected by a memory corruption vulnerability when parsing a WAV file, potentially resulting in arbitrary code execution in the context of the current user. User interaction is required to exploit this vulnerab... Read more
- EPSS Score: %0.89
- Published: Mar. 16, 2022
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2021-40710
Adobe Premiere Pro version 15.4 (and earlier) is affected by a memory corruption vulnerability due to insecure handling of a malicious .svg file, potentially resulting in arbitrary code execution in the context of the current user. User interaction is req... Read more
- EPSS Score: %4.00
- Published: Sep. 29, 2021
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2004-1125
Buffer overflow in the Gfx::doImage function in Gfx.cc for xpdf 3.00, and other products that share code such as tetex-bin and kpdf in KDE 3.2.x to 3.2.3 and 3.3.x to 3.3.2, allows remote attackers to cause a denial of service (application crash) and poss... Read more
- EPSS Score: %7.31
- Published: Jan. 10, 2005
- Modified: Apr. 03, 2025
-
9.3
HIGHCVE-2021-40709
Adobe Photoshop versions 21.2.11 (and earlier) and 22.5 (and earlier) are affected by a Buffer Overflow vulnerability when parsing a specially crafted SVG file. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code execut... Read more
- EPSS Score: %2.30
- Published: Sep. 27, 2021
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2021-40715
Adobe Premiere Pro version 15.4 (and earlier) is affected by a memory corruption vulnerability due to insecure handling of a malicious .exr file, potentially resulting in arbitrary code execution in the context of the current user. User interaction is req... Read more
- EPSS Score: %1.63
- Published: Sep. 29, 2021
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2013-3743
Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 6 Update 45 and earlier and 5.0 Update 45 and earlier allows remote attackers to affect confidentiality, integrity, and availability via vectors related to AWT.... Read more
- EPSS Score: %7.30
- Published: Jun. 18, 2013
- Modified: Apr. 11, 2025
-
9.3
HIGHCVE-2021-40702
Adobe Premiere Elements version 2021.2235820 (and earlier) is affected by a memory corruption vulnerability due to insecure handling of a malicious psd file, potentially resulting in arbitrary code execution in the context of the current user. User intera... Read more
- EPSS Score: %3.83
- Published: Sep. 27, 2021
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2012-1335
Buffer overflow in the Cisco WebEx Recording Format (WRF) player T27 L through SP11 EP26, T27 LB through SP21 EP10, T27 LC before SP25 EP10, and T27 LD before SP32 CP1 allows remote attackers to execute arbitrary code via a crafted WRF file, a different v... Read more
Affected Products : webex_recording_format_player- EPSS Score: %7.78
- Published: Apr. 05, 2012
- Modified: Apr. 11, 2025