Latest CVE Feed
-
9.3
HIGHCVE-2011-0094
Use-after-free vulnerability in Microsoft Internet Explorer 6 and 7 allows remote attackers to execute arbitrary code by accessing an object that (1) was not properly initialized or (2) is deleted, aka "Layouts Handling Memory Corruption Vulnerability."... Read more
Affected Products : windows_server_2008 internet_explorer windows_2003_server windows_server_2003 windows_vista windows_xp- Published: Apr. 13, 2011
- Modified: Apr. 11, 2025
-
9.3
HIGHCVE-2010-4372
Integer overflow in the in_nsv plugin in Winamp before 5.6 allows remote attackers to have an unspecified impact via vectors related to improper allocation of memory for NSV metadata, a different vulnerability than CVE-2010-2586.... Read more
Affected Products : winamp- Published: Dec. 02, 2010
- Modified: Apr. 11, 2025
-
9.3
HIGHCVE-2010-3811
Use-after-free vulnerability in WebKit in Apple Safari before 5.0.3 on Mac OS X 10.5 through 10.6 and Windows, and before 4.1.3 on Mac OS X 10.4, allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via vector... Read more
- Published: Nov. 22, 2010
- Modified: Apr. 11, 2025
-
9.3
HIGHCVE-2010-3766
Use-after-free vulnerability in Mozilla Firefox before 3.5.16 and 3.6.x before 3.6.13, and SeaMonkey before 2.0.11, allows remote attackers to execute arbitrary code via vectors involving a change to an nsDOMAttribute node.... Read more
- Published: Dec. 10, 2010
- Modified: Apr. 11, 2025
-
9.3
HIGHCVE-2010-3622
Adobe Reader and Acrobat 9.x before 9.4, and 8.x before 8.2.5 on Windows and Mac OS X, allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2010-2890, CVE-20... Read more
- Published: Oct. 06, 2010
- Modified: Apr. 11, 2025
-
9.3
HIGHCVE-2010-3328
Use-after-free vulnerability in the CAttrArray::PrivateFind function in mshtml.dll in Microsoft Internet Explorer 6 through 8 allows remote attackers to execute arbitrary code by setting an unspecified property of a stylesheet object, aka "Uninitialized M... Read more
Affected Products : windows_7 windows_server_2008 internet_explorer windows_server_2003 windows_vista windows_xp- Published: Oct. 13, 2010
- Modified: Apr. 11, 2025
-
9.3
HIGHCVE-2010-3124
Untrusted search path vulnerability in bin/winvlc.c in VLC Media Player 1.1.3 and earlier allows local users, and possibly remote attackers, to execute arbitrary code and conduct DLL hijacking attacks via a Trojan horse wintab32.dll that is located in the... Read more
Affected Products : vlc_media_player- Published: Aug. 26, 2010
- Modified: Apr. 11, 2025
-
9.3
HIGHCVE-2010-2868
IML32.dll in Adobe Shockwave Player before 11.5.8.612 does not properly parse .dir files, which allows remote attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code via a malformed file containing an invalid value, a... Read more
Affected Products : shockwave_player- Published: Aug. 26, 2010
- Modified: Apr. 11, 2025
-
9.3
HIGHCVE-2010-4383
Heap-based buffer overflow in RealNetworks RealPlayer 11.0 through 11.1, RealPlayer SP 1.0 through 1.1.4, RealPlayer Enterprise 2.1.2, Mac RealPlayer 11.0 through 12.0.0.1444, Linux RealPlayer 11.0.2.1744, and possibly HelixPlayer 1.0.6 and other versions... Read more
- Published: Dec. 14, 2010
- Modified: Apr. 11, 2025
-
9.3
HIGHCVE-2010-2578
Heap-based buffer overflow in RealNetworks RealPlayer 11.0 through 11.1, RealPlayer SP 1.0 through 1.1.4, and RealPlayer Enterprise 2.1.2 allows remote attackers to have an unspecified impact via a crafted QCP file.... Read more
- Published: Oct. 19, 2010
- Modified: Apr. 11, 2025
-
9.3
HIGHCVE-2010-2211
Adobe Reader and Acrobat 9.x before 9.3.3, and 8.x before 8.2.3 on Windows and Mac OS X, allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2010-1295, CVE-... Read more
- Published: Jun. 30, 2010
- Modified: Apr. 11, 2025
-
9.3
HIGHCVE-2010-2209
Adobe Reader and Acrobat 9.x before 9.3.3, and 8.x before 8.2.3 on Windows and Mac OS X, allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2010-1295, CVE-... Read more
- Published: Jun. 30, 2010
- Modified: Apr. 11, 2025
-
9.3
HIGHCVE-2010-2173
Adobe Flash Player before 9.0.277.0 and 10.x before 10.1.53.64, and Adobe AIR before 2.0.2.12610, might allow attackers to execute arbitrary code via unspecified vectors, related to an "invalid pointer vulnerability" and the newclass (0x58) operator, a di... Read more
- Published: Jun. 15, 2010
- Modified: Apr. 11, 2025
-
9.3
HIGHCVE-2010-2166
Adobe Flash Player before 9.0.277.0 and 10.x before 10.1.53.64, and Adobe AIR before 2.0.2.12610, allows attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code via unspecified vectors, a different vulnerability than ... Read more
- Published: Jun. 15, 2010
- Modified: Apr. 11, 2025
-
9.3
HIGHCVE-2010-1770
WebKit in Apple Safari before 5.0 on Mac OS X 10.5 through 10.6 and Windows, Apple Safari before 4.1 on Mac OS X 10.4, and Google Chrome before 5.0.375.70 does not properly handle a transformation of a text node that has the IBM1147 character set, which a... Read more
Affected Products : windows_7 ubuntu_linux chrome windows_vista windows_xp mac_os_x mac_os_x_server opensuse suse_linux_enterprise_desktop suse_linux_enterprise_server +2 more products- Published: Jun. 11, 2010
- Modified: Apr. 11, 2025
-
9.3
HIGHCVE-2010-1387
Use-after-free vulnerability in JavaScriptCore in WebKit in Apple iTunes before 9.2 on Windows, and Apple iOS before 4 on the iPhone and iPod touch, allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via vec... Read more
- Published: Jun. 18, 2010
- Modified: Apr. 11, 2025
-
9.3
HIGHCVE-2010-1240
Adobe Reader and Acrobat 9.x before 9.3.3, and 8.x before 8.2.3 on Windows and Mac OS X, do not restrict the contents of one text field in the Launch File warning dialog, which makes it easier for remote attackers to trick users into executing an arbitrar... Read more
- Published: Apr. 05, 2010
- Modified: Apr. 11, 2025
-
9.3
HIGHCVE-2010-0807
Microsoft Internet Explorer 7 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessing a deleted object, leading to memory corruption, aka "HTML Rendering Memory Corruption Vulnerability."... Read more
Affected Products : windows_server_2008 internet_explorer windows_2003_server windows_server_2003 windows_vista windows_xp- Published: Mar. 31, 2010
- Modified: Apr. 11, 2025
-
9.3
HIGHCVE-2010-0198
Buffer overflow in Adobe Reader and Acrobat 9.x before 9.3.2, and 8.x before 8.2.2 on Windows and Mac OS X, allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2010-0199, CVE-2010-0202, and CVE-2010-0203.... Read more
- Published: Apr. 14, 2010
- Modified: Apr. 11, 2025
-
9.3
HIGHCVE-2010-0136
OpenOffice.org (OOo) 2.0.4, 2.4.1, and 3.1.1 does not properly enforce Visual Basic for Applications (VBA) macro security settings, which allows remote attackers to run arbitrary macros via a crafted document.... Read more
- Published: Feb. 16, 2010
- Modified: Apr. 11, 2025