Latest CVE Feed
-
9.3
HIGHCVE-2018-0804
Equation Editor in Microsoft Office 2003, Microsoft Office 2007, Microsoft Office 2010, Microsoft Office 2013, and Microsoft Office 2016 allows a remote code execution vulnerability due to the way objects are handled in memory, aka "Microsoft Word Remote ... Read more
- Published: Jan. 10, 2018
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2018-0598
Untrusted search path vulnerability in Self-extracting archive files created by IExpress bundled with Microsoft Windows allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.... Read more
Affected Products : windows- Published: Jun. 26, 2018
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2018-0601
Untrusted search path vulnerability in axpdfium v0.01 allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.... Read more
Affected Products : axpdfium- Published: Jun. 26, 2018
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2018-0562
Untrusted search path vulnerability in Installer of SoundEngine Free ver.5.21 and earlier allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.... Read more
Affected Products : soundengine- Published: Apr. 16, 2018
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2018-0544
Untrusted search path vulnerability in WinShot 1.53a and earlier (Installer) allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.... Read more
Affected Products : winshot- Published: Mar. 09, 2018
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2018-0543
Untrusted search path vulnerability in Jtrim 1.53c and earlier (Installer) allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.... Read more
Affected Products : jtrim- Published: Mar. 09, 2018
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2018-0423
A vulnerability in the web-based management interface of the Cisco RV110W Wireless-N VPN Firewall, Cisco RV130W Wireless-N Multifunction VPN Router, and Cisco RV215W Wireless-N VPN Router could allow an unauthenticated, remote attacker to cause a denial o... Read more
- Published: Oct. 05, 2018
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2018-0387
A vulnerability in Cisco Webex Teams (for Windows and macOS) could allow an unauthenticated, remote attacker to execute arbitrary code on the user's device, possibly with elevated privileges. The vulnerability occurs because Cisco Webex Teams does not pro... Read more
- Published: Jul. 18, 2018
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2017-9724
In all Qualcomm products with Android releases from CAF using the Linux kernel, user-level permissions can be used to gain access to kernel memory, specifically the ION cache maintenance code is writing to a user supplied address.... Read more
Affected Products : android- Published: Sep. 21, 2017
- Modified: Apr. 20, 2025
-
9.3
HIGHCVE-2017-9685
In all Qualcomm products with Android releases from CAF using the Linux kernel, a race condition in a WLAN driver can lead to a Use After Free condition.... Read more
Affected Products : android- Published: Aug. 18, 2017
- Modified: Apr. 20, 2025
-
9.3
HIGHCVE-2017-9678
In all Qualcomm products with Android releases from CAF using the Linux kernel, in a video driver, memory corruption can potentially occur due to lack of bounds checking in a memcpy().... Read more
Affected Products : android- Published: Aug. 18, 2017
- Modified: Apr. 20, 2025
-
9.3
HIGHCVE-2017-9646
An Uncontrolled Search Path Element issue was discovered in Solar Controls Heating Control Downloader (HCDownloader) Version 1.0.1.15 and prior. An uncontrolled search path element has been identified, which could allow an attacker to execute arbitrary co... Read more
Affected Products : heating_control_downloader- Published: Aug. 14, 2017
- Modified: Apr. 20, 2025
-
9.3
HIGHCVE-2017-9274
A shell command injection in the obs-service-source_validator before 0.7 could be used to execute code as the packager when checking RPM SPEC files with specific macro constructs.... Read more
Affected Products : obs-service-source_validator- Published: Mar. 01, 2018
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2017-8984
A remote code execution vulnerability in HPE Intelligent Management Center (iMC) PLAT version 7.3 E0506P03 was found.... Read more
Affected Products : intelligent_management_center- Published: Feb. 15, 2018
- Modified: Nov. 21, 2024
-
9.3
CRITICALCVE-2024-12372
A denial-of-service and possible remote code execution vulnerability exists in the Rockwell Automation Power Monitor 1000. The vulnerability results in corruption of the heap memory which may compromise the integrity of the system, potentially allowing fo... Read more
Affected Products :- Published: Dec. 18, 2024
- Modified: Dec. 18, 2024
-
9.3
HIGHCVE-2017-8744
A remote code execution vulnerability exists in Excel Services, Microsoft Excel 2007 Service Pack 3, Microsoft Excel 2010 Service Pack 2, Microsoft Excel 2013 Service Pack 1, Microsoft Excel 2013 RT Service Pack 1, and Microsoft Excel 2016 when they fail ... Read more
Affected Products : office- Published: Sep. 13, 2017
- Modified: Apr. 20, 2025
-
9.3
HIGHCVE-2017-8717
The Microsoft JET Database Engine in Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1 and RT 8.1, Windows Server 2012 and R2, Windows 10 Gold, 1511, 1607, 1703, and Windows Server 2016 allows an attacker to take control of an affected system... Read more
Affected Products : windows_10 windows_7 windows_8.1 windows_rt_8.1 windows_server_2008 windows_server_2012 windows_server_2016- Published: Oct. 13, 2017
- Modified: Apr. 20, 2025
-
9.3
HIGHCVE-2017-8759
Microsoft .NET Framework 2.0, 3.5, 3.5.1, 4.5.2, 4.6, 4.6.1, 4.6.2 and 4.7 allow an attacker to execute code remotely via a malicious document or application, aka ".NET Framework Remote Code Execution Vulnerability."... Read more
Affected Products : windows_7 windows_8.1 windows_rt_8.1 windows_server_2008 windows_server_2012 windows_server_2016 .net_framework windows_10_1607 windows_10_1507 windows_10_1703 +1 more products- Actively Exploited
- Published: Sep. 13, 2017
- Modified: Apr. 20, 2025
-
9.3
HIGHCVE-2017-8692
The Windows Uniscribe component on Microsoft Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, 1607, and 1703, and Windows Server 2016 allows remote code execution vulnerability when it fails to properly handle objects i... Read more
- Published: Sep. 13, 2017
- Modified: Apr. 20, 2025
-
9.3
HIGHCVE-2017-8682
Windows graphics on Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, 1607, and 1703, Windows Server 2016, Microsoft Office Word Viewer, Microsoft Office 2007 ... Read more
- Published: Sep. 13, 2017
- Modified: Apr. 20, 2025