Latest CVE Feed
-
9.3
HIGHCVE-2011-2431
Adobe Reader and Acrobat 8.x before 8.3.1, 9.x before 9.4.6, and 10.x before 10.1.1 allow attackers to execute arbitrary code via unspecified vectors, related to a "security bypass vulnerability."... Read more
- Published: Sep. 15, 2011
- Modified: Apr. 11, 2025
-
9.3
HIGHCVE-2020-17023
<p>A remote code execution vulnerability exists in Visual Studio Code when a user is tricked into opening a malicious 'package.json' file. An attacker who successfully exploited the vulnerability could run arbitrary code in the context of the current user... Read more
Affected Products : visual_studio_code- Published: Oct. 16, 2020
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2011-2421
Dirapi.dll in Adobe Shockwave Player before 11.6.1.629 allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted .dir media file.... Read more
Affected Products : shockwave_player- Published: Aug. 11, 2011
- Modified: Apr. 11, 2025
-
9.3
HIGHCVE-2011-2427
Stack-based buffer overflow in the ActionScript Virtual Machine (AVM) component in Adobe Flash Player before 10.3.183.10 on Windows, Mac OS X, Linux, and Solaris, and before 10.3.186.7 on Android, allows attackers to execute arbitrary code or cause a deni... Read more
- Published: Sep. 22, 2011
- Modified: Apr. 11, 2025
-
9.3
HIGHCVE-2011-2442
Adobe Reader and Acrobat 8.x before 8.3.1, 9.x before 9.4.6, and 10.x before 10.1.1 allow attackers to execute arbitrary code via unspecified vectors, related to a "logic error vulnerability."... Read more
- Published: Sep. 15, 2011
- Modified: Apr. 11, 2025
-
9.3
HIGHCVE-2007-3969
Buffer overflow in Panda Antivirus before 20070720 allows remote attackers to execute arbitrary code via a crafted EXE file, resulting from an "Integer Cast Around."... Read more
- Published: Jul. 25, 2007
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2020-16957
<p>A remote code execution vulnerability exists when the Microsoft Office Access Connectivity Engine improperly handles objects in memory. An attacker who successfully exploited this vulnerability could execute arbitrary code on a victim system.</p> <p>An... Read more
- Published: Oct. 16, 2020
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2007-5025
Unspecified vulnerability in EMC VMware ACE before 1.0.3 Build 54075 allows attackers to have an unknown impact via an unspecified manipulation of "images stored in virtual machines downloaded by the user."... Read more
Affected Products : ace- Published: Sep. 21, 2007
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2008-3475
Microsoft Internet Explorer 6 does not properly handle errors related to using the componentFromPoint method on xml objects that have been (1) incorrectly initialized or (2) deleted, which allows remote attackers to execute arbitrary code via a crafted HT... Read more
Affected Products : windows_server_2008 internet_explorer windows_2000 windows_server_2003 windows_vista windows_xp- Published: Oct. 15, 2008
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2020-16874
<p>A remote code execution vulnerability exists in Visual Studio when it improperly handles objects in memory. An attacker who successfully exploited the vulnerability could run arbitrary code in the context of the current user. If the current user is log... Read more
- Published: Sep. 11, 2020
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2007-5381
Stack-based buffer overflow in the Line Printer Daemon (LPD) in Cisco IOS before 12.2(18)SXF11, 12.4(16a), and 12.4(2)T6 allow remote attackers to execute arbitrary code by setting a long hostname on the target system, then causing an error message to be ... Read more
Affected Products : ios- Published: Oct. 12, 2007
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2020-16947
<p>A remote code execution vulnerability exists in Microsoft Outlook software when the software fails to properly handle objects in memory. An attacker who successfully exploited the vulnerability could run arbitrary code in the context of the targeted us... Read more
- Published: Oct. 16, 2020
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2011-1972
Microsoft Visio 2003 SP3, 2007 SP2, and 2010 Gold and SP1 does not properly validate objects in memory during Visio file parsing, which allows remote attackers to execute arbitrary code via a crafted file, aka "pStream Release RCE Vulnerability."... Read more
Affected Products : visio- Published: Aug. 10, 2011
- Modified: Apr. 11, 2025
-
9.3
HIGHCVE-2007-5660
Unspecified vulnerability in the Update Service ActiveX control in isusweb.dll before 6.0.100.65101 in MacroVision FLEXnet Connect and InstallShield 2008 allows remote attackers to execute arbitrary code via an unspecified "unsafe method," possibly involv... Read more
- Published: Nov. 02, 2007
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2007-5755
Multiple stack-based buffer overflows in the AOL AmpX ActiveX control in AmpX.dll 2.6.1.11 in AOL Radio allow remote attackers to execute arbitrary code via long arguments to unspecified methods.... Read more
Affected Products : radio- Published: Nov. 14, 2007
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2020-16856
<p>A remote code execution vulnerability exists in Visual Studio when it improperly handles objects in memory. An attacker who successfully exploited the vulnerability could run arbitrary code in the context of the current user. If the current user is log... Read more
- Published: Sep. 11, 2020
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2007-5959
Multiple unspecified vulnerabilities in Mozilla Firefox before 2.0.0.10 and SeaMonkey before 1.1.7 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via unknown vectors that trigger memory corruption.... Read more
- Published: Nov. 26, 2007
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2011-2478
Google SketchUp before 8 does not properly handle edge geometry in SketchUp (aka .SKP) files, which allows remote attackers to execute arbitrary code via a crafted file.... Read more
Affected Products : sketchup- Published: Apr. 17, 2012
- Modified: Apr. 11, 2025
-
9.3
HIGHCVE-2011-2940
stunnel 4.40 and 4.41 might allow remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) via unspecified vectors.... Read more
Affected Products : stunnel- Published: Aug. 25, 2011
- Modified: Apr. 11, 2025
-
9.3
HIGHCVE-2008-5246
Multiple heap-based buffer overflows in xine-lib before 1.1.15 allow remote attackers to execute arbitrary code via vectors that send ID3 data to the (1) id3v22_interp_frame and (2) id3v24_interp_frame functions in src/demuxers/id3.c. NOTE: the provenanc... Read more
Affected Products : xine-lib- Published: Nov. 26, 2008
- Modified: Apr. 09, 2025