Latest CVE Feed
-
9.3
HIGHCVE-2009-3573
Multiple insecure method vulnerabilities in the PDIControl.PDI.1 ActiveX control (PDIControl.dll) 2.2.3160.0 in EMC Captiva PixTools Distributed Imaging 2.2 allow remote attackers to create or overwrite arbitrary files via the (1) SetLogFileName and (2) W... Read more
Affected Products : captiva_pixtools_distributed_imaging- Published: Oct. 06, 2009
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2009-3571
Unspecified vulnerability in OpenOffice.org (OOo) has unknown impact and client-side attack vector, as demonstrated by a certain module in VulnDisco Pack Professional 8.8, aka "Client-side exploit." NOTE: as of 20091005, this disclosure has no actionable ... Read more
Affected Products : openoffice.org- Published: Oct. 06, 2009
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2009-3576
Autodesk Softimage 7.x and Softimage XSI 6.x allow remote attackers to execute arbitrary JavaScript code via a scene package containing a Scene Table of Contents (aka .scntoc) file with a Script_Content element, as demonstrated by code that loads the WScr... Read more
- Published: Nov. 24, 2009
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2009-3537
Multiple stack-based buffer overflows in EpicDJSoftware EpicDJ 1.3.9.1 allow remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a long string in a (1) .m3u or (2) .mpl playlist file.... Read more
Affected Products : epicdj- Published: Oct. 02, 2009
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2009-3578
Autodesk Maya 8.0, 8.5, 2008, 2009, and 2010 and Alias Wavefront Maya 6.5 and 7.0 allow remote attackers to execute arbitrary code via a (1) .ma or (2) .mb file that uses the Maya Embedded Language (MEL) python command or unspecified other MEL commands, r... Read more
- Published: Nov. 24, 2009
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2009-3461
Unspecified vulnerability in Adobe Acrobat 9.x before 9.2 allows attackers to bypass intended file-extension restrictions via unknown vectors.... Read more
Affected Products : acrobat- Published: Oct. 19, 2009
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2009-3458
Adobe Reader and Acrobat 7.x before 7.1.4, 8.x before 8.1.7, and 9.x before 9.2 do not properly validate input, which might allow attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2009-2998.... Read more
- Published: Oct. 19, 2009
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2009-3536
Multiple stack-based buffer overflows in EpicDJSoftware EpicVJ 1.2.8.0 and 1.3.1.2 allow remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a long string in a (1) .m3u or (2) .mpl playlist file.... Read more
Affected Products : epicvj- Published: Oct. 02, 2009
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2009-3483
Heap-based buffer overflow in the Create New Site feature in GlobalSCAPE CuteFTP Professional, Home, and Lite 8.3.3 and 8.3.3.0054 allows user-assisted remote attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code vi... Read more
Affected Products : cuteftp- Published: Sep. 30, 2009
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2009-3428
Stack-based buffer overflow in Easy Music Player 1.0.0.2 allows remote attackers to execute arbitrary code via a crafted .wav file.... Read more
Affected Products : easy_music_player- Published: Sep. 25, 2009
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2009-3372
Mozilla Firefox before 3.0.15 and 3.5.x before 3.5.4, and SeaMonkey before 2.0, allows remote attackers to execute arbitrary code via a crafted regular expression in a Proxy Auto-configuration (PAC) file.... Read more
- Published: Oct. 29, 2009
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2009-3329
Stack-based buffer overflow in Winplot 1.25.0.1 allows user-assisted remote attackers to execute arbitrary code via a crafted Plot2D (.wp2) file.... Read more
Affected Products : winplot- Published: Sep. 23, 2009
- Modified: Apr. 09, 2025
-
9.3
CRITICALCVE-2020-13542
A local privilege elevation vulnerability exists in the file system permissions of LogicalDoc 8.5.1 installation. Depending on the vector chosen, an attacker can either replace the service binary or replace DLL files loaded by the service, both which get ... Read more
Affected Products : logicaldoc- Published: Dec. 03, 2020
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2008-4281
Directory traversal vulnerability in VMWare ESXi 3.5 before ESXe350-200810401-O-UG and ESX 3.5 before ESX350-200810201-UG allows administrators with the Datastore.FileManagement privilege to gain privileges via unknown vectors.... Read more
- Published: Nov. 10, 2008
- Modified: Apr. 09, 2025
-
9.3
CRITICALCVE-2020-13536
An exploitable local privilege elevation vulnerability exists in the file system permissions of Moxa MXView series 3.1.8 installation. Depending on the vector chosen, an attacker can either add code to a script or replace a binary. By default MXViewServic... Read more
Affected Products : mxview- Published: Nov. 05, 2020
- Modified: Nov. 21, 2024
-
9.3
CRITICALCVE-2020-13535
A privilege escalation vulnerability exists in Kepware LinkMaster 3.0.94.0. In its default configuration, an attacker can globally overwrite service configuration to execute arbitrary code with NT SYSTEM privileges.... Read more
Affected Products : linkmaster- Published: Dec. 18, 2020
- Modified: Nov. 21, 2024
-
9.3
CRITICALCVE-2020-13534
A privilege escalation vulnerability exists in Dream Report 5 R20-2. COM Class Identifiers (CLSID), installed by Dream Report 5 20-2, reference LocalServer32 and InprocServer32 with weak privileges which can lead to privilege escalation when used. An atta... Read more
- Published: Apr. 09, 2021
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2009-3221
Stack-based buffer overflow in Audio Lib Player (ALP) allows remote attackers to execute arbitrary code via a long URL in a .m3u playlist file.... Read more
Affected Products : audio_lib_player- Published: Sep. 16, 2009
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2009-3132
Microsoft Office Excel 2002 SP3, 2003 SP3, and 2007 SP1 and SP2; Office 2004 and 2008 for Mac; Open XML File Format Converter for Mac; Office Excel Viewer 2003 SP3; Office Excel Viewer SP1 and SP2; and Office Compatibility Pack for Word, Excel, and PowerP... Read more
Affected Products : office excel_viewer excel open_xml_file_format_converter compatibility_pack_word_excel_powerpoint- Published: Nov. 11, 2009
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2009-3253
Stack-based buffer overflow in TriceraSoft Swift Ultralite 1.032 allows remote attackers to cause a denial of service (crash) or execute arbitrary code via a long string in a .M3U playlist file.... Read more
Affected Products : swift_ultralite- Published: Sep. 18, 2009
- Modified: Apr. 09, 2025