Latest CVE Feed
-
9.3
HIGHCVE-2009-1647
Heap-based buffer overflow in popcorn.exe in Ultrafunk Popcorn 1.87 allows remote POP3 servers to cause a denial of service (application crash) via a long string in a +OK response. NOTE: some of these details are obtained from third party information.... Read more
Affected Products : popcorn- Published: May. 15, 2009
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2009-1667
Stack-based buffer overflow in Mini-stream CastRipper 2.50.70 allows remote attackers to execute arbitrary code via a long entry in a .m3u file, a different vector than CVE-2009-5137.... Read more
Affected Products : castripper- Published: May. 18, 2009
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2009-1726
Heap-based buffer overflow in ColorSync in Apple Mac OS X 10.4.11 and 10.5 before 10.5.8 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted image containing an embedded ColorSync profile.... Read more
- Published: Aug. 06, 2009
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2009-1645
Multiple stack-based buffer overflows in Mini-stream Easy RM-MP3 Converter 3.0.0.7 allow remote attackers to execute arbitrary code via (1) a long rtsp URL in a .ram file and (2) a long string in the HREF attribute of a REF element in a .asx file.... Read more
Affected Products : easy_rm-mp3_converter- Published: May. 15, 2009
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2009-1672
The Deployment Toolkit ActiveX control in deploytk.dll 6.0.130.3 in Sun Java SE Runtime Environment (aka JRE) 6 Update 13 allows remote attackers to (1) execute arbitrary code via a .jnlp URL in the argument to the launch method, and might allow remote at... Read more
Affected Products : jre- Published: May. 18, 2009
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2009-1627
Stack-based buffer overflow in Streaming Download Project (SDP) Downloader 2.3.0 allows remote attackers to execute arbitrary code via a long .asf URL in the HREF attribute of a REF element in a .asx file.... Read more
Affected Products : streaming_download_project- Published: May. 12, 2009
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2009-1641
Multiple stack-based buffer overflows in Mini-stream Ripper 3.0.1.1 allow remote attackers to execute arbitrary code via (1) a long rtsp URL in a .ram file and (2) a long string in the HREF attribute of a REF element in a .asx file.... Read more
Affected Products : ripper- Published: May. 15, 2009
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2009-1608
Multiple buffer overflows in Microchip MPLAB IDE 8.30 and possibly earlier versions allow user-assisted remote attackers to execute arbitrary code via a .MCP project file with long (1) FILE_INFO, (2) CAT_FILTERS, and possibly other fields.... Read more
Affected Products : mplab_ide- Published: May. 11, 2009
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2009-1606
Multiple stack-based and heap-based buffer overflows in Dafolo DafoloControl ActiveX control (DafoloFFControl.dll) 1.108.6.195 allow remote attackers to execute arbitrary code via long (1) baseurl, (2) kommune, (3) felter, (4) afdeling, (5) Flags, (6) Hel... Read more
Affected Products : dafolocontrol- Published: May. 11, 2009
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2009-1642
Multiple stack-based buffer overflows in Mini-stream ASX to MP3 Converter 3.0.0.7 allow remote attackers to execute arbitrary code via (1) a long rtsp URL in a .ram file and (2) a long string in the HREF attribute of a REF element in a .asx file. NOTE: t... Read more
Affected Products : mini-stream_to_mp3_converter- Published: May. 15, 2009
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2009-1660
Stack-based buffer overflow in URUWorks ViPlay3 3.0 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long file entry in a .vpl file.... Read more
Affected Products : viplay3- Published: May. 18, 2009
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2009-1531
Microsoft Internet Explorer 7 for Windows XP SP2 and SP3; 7 for Server 2003 SP2; 7 for Vista Gold, SP1, and SP2; and 7 for Server 2008 SP2 allows remote attackers to execute arbitrary code via frequent calls to the getElementsByTagName function combined w... Read more
Affected Products : windows_server_2008 internet_explorer windows_server_2003 windows_vista windows_xp- Published: Jun. 10, 2009
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2009-1586
Stack-based buffer overflow in the NZB importer feature in GrabIt 1.7.2 Beta 3 and earlier allows remote attackers to execute arbitrary code via a crafted DTD reference in a DOCTYPE element in an NZB file.... Read more
Affected Products : grabit- Published: May. 07, 2009
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2009-1612
Stack-based buffer overflow in the MPS.StormPlayer.1 ActiveX control in mps.dll 3.9.4.27 in Baofeng Storm allows remote attackers to execute arbitrary code via a long argument to the OnBeforeVideoDownload method, as exploited in the wild in April and May ... Read more
Affected Products : storm- Published: May. 11, 2009
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2009-1600
Apple Safari executes DOM calls in response to a javascript: URI in the target attribute of a submit element within a form contained in an inline PDF file, which might allow remote attackers to bypass intended Adobe Acrobat JavaScript restrictions on acce... Read more
- Published: May. 11, 2009
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2009-1565
vmnc.dll in the VMnc media codec in VMware Movie Decoder before 6.5.4 Build 246459 on Windows, and the movie decoder in VMware Workstation 6.5.x before 6.5.4 build 246459, VMware Player 2.5.x before 2.5.4 build 246459, and VMware Server 2.x on Windows, al... Read more
- Published: Apr. 12, 2010
- Modified: Apr. 11, 2025
-
9.3
HIGHCVE-2009-1539
The QuickTime Movie Parser Filter in quartz.dll in DirectShow in Microsoft DirectX 7.0 through 9.0c on Windows 2000 SP4, Windows XP SP2 and SP3, and Windows Server 2003 SP2 does not properly validate unspecified size fields in QuickTime media files, which... Read more
- Published: Jul. 15, 2009
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2009-1533
Buffer overflow in the Works for Windows document converters in Microsoft Office 2000 SP3, Office XP SP3, Office 2003 SP3, Office 2007 SP1, and Works 8.5 and 9 allows remote attackers to execute arbitrary code via a crafted Works .wps file that triggers m... Read more
- Published: Jun. 10, 2009
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2009-1370
Stack-based buffer overflow in ape_plugin.plg in Xilisoft Video Converter 3.1.53.0704n and 5.1.23.0402 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long string in a .cue file.... Read more
Affected Products : xilisoft_video_converter- Published: Apr. 22, 2009
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2009-1351
Heap-based buffer overflow in Apollo 37zz allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a long URI in a playlist (.m3u) file.... Read more
Affected Products : apollo- Published: Apr. 21, 2009
- Modified: Apr. 09, 2025