Latest CVE Feed

Following is the list of latest published vulnerabilities. You can filter the list based on the severity of the vulnerability, whether it is actively exploited (also known as CISA KEV List) or remotely exploitable. You can also sort the list based on the published date, last updated date, or CVSS score.
  • 9.3

    HIGH
    CVE-2009-0550

    Windows HTTP Services (aka WinHTTP) in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, and Server 2008; and WinINet in Microsoft Internet Explorer 5.01 SP4, 6 SP1, 6 and 7 on Windows XP SP2 and SP3, 6 and 7 on Wind... Read more

    • Published: Apr. 15, 2009
    • Modified: Apr. 09, 2025
  • 9.3

    HIGH
    CVE-2009-0491

    Stack-based buffer overflow in Elecard MPEG Player 5.5 build 15884.081218 allows remote attackers to execute arbitrary code via a M3U file containing a long URL.... Read more

    Affected Products : elecard_mpeg_player
    • Published: Feb. 10, 2009
    • Modified: Apr. 09, 2025
  • 9.3

    HIGH
    CVE-2009-0551

    Microsoft Internet Explorer 6 SP1, 6 and 7 on Windows XP SP2 and SP3, 6 and 7 on Windows Server 2003 SP1 and SP2, 7 on Windows Vista Gold and SP1, and 7 on Windows Server 2008 does not properly handle transition errors in a request for one HTTP document f... Read more

    • Published: Apr. 15, 2009
    • Modified: Apr. 09, 2025
  • 9.3

    HIGH
    CVE-2009-0546

    Stack-based buffer overflow in NewsGator FeedDemon 2.7 and earlier allows user-assisted remote attackers to execute arbitrary code via a long text attribute in an outline element in a .opml file.... Read more

    Affected Products : feeddemon
    • Published: Feb. 12, 2009
    • Modified: Apr. 09, 2025
  • 9.3

    HIGH
    CVE-2009-0375

    Buffer overflow in a DLL file in RealNetworks RealPlayer 10, RealPlayer 10.5 6.0.12.1040 through 6.0.12.1741, RealPlayer 11 11.0.0 through 11.0.4, RealPlayer Enterprise, Mac RealPlayer 10 and 10.1, Linux RealPlayer 10, and Helix Player 10.x allows remote ... Read more

    Affected Products : realplayer
    • Published: Feb. 08, 2009
    • Modified: Apr. 09, 2025
  • 9.3

    HIGH
    CVE-2009-0386

    Heap-based buffer overflow in the qtdemux_parse_samples function in gst/qtdemux/qtdemux.c in GStreamer Good Plug-ins (aka gst-plugins-good) 0.10.9 through 0.10.11 might allow remote attackers to execute arbitrary code via crafted Composition Time To Sampl... Read more

    Affected Products : good_plug-ins
    • Published: Feb. 02, 2009
    • Modified: Apr. 09, 2025
  • 9.3

    HIGH
    CVE-2009-0349

    Stack-based buffer overflow in FTPShell Server 4.3 allows user-assisted remote attackers to cause a denial of service (persistent daemon crash) and possibly execute arbitrary code via a long string in a licensing key (aka .key) file.... Read more

    Affected Products : ftpshell_server
    • Published: Jan. 29, 2009
    • Modified: Apr. 09, 2025
  • 9.3

    HIGH
    CVE-2009-0376

    Heap-based buffer overflow in a DLL file in RealNetworks RealPlayer 10, RealPlayer 10.5 6.0.12.1040 through 6.0.12.1741, RealPlayer 11 11.0.0 through 11.0.4, RealPlayer Enterprise, Mac RealPlayer 10 and 10.1, Linux RealPlayer 10, and Helix Player 10.x all... Read more

    Affected Products : realplayer
    • Published: Feb. 08, 2009
    • Modified: Apr. 09, 2025
  • 9.3

    HIGH
    CVE-2009-0341

    The shell32 module in Microsoft Internet Explorer 7.0 on Windows XP SP3 might allow remote attackers to execute arbitrary code via a long VALUE attribute in an INPUT element, possibly related to a stack consumption vulnerability.... Read more

    Affected Products : internet_explorer windows_xp
    • Published: Jan. 29, 2009
    • Modified: Apr. 09, 2025
  • 9.3

    HIGH
    CVE-2009-0298

    Heap-based buffer overflow in MW6 Technologies Barcode ActiveX control (Barcode.MW6Barcode.1, Barcode.dll) 3.0.0.1 allows remote attackers to execute arbitrary code via a long Supplement property.... Read more

    Affected Products : barcode_activex
    • Published: Jan. 27, 2009
    • Modified: Apr. 09, 2025
  • 9.3

    HIGH
    CVE-2009-0397

    Heap-based buffer overflow in the qtdemux_parse_samples function in gst/qtdemux/qtdemux.c in GStreamer Good Plug-ins (aka gst-plugins-good) 0.10.9 through 0.10.11, and GStreamer Plug-ins (aka gstreamer-plugins) 0.8.5, might allow remote attackers to execu... Read more

    Affected Products : good_plug-ins plug-ins
    • Published: Feb. 03, 2009
    • Modified: Apr. 09, 2025
  • 9.3

    HIGH
    CVE-2009-0254

    Stack-based buffer overflow in easyHDR PRO 1.60.2 allows user-assisted attackers to execute arbitrary code via an invalid Flexible Image Transport System (FITS) file. NOTE: some of these details are obtained from third party information.... Read more

    Affected Products : easyhdr
    • Published: Jan. 22, 2009
    • Modified: Apr. 09, 2025
  • 9.3

    HIGH
    CVE-2009-0306

    Buffer overflow in the IBM Lotus Notes Intellisync ActiveX control in lnresobject.dll in BlackBerry Desktop Manager in Research In Motion (RIM) BlackBerry Desktop Software before 5.0.1 allows remote attackers to execute arbitrary code via a crafted web pa... Read more

    • Published: Nov. 04, 2009
    • Modified: Apr. 09, 2025
  • 9.3

    HIGH
    CVE-2009-0282

    Integer overflow in Ralink Technology USB wireless adapter (RT73) 3.08 for Windows, and other wireless card drivers including rt2400, rt2500, rt2570, and rt61, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary cod... Read more

    Affected Products : windows_2000 rt73
    • Published: Jan. 27, 2009
    • Modified: Apr. 09, 2025
  • 9.3

    HIGH
    CVE-2009-0221

    Integer overflow in Microsoft Office PowerPoint 2002 SP3 and 2003 SP3 allows remote attackers to execute arbitrary code via a PowerPoint file containing a crafted record type for "collaboration information for different slides" that contains a field that ... Read more

    Affected Products : powerpoint office_powerpoint
    • Published: May. 12, 2009
    • Modified: Apr. 09, 2025
  • 9.3

    HIGH
    CVE-2009-0266

    Stack-based buffer overflow in Triologic Media Player 8.0.0.0 allows user-assisted remote attackers to execute arbitrary code via a long string in a .m3l playlist file. NOTE: the provenance of this information is unknown; the details are obtained solely ... Read more

    Affected Products : media_player
    • Published: Jan. 26, 2009
    • Modified: Apr. 09, 2025
  • 9.3

    HIGH
    CVE-2009-0191

    Foxit Reader 2.3 before Build 3902 and 3.0 before Build 1506, including 3.0.2009.1301, does not properly handle a JBIG2 symbol dictionary segment with zero new symbols, which allows remote attackers to execute arbitrary code via a crafted PDF file that tr... Read more

    Affected Products : foxit_reader reader
    • Published: Mar. 10, 2009
    • Modified: Apr. 09, 2025
  • 9.3

    HIGH
    CVE-2009-0187

    Stack-based buffer overflow in Orbit Downloader 2.8.2 and 2.8.3, and possibly other versions before 2.8.5, allows remote attackers to execute arbitrary code via a crafted HTTP URL with a long host name, which is not properly handled when constructing a "C... Read more

    Affected Products : orbit_downloader
    • Published: Feb. 26, 2009
    • Modified: Apr. 09, 2025
  • 9.3

    HIGH
    CVE-2009-0224

    Microsoft Office PowerPoint 2000 SP3, 2002 SP3, 2003 SP3, and 2007 SP1 and SP2; PowerPoint Viewer 2003 and 2007 SP1 and SP2; PowerPoint in Microsoft Office 2004 for Mac and 2008 for Mac; Open XML File Format Converter for Mac; Microsoft Works 8.5 and 9.0;... Read more

    • Published: May. 12, 2009
    • Modified: Apr. 09, 2025
  • 9.3

    HIGH
    CVE-2009-0184

    Multiple buffer overflows in the torrent parsing implementation in Free Download Manager (FDM) 2.5 Build 758 and 3.0 Build 844 allow remote attackers to execute arbitrary code via (1) a long file name within a torrent file, (2) a long tracker URL in a tor... Read more

    • Published: Feb. 03, 2009
    • Modified: Apr. 09, 2025
Showing 20 of 294510 Results