Latest CVE Feed

Following is the list of latest published vulnerabilities. You can filter the list based on the severity of the vulnerability, whether it is actively exploited (also known as CISA KEV List) or remotely exploitable. You can also sort the list based on the published date, last updated date, or CVSS score.
  • 9.3

    HIGH
    CVE-2007-2295

    Heap-based buffer overflow in the JVTCompEncodeFrame function in Apple Quicktime 7.1.5 and other versions before 7.2 allows remote attackers to execute arbitrary code via a crafted H.264 MOV file.... Read more

    Affected Products : quicktime
    • Published: Apr. 26, 2007
    • Modified: Apr. 09, 2025
  • 9.3

    HIGH
    CVE-2007-1819

    Stack-based buffer overflow in the SPIDERLib.Loader ActiveX control (Spider90.ocx) 9.1.0.4353 in TestDirector (TD) for Mercury Quality Center 9.0 before Patch 12.1, and 8.2 SP1 before Patch 32, allows remote attackers to execute arbitrary code via a long ... Read more

    Affected Products : mercury_quality_center
    • Published: Apr. 02, 2007
    • Modified: Apr. 09, 2025
  • 9.3

    HIGH
    CVE-2007-0245

    Heap-based buffer overflow in OpenOffice.org (OOo) 2.2.1 and earlier allows remote attackers to execute arbitrary code via a RTF file with a crafted prtdata tag with a length parameter inconsistency, which causes vtable entries to be overwritten.... Read more

    Affected Products : openoffice
    • Published: Jun. 12, 2007
    • Modified: Apr. 09, 2025
  • 9.3

    HIGH
    CVE-2007-0208

    Microsoft Word in Office 2000 SP3, XP SP3, Office 2003 SP2, Works Suite 2004 to 2006, and Office 2004 for Mac does not correctly check the properties of certain documents and warn the user of macro content, which allows user-assisted remote attackers to e... Read more

    Affected Products : office word word_viewer works
    • Published: Feb. 13, 2007
    • Modified: Apr. 09, 2025
  • 9.3

    HIGH
    CVE-2006-4693

    Unspecified vulnerability in Microsoft Word 2004 for Mac and v.X for Mac allows remote user-assisted attackers to execute arbitrary code via a crafted string in a Word file, a different issue than CVE-2006-3647 and CVE-2006-3651.... Read more

    Affected Products : office word
    • Published: Oct. 10, 2006
    • Modified: Apr. 09, 2025
  • 9.3

    HIGH
    CVE-2006-4565

    Heap-based buffer overflow in Mozilla Firefox before 1.5.0.7, Thunderbird before 1.5.0.7, and SeaMonkey before 1.0.5 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a JavaScript regular expression with ... Read more

    Affected Products : firefox thunderbird seamonkey
    • Published: Sep. 15, 2006
    • Modified: Apr. 03, 2025
  • 9.3

    HIGH
    CVE-2018-4935

    Adobe Flash Player versions 29.0.0.113 and earlier have an exploitable out-of-bounds write vulnerability. Successful exploitation could lead to arbitrary code execution in the context of the current user.... Read more

    • Published: May. 19, 2018
    • Modified: Nov. 21, 2024
  • 9.3

    HIGH
    CVE-2006-4482

    Multiple heap-based buffer overflows in the (1) str_repeat and (2) wordwrap functions in ext/standard/string.c in PHP before 5.1.5, when used on a 64-bit system, have unspecified impact and attack vectors, a different vulnerability than CVE-2006-1990.... Read more

    Affected Products : ubuntu_linux debian_linux php
    • Published: Aug. 31, 2006
    • Modified: Apr. 03, 2025
  • 9.3

    HIGH
    CVE-2018-4919

    Adobe Flash Player versions 28.0.0.161 and earlier have an exploitable use after free vulnerability. Successful exploitation could lead to arbitrary code execution in the context of the current user.... Read more

    • Published: May. 19, 2018
    • Modified: Nov. 21, 2024
  • 9.3

    HIGH
    CVE-2006-3864

    Unspecified vulnerability in mso.dll in Microsoft Office 2000, XP, and 2003, and Microsoft PowerPoint 2000, XP, and 2003, allows remote user-assisted attackers to execute arbitrary code via a malformed record in a (1) .DOC, (2) .PPT, or (3) .XLS file that... Read more

    Affected Products : office project visio
    • Published: Oct. 10, 2006
    • Modified: Apr. 09, 2025
  • 9.3

    HIGH
    CVE-2006-1308

    Unspecified vulnerability in Microsoft Excel 2000 through 2004 allows user-assisted attackers to execute arbitrary code via a .xls file with a crafted FNGROUPCOUNT value.... Read more

    Affected Products : excel_viewer excel
    • Published: Jul. 13, 2006
    • Modified: Apr. 03, 2025
  • 9.3

    HIGH
    CVE-2006-1540

    MSO.DLL in Microsoft Office 2000, Office XP (2002), and Office 2003 allows user-assisted attackers to cause a denial of service and execute arbitrary code via multiple attack vectors, as originally demonstrated using a crafted document record with a malfo... Read more

    Affected Products : office
    • Published: Mar. 30, 2006
    • Modified: Apr. 03, 2025
  • 9.3

    HIGH
    CVE-2018-4858

    A vulnerability has been identified in IEC 61850 system configurator (All versions < V5.80), DIGSI 5 (affected as IEC 61850 system configurator is incorporated) (All versions < V7.80), DIGSI 4 (All versions < V4.93), SICAM PAS/PQS (All versions < V8.11), ... Read more

    • Published: Jul. 09, 2018
    • Modified: Nov. 21, 2024
  • 9.3

    HIGH
    CVE-2006-1318

    Microsoft Office 2003 SP1 and SP2, Office XP SP3, Office 2000 SP3, Office 2004 for Mac, and Office X for Mac do not properly parse record lengths, which allows remote attackers to execute arbitrary code via a malformed control in an Office document, aka "... Read more

    Affected Products : office
    • Published: Sep. 19, 2014
    • Modified: Apr. 12, 2025
  • 9.3

    HIGH
    CVE-2006-1302

    Buffer overflow in Microsoft Excel 2000 through 2003 allows user-assisted attackers to execute arbitrary code via a .xls file with certain crafted fields in a SELECTION record, which triggers memory corruption, aka "Malformed SELECTION record Vulnerabilit... Read more

    Affected Products : excel_viewer excel
    • Published: Jul. 13, 2006
    • Modified: Apr. 03, 2025
  • 9.3

    HIGH
    CVE-2006-1311

    The RichEdit component in Microsoft Windows 2000 SP4, XP SP2, and 2003 SP1; Office 2000 SP3, XP SP3, 2003 SP2, and Office 2004 for Mac; and Learning Essentials for Microsoft Office 1.0, 1.1, and 1.5 allows user-assisted remote attackers to execute arbitra... Read more

    • Published: Feb. 13, 2007
    • Modified: Apr. 09, 2025
  • 9.3

    HIGH
    CVE-2006-1304

    Buffer overflow in Microsoft Excel 2000 through 2003 allows user-assisted attackers to execute arbitrary code via a .xls file with a crafted COLINFO record, which triggers the overflow during a "data filling operation."... Read more

    Affected Products : excel_viewer excel
    • Published: Jul. 13, 2006
    • Modified: Apr. 03, 2025
  • 9.3

    HIGH
    CVE-2018-4463

    A memory corruption issue was addressed with improved memory handling. This issue affected versions prior to macOS Mojave 10.14.2.... Read more

    Affected Products : mac_os_x
    • Published: Apr. 03, 2019
    • Modified: Nov. 21, 2024
  • 9.3

    HIGH
    CVE-2018-4450

    A memory corruption issue was addressed with improved memory handling. This issue affected versions prior to macOS Mojave 10.14.2.... Read more

    Affected Products : mac_os_x
    • Published: Apr. 03, 2019
    • Modified: Nov. 21, 2024
  • 9.3

    HIGH
    CVE-2018-4447

    A memory corruption issue was addressed with improved state management. This issue affected versions prior to iOS 12.1.1, macOS Mojave 10.14.2, tvOS 12.1.1, watchOS 5.1.2.... Read more

    Affected Products : mac_os_x iphone_os tvos watchos
    • Published: Apr. 03, 2019
    • Modified: Nov. 21, 2024
Showing 20 of 294842 Results