Latest CVE Feed
-
9.3
HIGHCVE-2021-40755
Adobe After Effects version 18.4.1 (and earlier) is affected by a memory corruption vulnerability due to insecure handling of a malicious SGI file in the DoReadContinue function, potentially resulting in arbitrary code execution in the context of the curr... Read more
- Published: Nov. 18, 2021
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2020-1046
A remote code execution vulnerability exists when Microsoft .NET Framework processes input. An attacker who successfully exploited this vulnerability could take control of an affected system. To exploit the vulnerability, an attacker would need to be able... Read more
- Published: Aug. 17, 2020
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2020-0953
A remote code execution vulnerability exists when the Windows Jet Database Engine improperly handles objects in memory, aka 'Jet Database Engine Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-0889, CVE-2020-0959, CVE-2020-0960, ... Read more
Affected Products : windows_10 windows_7 windows_8.1 windows_rt_8.1 windows_server_2008 windows_server_2012 windows_server_2016 windows_server_2019 windows_server windows +1 more products- Published: Apr. 15, 2020
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2021-36079
Adobe Bridge version 11.1 (and earlier) is affected by an out-of-bounds read vulnerability when parsing a crafted .SGI file, which could result in a read past the end of an allocated memory structure. An attacker could leverage this vulnerability to execu... Read more
- Published: Sep. 01, 2021
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2021-36017
Adobe After Effects version 18.2.1 (and earlier) is affected by a memory corruption vulnerability when parsing a specially crafted file. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code execution in the context of th... Read more
- Published: Sep. 02, 2021
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2020-0816
A remote code execution vulnerability exists when Microsoft Edge improperly accesses objects in memory, aka 'Microsoft Edge Memory Corruption Vulnerability'.... Read more
- Published: Mar. 12, 2020
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2021-34522
Microsoft Defender Remote Code Execution Vulnerability... Read more
Affected Products : malware_protection_engine- Published: Jul. 14, 2021
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2020-0687
A remote code execution vulnerability exists when the Windows font library improperly handles specially crafted embedded fonts, aka 'Microsoft Graphics Remote Code Execution Vulnerability'.... Read more
Affected Products : windows_10 windows_7 windows_8.1 windows_rt_8.1 windows_server_2008 windows_server_2012 windows_server_2016 windows_server_2019 windows_server windows +1 more products- Published: Apr. 15, 2020
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2021-31214
Visual Studio Code Remote Code Execution Vulnerability... Read more
Affected Products : visual_studio_code- Published: May. 11, 2021
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2021-30985
An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 15.2 and iPadOS 15.2. A malicious application may be able to execute arbitrary code with kernel privileges.... Read more
- Published: Aug. 24, 2021
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2019-8836
A memory corruption issue was addressed with improved memory handling. This issue is fixed in watchOS 6.1.2, iOS 13.3.1 and iPadOS 13.3.1, tvOS 13.3.1. An application may be able to execute arbitrary code with kernel privileges.... Read more
- Published: Oct. 27, 2020
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2019-8829
A memory corruption vulnerability was addressed with improved locking. This issue is fixed in macOS Catalina 10.15.1, Security Update 2019-001, and Security Update 2019-006, watchOS 6.1, tvOS 13.2, iOS 13.2 and iPadOS 13.2. An application may be able to e... Read more
- Published: Oct. 27, 2020
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2021-30838
A memory corruption issue was addressed with improved memory handling. This issue is fixed in iOS 15 and iPadOS 15. A malicious application may be able to execute arbitrary code with system privileges on devices with an Apple Neural Engine.... Read more
- Published: Oct. 19, 2021
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2021-30807
A memory corruption issue was addressed with improved memory handling. This issue is fixed in macOS Big Sur 11.5.1, iOS 14.7.1 and iPadOS 14.7.1, watchOS 7.6.1. An application may be able to execute arbitrary code with kernel privileges. Apple is aware of... Read more
- Actively Exploited
- Published: Oct. 19, 2021
- Modified: Feb. 28, 2025
-
9.3
HIGHCVE-2019-8695
A memory corruption issue was addressed with improved memory handling. This issue is fixed in macOS Mojave 10.14.6. An application may be able to execute arbitrary code with system privileges.... Read more
- Published: Dec. 18, 2019
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2021-30772
This issue was addressed with improved checks. This issue is fixed in macOS Big Sur 11.5. A malicious application may be able to gain root privileges.... Read more
- Published: Sep. 08, 2021
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2019-8605
A use after free issue was addressed with improved memory management. This issue is fixed in iOS 12.3, macOS Mojave 10.14.5, tvOS 12.3, watchOS 5.2.1. A malicious application may be able to execute arbitrary code with system privileges.... Read more
- Actively Exploited
- Published: Dec. 18, 2019
- Modified: Feb. 28, 2025
-
9.3
HIGHCVE-2021-3060
An OS command injection vulnerability in the Simple Certificate Enrollment Protocol (SCEP) feature of PAN-OS software allows an unauthenticated network-based attacker with specific knowledge of the firewall configuration to execute arbitrary code with roo... Read more
- Published: Nov. 10, 2021
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2019-8549
Multiple input validation issues existed in MIG generated code. These issues were addressed with improved validation. This issue is fixed in iOS 12.2, macOS Mojave 10.14.4, tvOS 12.2, watchOS 5.2. A malicious application may be able to execute arbitrary c... Read more
- Published: Dec. 18, 2019
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2021-28605
Adobe After Effects version 18.2 (and earlier) is affected by a memory corruption vulnerability when parsing a specially crafted file. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the ... Read more
- Published: Aug. 24, 2021
- Modified: Nov. 21, 2024