Latest CVE Feed

Following is the list of latest published vulnerabilities. You can filter the list based on the severity of the vulnerability, whether it is actively exploited (also known as CISA KEV List) or remotely exploitable. You can also sort the list based on the published date, last updated date, or CVSS score.
  • 9.3

    HIGH
    CVE-2012-0266

    Multiple stack-based buffer overflows in the NTR ActiveX control before 2.0.4.8 allow remote attackers to execute arbitrary code via (1) a long bstrUrl parameter to the StartModule method, (2) a long bstrParams parameter to the Check method, a long bstrUr... Read more

    Affected Products : ntr_activex_control
    • Published: Jan. 15, 2012
    • Modified: Apr. 11, 2025
  • 9.3

    HIGH
    CVE-2012-0265

    Stack-based buffer overflow in Apple QuickTime before 7.7.2 on Windows allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted pathname for a file.... Read more

    Affected Products : quicktime windows
    • Published: May. 16, 2012
    • Modified: Apr. 11, 2025
  • 9.3

    HIGH
    CVE-2018-15422

    A vulnerability in the Cisco Webex Network Recording Player for Microsoft Windows and the Cisco Webex Player for Microsoft Windows could allow an attacker to execute arbitrary code on an affected system. The vulnerability exist because the affected softwa... Read more

    • Published: Oct. 05, 2018
    • Modified: Nov. 21, 2024
  • 9.3

    HIGH
    CVE-2018-15417

    A vulnerability in the Cisco Webex Network Recording Player for Microsoft Windows and the Cisco Webex Player for Microsoft Windows could allow an attacker to execute arbitrary code on an affected system. The vulnerability exist because the affected softwa... Read more

    • Published: Oct. 05, 2018
    • Modified: Nov. 21, 2024
  • 9.3

    HIGH
    CVE-2018-15420

    A vulnerability in the Cisco Webex Network Recording Player for Microsoft Windows and the Cisco Webex Player for Microsoft Windows could allow an attacker to execute arbitrary code on an affected system. The vulnerability exist because the affected softwa... Read more

    • Published: Oct. 05, 2018
    • Modified: Nov. 21, 2024
  • 9.3

    HIGH
    CVE-2012-0184

    Microsoft Excel 2003 SP3, 2007 SP2 and SP3, and 2010 Gold and SP1; Office 2008 and 2011 for Mac; Excel Viewer; and Office Compatibility Pack SP2 and SP3 do not properly handle memory during the opening of files, which allows remote attackers to execute ar... Read more

    • Published: May. 09, 2012
    • Modified: Apr. 11, 2025
  • 9.3

    HIGH
    CVE-2012-0182

    Microsoft Word 2007 SP2 and SP3 does not properly handle memory during the parsing of Word documents, which allows remote attackers to execute arbitrary code via a crafted document, aka "Word PAPX Section Corruption Vulnerability."... Read more

    Affected Products : word
    • Published: Oct. 09, 2012
    • Modified: Apr. 11, 2025
  • 9.3

    HIGH
    CVE-2018-15410

    A vulnerability in the Cisco Webex Network Recording Player for Microsoft Windows and the Cisco Webex Player for Microsoft Windows could allow an attacker to execute arbitrary code on an affected system. The vulnerability exist because the affected softwa... Read more

    • Published: Oct. 05, 2018
    • Modified: Nov. 21, 2024
  • 9.3

    HIGH
    CVE-2012-0173

    The Remote Desktop Protocol (RDP) implementation in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2, R2, and R2 SP1, and Windows 7 Gold and SP1 does not properly process packets in memory, which allows... Read more

    • Published: Jun. 12, 2012
    • Modified: Apr. 11, 2025
  • 9.3

    HIGH
    CVE-2018-15412

    A vulnerability in the Cisco Webex Network Recording Player for Microsoft Windows and the Cisco Webex Player for Microsoft Windows could allow an attacker to execute arbitrary code on an affected system. The vulnerability exist because the affected softwa... Read more

    • Published: Oct. 05, 2018
    • Modified: Nov. 21, 2024
  • 9.3

    HIGH
    CVE-2012-0172

    Microsoft Internet Explorer 6 through 8 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessing a deleted object, aka "VML Style Remote Code Execution Vulnerability."... Read more

    Affected Products : internet_explorer
    • Published: Apr. 10, 2012
    • Modified: Apr. 11, 2025
  • 9.3

    HIGH
    CVE-2012-0170

    Microsoft Internet Explorer 6 and 7 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessing a deleted object, aka "OnReadyStateChange Remote Code Execution Vulnerability."... Read more

    Affected Products : internet_explorer
    • Published: Apr. 10, 2012
    • Modified: Apr. 11, 2025
  • 9.3

    HIGH
    CVE-2012-0163

    Microsoft .NET Framework 1.0 SP3, 1.1 SP1, 2.0 SP2, 3.5, 3.5.1, 4, and 4.5 does not properly validate function parameters, which allows remote attackers to execute arbitrary code via (1) a crafted XAML browser application (aka XBAP), (2) a crafted ASP.NET... Read more

    Affected Products : .net_framework
    • Published: Apr. 10, 2012
    • Modified: Apr. 11, 2025
  • 9.3

    HIGH
    CVE-2012-0161

    Microsoft .NET Framework 1.0 SP3, 1.1 SP1, 2.0 SP2, 3.0 SP2, 3.5 SP1, 3.5.1, and 4 does not properly handle an unspecified exception during use of partially trusted assemblies to serialize input data, which allows remote attackers to execute arbitrary cod... Read more

    Affected Products : .net_framework
    • Published: May. 09, 2012
    • Modified: Apr. 11, 2025
  • 9.3

    HIGH
    CVE-2012-0160

    Microsoft .NET Framework 1.0 SP3, 1.1 SP1, 2.0 SP2, 3.0 SP2, 3.5 SP1, 3.5.1, and 4 does not properly serialize input data, which allows remote attackers to execute arbitrary code via (1) a crafted XAML browser application (aka XBAP) or (2) a crafted .NET ... Read more

    Affected Products : .net_framework
    • Published: May. 09, 2012
    • Modified: Apr. 11, 2025
  • 9.3

    HIGH
    CVE-2018-15408

    A vulnerability in the Cisco Webex Network Recording Player for Microsoft Windows and the Cisco Webex Player for Microsoft Windows could allow an attacker to execute arbitrary code on an affected system. The vulnerability exist because the affected softwa... Read more

    • Published: Oct. 05, 2018
    • Modified: Nov. 21, 2024
  • 9.3

    HIGH
    CVE-2012-0136

    Microsoft Visio Viewer 2010 Gold and SP1 does not properly handle memory during the parsing of files, which allows remote attackers to execute arbitrary code via crafted attributes in a Visio file, aka "VSD File Format Memory Corruption Vulnerability," a ... Read more

    Affected Products : visio_viewer
    • Published: Feb. 14, 2012
    • Modified: Apr. 11, 2025
  • 9.3

    HIGH
    CVE-2012-0016

    Untrusted search path vulnerability in Microsoft Expression Design; Expression Design SP1; and Expression Design 2, 3, and 4 allows local users to gain privileges via a Trojan horse DLL in the current working directory, as demonstrated by a directory that... Read more

    Affected Products : expression_design
    • Published: Mar. 13, 2012
    • Modified: Apr. 11, 2025
  • 9.3

    HIGH
    CVE-2012-0004

    Unspecified vulnerability in DirectShow in DirectX in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2, R2, and R2 SP1, and Windows 7 Gold and SP1 allows remote attackers to execute arbitrary code via a... Read more

    • Published: Jan. 10, 2012
    • Modified: Apr. 11, 2025
  • 9.3

    HIGH
    CVE-2012-0001

    The kernel in Microsoft Windows XP SP2, Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2, R2, and R2 SP1, and Windows 7 Gold and SP1 does not properly load structured exception handling tables, which allows context-dependent attackers t... Read more

    • Published: Jan. 10, 2012
    • Modified: Apr. 11, 2025
Showing 20 of 294848 Results