Latest CVE Feed
-
10.0
HIGHCVE-2015-0320
Use-after-free vulnerability in Adobe Flash Player before 13.0.0.269 and 14.x through 16.x before 16.0.0.305 on Windows and OS X and before 11.2.202.442 on Linux allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability... Read more
- EPSS Score: %6.84
- Published: Feb. 06, 2015
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2008-7252
libraries/File.class.php in phpMyAdmin 2.11.x before 2.11.10 uses predictable filenames for temporary files, which has unknown impact and attack vectors.... Read more
Affected Products : phpmyadmin- EPSS Score: %3.14
- Published: Jan. 19, 2010
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2015-0310
Adobe Flash Player before 13.0.0.262 and 14.x through 16.x before 16.0.0.287 on Windows and OS X and before 11.2.202.438 on Linux does not properly restrict discovery of memory addresses, which allows attackers to bypass the ASLR protection mechanism on W... Read more
- Actively Exploited
- EPSS Score: %40.55
- Published: Jan. 23, 2015
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2015-0321
Adobe Flash Player before 13.0.0.269 and 14.x through 16.x before 16.0.0.305 on Windows and OS X and before 11.2.202.442 on Linux allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a differ... Read more
- EPSS Score: %11.43
- Published: Feb. 06, 2015
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2015-0313
Use-after-free vulnerability in Adobe Flash Player before 13.0.0.269 and 14.x through 16.x before 16.0.0.305 on Windows and OS X and before 11.2.202.442 on Linux allows remote attackers to execute arbitrary code via unspecified vectors, as exploited in th... Read more
Affected Products : edge windows_8.1 windows_rt_8.1 windows_server_2012 linux_kernel internet_explorer flash_player mac_os_x opensuse linux_enterprise_desktop +6 more products- Actively Exploited
- EPSS Score: %93.17
- Published: Feb. 02, 2015
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2015-0303
Adobe Flash Player before 13.0.0.260 and 14.x through 16.x before 16.0.0.257 on Windows and OS X and before 11.2.202.429 on Linux, Adobe AIR before 16.0.0.245 on Windows and OS X and before 16.0.0.272 on Android, Adobe AIR SDK before 16.0.0.272, and Adobe... Read more
Affected Products : linux_kernel flash_player mac_os_x windows adobe_air adobe_air_sdk adobe_air_sdk_and_compiler- EPSS Score: %11.31
- Published: Jan. 13, 2015
- Modified: Apr. 12, 2025
-
10.0
CRITICALCVE-2024-31996
XWiki Platform is a generic wiki platform. Starting in version 3.0.1 and prior to versions 4.10.19, 15.5.4, and 15.10-rc-1, the HTML escaping of escaping tool that is used in XWiki doesn't escape `{`, which, when used in certain places, allows XWiki synta... Read more
Affected Products : xwiki- Published: Apr. 10, 2024
- Modified: Jan. 09, 2025
-
10.0
HIGHCVE-2017-7827
Memory safety bugs were reported in Firefox 56. Some of these bugs showed evidence of memory corruption and we presume that with enough effort that some of these could be exploited to run arbitrary code. This vulnerability affects Firefox < 57.... Read more
Affected Products : firefox- EPSS Score: %2.65
- Published: Jun. 11, 2018
- Modified: Nov. 21, 2024
-
10.0
HIGHCVE-2015-7246
D-Link DVG-N5402SP with firmware W1000CN-00, W1000CN-03, or W2000EN-00 has a default password of root for the root account and tw for the tw account, which makes it easier for remote attackers to obtain administrative access.... Read more
- EPSS Score: %33.10
- Published: Apr. 24, 2017
- Modified: Apr. 20, 2025
-
10.0
HIGHCVE-2015-0316
Adobe Flash Player before 13.0.0.269 and 14.x through 16.x before 16.0.0.305 on Windows and OS X and before 11.2.202.442 on Linux allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a differ... Read more
- EPSS Score: %11.43
- Published: Feb. 06, 2015
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2015-0324
Buffer overflow in Adobe Flash Player before 13.0.0.269 and 14.x through 16.x before 16.0.0.305 on Windows and OS X and before 11.2.202.442 on Linux allows attackers to execute arbitrary code via unspecified vectors.... Read more
- EPSS Score: %7.94
- Published: Feb. 06, 2015
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2015-0346
Double free vulnerability in Adobe Flash Player before 13.0.0.281 and 14.x through 17.x before 17.0.0.169 on Windows and OS X and before 11.2.202.457 on Linux allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability th... Read more
- EPSS Score: %6.60
- Published: Apr. 14, 2015
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2015-0235
Heap-based buffer overflow in the __nss_hostname_digits_dots function in glibc 2.2, and other 2.x versions before 2.18, allows context-dependent attackers to execute arbitrary code via vectors related to the (1) gethostbyname or (2) gethostbyname2 functio... Read more
Affected Products : debian_linux communications_webrtc_session_controller communications_policy_management mac_os_x linux virtualization php vm_virtualbox glibc communications_application_session_controller +11 more products- EPSS Score: %83.84
- Published: Jan. 28, 2015
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2009-0138
servermgrd (Server Manager) in Apple Mac OS X 10.5.6 does not properly validate authentication credentials, which allows remote attackers to modify the system configuration.... Read more
- EPSS Score: %2.50
- Published: Feb. 13, 2009
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2015-0335
Adobe Flash Player before 13.0.0.277 and 14.x through 17.x before 17.0.0.134 on Windows and OS X and before 11.2.202.451 on Linux allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a differ... Read more
- EPSS Score: %9.33
- Published: Mar. 13, 2015
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2015-0198
IBM General Parallel File System (GPFS) 3.4 before 3.4.0.32, 3.5 before 3.5.0.24, and 4.1 before 4.1.0.7 in certain cipherList configurations allows remote attackers to bypass authentication and execute arbitrary programs as root via unspecified vectors.... Read more
Affected Products : general_parallel_file_system- EPSS Score: %1.72
- Published: Mar. 24, 2015
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2011-0815
Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 6 Update 25 and earlier, 5.0 Update 29 and earlier, and 1.4.2_31 and earlier allows remote untrusted Java Web Start applications and untrusted Java applets to affe... Read more
- EPSS Score: %7.57
- Published: Jun. 14, 2011
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2011-0873
Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 6 Update 25 and earlier, and 5.0 Update 29 and earlier, allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related ... Read more
- EPSS Score: %14.99
- Published: Jun. 14, 2011
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2015-0349
Use-after-free vulnerability in Adobe Flash Player before 13.0.0.281 and 14.x through 17.x before 17.0.0.169 on Windows and OS X and before 11.2.202.457 on Linux allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability... Read more
- EPSS Score: %11.02
- Published: Apr. 14, 2015
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2015-0311
Unspecified vulnerability in Adobe Flash Player through 13.0.0.262 and 14.x, 15.x, and 16.x through 16.0.0.287 on Windows and OS X and through 11.2.202.438 on Linux allows remote attackers to execute arbitrary code via unknown vectors, as exploited in the... Read more
Affected Products : edge windows_8.1 windows_rt_8.1 windows_server_2012 linux_kernel internet_explorer flash_player mac_os_x linux_enterprise_desktop windows_10_1507 +4 more products- Actively Exploited
- EPSS Score: %92.74
- Published: Jan. 23, 2015
- Modified: Apr. 12, 2025