Latest CVE Feed
-
10.0
HIGHCVE-2009-3091
Unspecified vulnerability on the ASUS WL-330gE has unknown impact and remote attack vectors, as demonstrated by a certain module in VulnDisco Pack Professional 8.11. NOTE: as of 20090903, this disclosure has no actionable information. However, because th... Read more
Affected Products : asus_wl-330ge- EPSS Score: %0.33
- Published: Sep. 08, 2009
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2009-3098
Unspecified vulnerability in the Portal in HP Operations Dashboard 2.1 on Windows Server 2003 SP2 allows remote attackers to have an unknown impact, related to a "Remote exploit," as demonstrated by a certain module in VulnDisco Pack Professional 8.11. N... Read more
- EPSS Score: %1.64
- Published: Sep. 08, 2009
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2008-7189
Multiple unspecified vulnerabilities in Local Media Browser before 0.1 have unknown impact and attack vectors related to "Security holes."... Read more
Affected Products : local_media_browser- EPSS Score: %0.34
- Published: Sep. 09, 2009
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2009-3112
Unspecified vulnerability in OXID eShop Professional, Enterprise, and Community Edition before 4.1.0 allows remote attackers to gain administrator privileges and access the shop backend via a crafted parameter.... Read more
- EPSS Score: %0.77
- Published: Sep. 09, 2009
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2009-3177
Unspecified vulnerability in Kaspersky Online Scanner 7.0 has unknown impact and attack vectors, as demonstrated by a certain module in VulnDisco Pack Professional 8.8, (1) "Kaspersky Online Antivirus Scanner 7.0 exploit (Linux)" and (2) "Kaspersky Online... Read more
- EPSS Score: %0.45
- Published: Sep. 11, 2009
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2008-7115
The web interface to the Belkin Wireless G router and ADSL2 modem F5D7632-4V6 with firmware 6.01.08 allows remote attackers to bypass authentication and gain administrator privileges via a direct request to (1) statusprocess.exe, (2) system_all.exe, or (3... Read more
- EPSS Score: %3.43
- Published: Aug. 28, 2009
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2009-3663
Format string vulnerability in the h_readrequest function in http.c in httpdx Web Server 1.4 allows remote attackers to cause a denial of service (crash) or execute arbitrary code via format string specifiers in the Host header.... Read more
Affected Products : httpdx- EPSS Score: %19.33
- Published: Oct. 11, 2009
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2009-3819
Unspecified vulnerability in the Random Images (maag_randomimage) extension 1.6.4 and earlier for TYPO3 allows remote attackers to execute arbitrary shell commands via unspecified vectors.... Read more
- EPSS Score: %2.08
- Published: Oct. 28, 2009
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2009-4188
HP Operations Dashboard has a default password of j2deployer for the j2deployer account, which allows remote attackers to execute arbitrary code via a session that uses the manager role to conduct unrestricted file upload attacks against the /manager serv... Read more
Affected Products : operations_dashboard- EPSS Score: %85.99
- Published: Dec. 03, 2009
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2009-4368
Multiple unspecified vulnerabilities in Centreon before 2.1.4 have unknown impact and attack vectors in the (1) ping tool, (2) traceroute tool, and (3) ldap import, possibly related to improper authentication.... Read more
- EPSS Score: %0.66
- Published: Dec. 21, 2009
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2009-4463
Intellicom NetBiter WebSCADA devices use default passwords for the HICP network configuration service, which makes it easier for remote attackers to modify network settings and cause a denial of service. NOTE: this is only a vulnerability when the adminis... Read more
- EPSS Score: %2.43
- Published: Dec. 30, 2009
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2009-4482
Buffer overflow in MediaServer.exe in TVersity 1.6 allows remote attackers to execute arbitrary code via unspecified vectors, as demonstrated by the vd_tversity module in VulnDisco Pack Professional 8.11. NOTE: as of 20091229, this disclosure has no acti... Read more
Affected Products : tversity- EPSS Score: %6.12
- Published: Dec. 30, 2009
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2010-0361
Stack-based buffer overflow in the WebDAV implementation in webservd in Sun Java System Web Server (aka SJWS) 7.0 Update 7 allows remote attackers to cause a denial of service (daemon crash) and possibly have unspecified other impact via a long URI in an ... Read more
Affected Products : java_system_web_server- EPSS Score: %88.39
- Published: Jan. 20, 2010
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2010-0689
The ExecuteExe method in the DVBSExeCall Control ActiveX control 1.0.0.1 in DVBSExeCall.ocx in DATEV Base System (aka Grundpaket Basis) allows remote attackers to execute arbitrary commands via unspecified vectors.... Read more
Affected Products : base_system- EPSS Score: %6.30
- Published: Feb. 26, 2010
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2010-0918
Multiple unspecified vulnerabilities in the UltraLite functionality in IBM Lotus iNotes (aka Domino Web Access or DWA) before 229.281 for Domino 8.0.2 FP4 have unknown impact and attack vectors.... Read more
- EPSS Score: %0.54
- Published: Mar. 03, 2010
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2010-0570
Cisco Digital Media Manager (DMM) 5.0.x and 5.1.x has a default password for the Tomcat administration account, which makes it easier for remote attackers to execute arbitrary code via a crafted web application, aka Bug ID CSCta03378.... Read more
Affected Products : digital_media_manager- EPSS Score: %2.93
- Published: Mar. 05, 2010
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2010-1041
Unspecified vulnerability in the single sign-on functionality in the Web Services implementation in IBM DB2 Content Manager (CM) Toolkit 8.3 before FP13 on z/OS and DB2 Information Integrator for Content 8.3 before FP13 has unknown impact and remote attac... Read more
Affected Products : db2_content_manager- EPSS Score: %1.70
- Published: Mar. 23, 2010
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2010-1228
Multiple race conditions in the sandbox infrastructure in Google Chrome before 4.1.249.1036 have unspecified impact and attack vectors.... Read more
Affected Products : chrome- EPSS Score: %0.34
- Published: Apr. 01, 2010
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2010-1356
Unspecified vulnerability on the TANDBERG Video Communication Server (VCS) before X5.0 allows remote attackers to execute arbitrary code via unknown vectors, aka Reference ID 69773.... Read more
Affected Products : tandberg_video_communication_server- EPSS Score: %3.03
- Published: Apr. 13, 2010
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2010-0600
Cisco Mediator Framework 1.5.1 before 1.5.1.build.14-eng, 2.2 before 2.2.1.dev.1, and 3.0 before 3.0.9.release.1 on the Cisco Network Building Mediator NBM-2400 and NBM-4800 and the Richards-Zeta Mediator 2500 does not properly restrict network access to ... Read more
- EPSS Score: %1.80
- Published: May. 27, 2010
- Modified: Apr. 11, 2025