Latest CVE Feed

Following is the list of latest published vulnerabilities. You can filter the list based on the severity of the vulnerability, whether it is actively exploited (also known as CISA KEV List) or remotely exploitable. You can also sort the list based on the published date, last updated date, or CVSS score.
  • 10.0

    HIGH
    CVE-2010-2276

    The default configuration of the build process in Dojo 0.4.x before 0.4.4, 1.0.x before 1.0.3, 1.1.x before 1.1.2, 1.2.x before 1.2.4, 1.3.x before 1.3.3, and 1.4.x before 1.4.2 has the copyTests=true and mini=false options, which makes it easier for remo... Read more

    Affected Products : dojo
    • EPSS Score: %3.51
    • Published: Jun. 15, 2010
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2010-2351

    Stack-based buffer overflow in the CIFS.NLM driver in Netware SMB 1.0 for Novell Netware 6.5 SP8 and earlier allows remote attackers to execute arbitrary code via a Sessions Setup AndX packet with a long AccountName.... Read more

    Affected Products : netware netware
    • EPSS Score: %14.48
    • Published: Jun. 21, 2010
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2010-2976

    The controller in Cisco Unified Wireless Network (UWN) Solution 7.x through 7.0.98.0 has (1) a default SNMP read-only community of public, (2) a default SNMP read-write community of private, and a value of "default" for the (3) SNMP v3 username, (4) SNMP ... Read more

    • EPSS Score: %2.26
    • Published: Aug. 10, 2010
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2010-3032

    Integer overflow in the OBGIOPServerWorker::extractHeader function in the ebus-3-3-2-6.dll module in SAP Crystal Reports 2008 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a GIOP packet with a crafted... Read more

    Affected Products : crystal_reports
    • EPSS Score: %25.56
    • Published: Aug. 17, 2010
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2010-3111

    Google Chrome before 6.0.472.53 does not properly mitigate an unspecified flaw in the Windows kernel, which has unknown impact and attack vectors, a different vulnerability than CVE-2010-2897.... Read more

    Affected Products : chrome
    • EPSS Score: %0.30
    • Published: Aug. 24, 2010
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2010-3398

    Unspecified vulnerability in the webcontainer implementation in IBM Lotus Sametime Connect 8.5.1 before CF1 has unknown impact and attack vectors, aka SPRs LXUU87S57H and LXUU87S93W.... Read more

    • EPSS Score: %0.51
    • Published: Sep. 15, 2010
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2010-3757

    Format string vulnerability in the _Eventlog function in FastBackServer.exe in the Server in IBM Tivoli Storage Manager (TSM) FastBack 5.5.0.0 through 5.5.6.0 and 6.1.0.0 through 6.1.0.1 allows remote attackers to execute arbitrary code via format string ... Read more

    Affected Products : tivoli_storage_manager_fastback
    • EPSS Score: %8.46
    • Published: Oct. 05, 2010
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2010-3759

    FastBackMount.exe in the Mount service in IBM Tivoli Storage Manager (TSM) FastBack 5.5.0.0 through 5.5.6.0 and 6.1.0.0 through 6.1.0.1 writes a certain value to a memory location specified by a UDP packet field, which allows remote attackers to execute a... Read more

    Affected Products : tivoli_storage_manager_fastback
    • EPSS Score: %8.46
    • Published: Oct. 05, 2010
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2010-4218

    Unspecified vulnerability in Web Services in IBM ENOVIA 6 has unknown impact and attack vectors, related to a system that becomes "exposed to the internet."... Read more

    Affected Products : enovia
    • EPSS Score: %1.33
    • Published: Nov. 09, 2010
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2010-4232

    The web-based administration interface on the Camtron CMNC-200 Full HD IP Camera and TecVoz CMNC-200 Megapixel IP Camera with firmware 1.102A-008 allows remote attackers to bypass authentication via a // (slash slash) at the beginning of a URI, as demonst... Read more

    • EPSS Score: %6.72
    • Published: Nov. 17, 2010
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2010-4116

    Unspecified vulnerability in HP StorageWorks Storage Mirroring 5.x before 5.2.2.1771.2 allows remote attackers to execute arbitrary code via unknown vectors.... Read more

    Affected Products : storageworks_storage_mirroring
    • EPSS Score: %17.39
    • Published: Dec. 22, 2010
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2011-0406

    Heap-based buffer overflow in HistorySvr.exe in WellinTech KingView 6.53 allows remote attackers to execute arbitrary code via a long request to TCP port 777.... Read more

    Affected Products : kingview
    • EPSS Score: %62.01
    • Published: Jan. 11, 2011
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2010-4449

    Unspecified vulnerability in the Audit Vault component in Oracle Audit Vault 10.2.3.2 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors. NOTE: the previous information was obtained from the January 2011 CP... Read more

    Affected Products : audit_vault
    • EPSS Score: %5.81
    • Published: Jan. 19, 2011
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2011-0732

    Multiple unspecified vulnerabilities in IBM Tivoli Integrated Portal (TIP) 1.1.1.1, as used in IBM Tivoli Common Reporting (TCR) 1.2.0 before Interim Fix 9, have unknown impact and attack vectors, related to "security vulnerabilities of Websphere Applicat... Read more

    • EPSS Score: %0.63
    • Published: Feb. 01, 2011
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2010-4726

    Unspecified vulnerability in the math plugin in Smarty before 3.0.0 RC1 has unknown impact and remote attack vectors. NOTE: this might overlap CVE-2009-1669.... Read more

    Affected Products : smarty
    • EPSS Score: %0.43
    • Published: Feb. 03, 2011
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2010-4722

    Unspecified vulnerability in the fetch plugin in Smarty before 3.0.2 has unknown impact and remote attack vectors.... Read more

    Affected Products : smarty
    • EPSS Score: %0.43
    • Published: Feb. 03, 2011
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2011-0919

    Multiple stack-based buffer overflows in the (1) POP3 and (2) IMAP services in IBM Lotus Domino allow remote attackers to execute arbitrary code via non-printable characters in an envelope sender address, aka SPR KLYH87LLVJ.... Read more

    Affected Products : lotus_domino
    • EPSS Score: %12.40
    • Published: Feb. 08, 2011
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2011-0758

    The eCS component (ECSQdmn.exe) in CA ETrust Secure Content Manager 8.0 and CA Gateway Security 8.1 allows remote attackers to cause a denial of service (crash) and execute arbitrary code via a crafted request to port 1882, involving an incorrect integer ... Read more

    • EPSS Score: %22.07
    • Published: Feb. 10, 2011
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2011-0382

    The CGI subsystem on Cisco TelePresence Recording Server devices with software 1.6.x before 1.6.2 allows remote attackers to execute arbitrary commands via a request to TCP port 443, related to a "command injection vulnerability," aka Bug ID CSCtf97221.... Read more

    • EPSS Score: %5.30
    • Published: Feb. 25, 2011
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2010-4227

    The xdrDecodeString function in XNFS.NLM in Novell Netware 6.5 before SP8 allows remote attackers to cause a denial of service (abend) or execute arbitrary code via a crafted, signed value in a NFS RPC request to port UDP 1234, leading to a stack-based bu... Read more

    Affected Products : netware
    • EPSS Score: %43.53
    • Published: Feb. 25, 2011
    • Modified: Apr. 11, 2025
Showing 20 of 290943 Results