Latest CVE Feed
-
10.0
HIGHCVE-2010-2276
The default configuration of the build process in Dojo 0.4.x before 0.4.4, 1.0.x before 1.0.3, 1.1.x before 1.1.2, 1.2.x before 1.2.4, 1.3.x before 1.3.3, and 1.4.x before 1.4.2 has the copyTests=true and mini=false options, which makes it easier for remo... Read more
Affected Products : dojo- EPSS Score: %3.51
- Published: Jun. 15, 2010
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2010-2351
Stack-based buffer overflow in the CIFS.NLM driver in Netware SMB 1.0 for Novell Netware 6.5 SP8 and earlier allows remote attackers to execute arbitrary code via a Sessions Setup AndX packet with a long AccountName.... Read more
- EPSS Score: %14.48
- Published: Jun. 21, 2010
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2010-2976
The controller in Cisco Unified Wireless Network (UWN) Solution 7.x through 7.0.98.0 has (1) a default SNMP read-only community of public, (2) a default SNMP read-write community of private, and a value of "default" for the (3) SNMP v3 username, (4) SNMP ... Read more
Affected Products : unified_wireless_network_solution_software- EPSS Score: %2.26
- Published: Aug. 10, 2010
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2010-3032
Integer overflow in the OBGIOPServerWorker::extractHeader function in the ebus-3-3-2-6.dll module in SAP Crystal Reports 2008 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a GIOP packet with a crafted... Read more
Affected Products : crystal_reports- EPSS Score: %25.56
- Published: Aug. 17, 2010
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2010-3111
Google Chrome before 6.0.472.53 does not properly mitigate an unspecified flaw in the Windows kernel, which has unknown impact and attack vectors, a different vulnerability than CVE-2010-2897.... Read more
Affected Products : chrome- EPSS Score: %0.30
- Published: Aug. 24, 2010
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2010-3398
Unspecified vulnerability in the webcontainer implementation in IBM Lotus Sametime Connect 8.5.1 before CF1 has unknown impact and attack vectors, aka SPRs LXUU87S57H and LXUU87S93W.... Read more
- EPSS Score: %0.51
- Published: Sep. 15, 2010
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2010-3757
Format string vulnerability in the _Eventlog function in FastBackServer.exe in the Server in IBM Tivoli Storage Manager (TSM) FastBack 5.5.0.0 through 5.5.6.0 and 6.1.0.0 through 6.1.0.1 allows remote attackers to execute arbitrary code via format string ... Read more
Affected Products : tivoli_storage_manager_fastback- EPSS Score: %8.46
- Published: Oct. 05, 2010
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2010-3759
FastBackMount.exe in the Mount service in IBM Tivoli Storage Manager (TSM) FastBack 5.5.0.0 through 5.5.6.0 and 6.1.0.0 through 6.1.0.1 writes a certain value to a memory location specified by a UDP packet field, which allows remote attackers to execute a... Read more
Affected Products : tivoli_storage_manager_fastback- EPSS Score: %8.46
- Published: Oct. 05, 2010
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2010-4218
Unspecified vulnerability in Web Services in IBM ENOVIA 6 has unknown impact and attack vectors, related to a system that becomes "exposed to the internet."... Read more
Affected Products : enovia- EPSS Score: %1.33
- Published: Nov. 09, 2010
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2010-4232
The web-based administration interface on the Camtron CMNC-200 Full HD IP Camera and TecVoz CMNC-200 Megapixel IP Camera with firmware 1.102A-008 allows remote attackers to bypass authentication via a // (slash slash) at the beginning of a URI, as demonst... Read more
- EPSS Score: %6.72
- Published: Nov. 17, 2010
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2010-4116
Unspecified vulnerability in HP StorageWorks Storage Mirroring 5.x before 5.2.2.1771.2 allows remote attackers to execute arbitrary code via unknown vectors.... Read more
Affected Products : storageworks_storage_mirroring- EPSS Score: %17.39
- Published: Dec. 22, 2010
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2011-0406
Heap-based buffer overflow in HistorySvr.exe in WellinTech KingView 6.53 allows remote attackers to execute arbitrary code via a long request to TCP port 777.... Read more
Affected Products : kingview- EPSS Score: %62.01
- Published: Jan. 11, 2011
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2010-4449
Unspecified vulnerability in the Audit Vault component in Oracle Audit Vault 10.2.3.2 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors. NOTE: the previous information was obtained from the January 2011 CP... Read more
Affected Products : audit_vault- EPSS Score: %5.81
- Published: Jan. 19, 2011
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2011-0732
Multiple unspecified vulnerabilities in IBM Tivoli Integrated Portal (TIP) 1.1.1.1, as used in IBM Tivoli Common Reporting (TCR) 1.2.0 before Interim Fix 9, have unknown impact and attack vectors, related to "security vulnerabilities of Websphere Applicat... Read more
- EPSS Score: %0.63
- Published: Feb. 01, 2011
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2010-4726
Unspecified vulnerability in the math plugin in Smarty before 3.0.0 RC1 has unknown impact and remote attack vectors. NOTE: this might overlap CVE-2009-1669.... Read more
Affected Products : smarty- EPSS Score: %0.43
- Published: Feb. 03, 2011
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2010-4722
Unspecified vulnerability in the fetch plugin in Smarty before 3.0.2 has unknown impact and remote attack vectors.... Read more
Affected Products : smarty- EPSS Score: %0.43
- Published: Feb. 03, 2011
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2011-0919
Multiple stack-based buffer overflows in the (1) POP3 and (2) IMAP services in IBM Lotus Domino allow remote attackers to execute arbitrary code via non-printable characters in an envelope sender address, aka SPR KLYH87LLVJ.... Read more
Affected Products : lotus_domino- EPSS Score: %12.40
- Published: Feb. 08, 2011
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2011-0758
The eCS component (ECSQdmn.exe) in CA ETrust Secure Content Manager 8.0 and CA Gateway Security 8.1 allows remote attackers to cause a denial of service (crash) and execute arbitrary code via a crafted request to port 1882, involving an incorrect integer ... Read more
- EPSS Score: %22.07
- Published: Feb. 10, 2011
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2011-0382
The CGI subsystem on Cisco TelePresence Recording Server devices with software 1.6.x before 1.6.2 allows remote attackers to execute arbitrary commands via a request to TCP port 443, related to a "command injection vulnerability," aka Bug ID CSCtf97221.... Read more
- EPSS Score: %5.30
- Published: Feb. 25, 2011
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2010-4227
The xdrDecodeString function in XNFS.NLM in Novell Netware 6.5 before SP8 allows remote attackers to cause a denial of service (abend) or execute arbitrary code via a crafted, signed value in a NFS RPC request to port UDP 1234, leading to a stack-based bu... Read more
Affected Products : netware- EPSS Score: %43.53
- Published: Feb. 25, 2011
- Modified: Apr. 11, 2025