Latest CVE Feed

Following is the list of latest published vulnerabilities. You can filter the list based on the severity of the vulnerability, whether it is actively exploited (also known as CISA KEV List) or remotely exploitable. You can also sort the list based on the published date, last updated date, or CVSS score.
  • 10.0

    HIGH
    CVE-2013-1489

    Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 10 and Update 11, when running on Windows using Internet Explorer, Firefox, Opera, and Google Chrome, allows remote attackers to bypass the "Very High" se... Read more

    • EPSS Score: %21.86
    • Published: Jan. 31, 2013
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2013-1482

    Unspecified vulnerability in the JavaFX component in Oracle Java SE JavaFX 2.2.4 and earlier allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors, a different vulnerability than other CVEs listed in the Februa... Read more

    Affected Products : javafx
    • EPSS Score: %1.47
    • Published: Feb. 02, 2013
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2013-1183

    Buffer overflow in the Intelligent Platform Management Interface (IPMI) functionality in the Manager component in Cisco Unified Computing System (UCS) 1.0 and 1.1 before 1.1(1j) and 1.2 before 1.2(1b) allows remote attackers to execute arbitrary code via ... Read more

    • EPSS Score: %10.57
    • Published: Apr. 25, 2013
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2013-1049

    Buffer overflow in the RFC1413 (ident) client in cfingerd 1.4.3-3 allows remote IDENT servers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted response.... Read more

    Affected Products : cfingerd
    • EPSS Score: %1.56
    • Published: Mar. 14, 2013
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2013-0809

    Unspecified vulnerability in the 2D component in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 15 and earlier, 6 Update 41 and earlier, and 5.0 Update 40 and earlier allows remote attackers to execute arbitrary code via unknown v... Read more

    Affected Products : jdk jre jre jdk
    • EPSS Score: %13.56
    • Published: Mar. 05, 2013
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2013-0607

    Adobe Reader and Acrobat 9.x before 9.5.3, 10.x before 10.1.5, and 11.x before 11.0.1 allow attackers to execute arbitrary code via unspecified vectors, related to a "logic error," a different vulnerability than CVE-2013-0608, CVE-2013-0611, CVE-2013-0614... Read more

    Affected Products : acrobat acrobat_reader
    • EPSS Score: %7.64
    • Published: Jan. 10, 2013
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2013-0425

    Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 through Update 11, 6 through Update 38, 5.0 through Update 38, and 1.4.2_40 and earlier, and OpenJDK 6 and 7, allows remote attackers to affect confidentiality, ... Read more

    Affected Products : jdk jre jre jdk
    • EPSS Score: %1.59
    • Published: Feb. 02, 2013
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2012-6437

    The device does not properly authenticate users and the potential exists for a remote user to upload a new firmware image to the Ethernet card, whether it is a corrupt or legitimate firmware image. Successful exploitation of this vulnerability could cause... Read more

    • EPSS Score: %29.48
    • Published: Jan. 24, 2013
    • Modified: Jun. 30, 2025
  • 10.0

    HIGH
    CVE-2012-5272

    Adobe Flash Player before 10.3.183.29 and 11.x before 11.4.402.287 on Windows and Mac OS X, before 10.3.183.29 and 11.x before 11.2.202.243 on Linux, before 11.1.111.19 on Android 2.x and 3.x, and before 11.1.115.20 on Android 4.x; Adobe AIR before 3.4.0.... Read more

    • EPSS Score: %9.94
    • Published: Oct. 09, 2012
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2012-5262

    Buffer overflow in Adobe Flash Player before 10.3.183.29 and 11.x before 11.4.402.287 on Windows and Mac OS X, before 10.3.183.29 and 11.x before 11.2.202.243 on Linux, before 11.1.111.19 on Android 2.x and 3.x, and before 11.1.115.20 on Android 4.x; Adob... Read more

    • EPSS Score: %6.41
    • Published: Oct. 09, 2012
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2012-4149

    Adobe Reader and Acrobat 9.x before 9.5.2 and 10.x before 10.1.4 on Windows and Mac OS X allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2012-2051, CVE-... Read more

    Affected Products : mac_os_x acrobat acrobat_reader windows
    • EPSS Score: %19.38
    • Published: Aug. 15, 2012
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2012-3963

    Use-after-free vulnerability in the js::gc::MapAllocToTraceKind function in Mozilla Firefox before 15.0, Firefox ESR 10.x before 10.0.7, Thunderbird before 15.0, Thunderbird ESR 10.x before 10.0.7, and SeaMonkey before 2.12 allows remote attackers to exec... Read more

    • EPSS Score: %2.31
    • Published: Aug. 29, 2012
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2012-3284

    Unspecified vulnerability on the HP LeftHand Virtual SAN Appliance hydra with software before 10.0 allows remote attackers to execute arbitrary code via unknown vectors, aka ZDI-CAN-1512.... Read more

    • EPSS Score: %31.62
    • Published: Feb. 06, 2013
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2012-2790

    Unspecified vulnerability in the read_var_block_data function in libavcodec/alsdec.c in FFmpeg before 0.11, and Libav 0.7.x before 0.7.7 and 0.8.x before 0.8.4, has unknown impact and attack vectors, related to the "number of decoded samples in first sub-... Read more

    Affected Products : ffmpeg libav
    • EPSS Score: %0.84
    • Published: Sep. 10, 2012
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2012-2779

    Unspecified vulnerability in the decode_frame function in libavcodec/indeo5.c in FFmpeg before 0.11, and Libav 0.7.x before 0.7.7 and 0.8.x before 0.8.4, has unknown impact and attack vectors, related to an invalid "gop header" and decoding in a "half ini... Read more

    Affected Products : ffmpeg libav
    • EPSS Score: %1.44
    • Published: Sep. 10, 2012
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2012-2653

    arpwatch 2.1a15, as used by Red Hat, Debian, Fedora, and possibly others, does not properly drop supplementary groups, which might allow attackers to gain root privileges by leveraging other vulnerabilities in the daemon.... Read more

    Affected Products : arpwatch
    • EPSS Score: %1.83
    • Published: Jul. 12, 2012
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2012-1799

    The web server on the Siemens Scalance S Security Module firewall S602 V2, S612 V2, and S613 V2 with firmware before 2.3.0.3 does not limit the rate of authentication attempts, which makes it easier for remote attackers to obtain access via a brute-force ... Read more

    • EPSS Score: %1.01
    • Published: Apr. 18, 2012
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2012-2042

    Adobe Illustrator before CS6 allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2012-0780, CVE-2012-2023, CVE-2012-2024, CVE-2012-2025, and CVE-2012-2026.... Read more

    Affected Products : illustrator illustrator_cs5.5
    • EPSS Score: %6.60
    • Published: May. 24, 2012
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2012-1531

    Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 7 and earlier, 6 Update 35 and earlier, 5.0 Update 36 and earlier, and 1.4.2_38 and earlier; and JavaFX 2.2 and earlier; allows remote attackers to affect... Read more

    Affected Products : jdk jre jre jdk javafx
    • EPSS Score: %9.28
    • Published: Oct. 16, 2012
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2011-2995

    Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 3.6.23 and 4.x through 6, Thunderbird before 7.0, and SeaMonkey before 2.4 allow remote attackers to cause a denial of service (memory corruption and application crash) o... Read more

    Affected Products : firefox thunderbird seamonkey
    • EPSS Score: %1.88
    • Published: Sep. 29, 2011
    • Modified: Apr. 11, 2025
Showing 20 of 291368 Results