Latest CVE Feed
-
10.0
HIGHCVE-2012-0470
Heap-based buffer overflow in the nsSVGFEDiffuseLightingElement::LightPixel function in Mozilla Firefox 4.x through 11.0, Firefox ESR 10.x before 10.0.4, Thunderbird 5.0 through 11.0, Thunderbird ESR 10.x before 10.0.4, and SeaMonkey before 2.9 allows rem... Read more
- EPSS Score: %17.29
- Published: Apr. 25, 2012
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2012-0411
Unspecified vulnerability in Novell iPrint Client before 5.82 allows remote attackers to execute arbitrary code via an op-client-interface-version action.... Read more
Affected Products : iprint- EPSS Score: %10.61
- Published: Dec. 24, 2012
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2012-0297
The management GUI in Symantec Web Gateway 5.0.x before 5.0.3 does not properly restrict access to application scripts, which allows remote attackers to execute arbitrary code by (1) injecting crafted data or (2) including crafted data.... Read more
Affected Products : web_gateway- EPSS Score: %89.46
- Published: May. 21, 2012
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2011-4254
RealNetworks RealPlayer before 15.0.0 allows remote attackers to execute arbitrary code via a crafted RTSP SETUP request.... Read more
Affected Products : realplayer- EPSS Score: %6.37
- Published: Nov. 24, 2011
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2012-0417
Integer overflow in GroupWise Internet Agent (GWIA) in Novell GroupWise 8.0 before Support Pack 3 and 2012 before Support Pack 1 allows remote attackers to execute arbitrary code via unspecified vectors.... Read more
Affected Products : groupwise- EPSS Score: %6.23
- Published: Sep. 28, 2012
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2011-2989
The browser engine in Mozilla Firefox 4.x through 5, SeaMonkey 2.x before 2.3, Thunderbird before 6, and possibly other products does not properly implement WebGL, which allows remote attackers to cause a denial of service (memory corruption and applicati... Read more
- EPSS Score: %4.02
- Published: Aug. 18, 2011
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2011-2667
Icihttp.exe in CA Gateway Security for HTTP, as used in CA Gateway Security 8.1 before 8.1.0.69 and CA Total Defense r12, does not properly parse URLs, which allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corru... Read more
- EPSS Score: %25.24
- Published: Jul. 28, 2011
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2011-2610
Unspecified vulnerability in Opera before 11.50 has unknown impact and attack vectors, related to a "moderately severe issue."... Read more
Affected Products : opera_browser- EPSS Score: %0.55
- Published: Jul. 01, 2011
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2011-2462
Unspecified vulnerability in the U3D component in Adobe Reader and Acrobat 10.1.1 and earlier on Windows and Mac OS X, and Adobe Reader 9.x through 9.4.6 on UNIX, allows remote attackers to execute arbitrary code or cause a denial of service (memory corru... Read more
- Actively Exploited
- EPSS Score: %92.55
- Published: Dec. 07, 2011
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2011-2449
The TextXtra module in Adobe Shockwave Player before 11.6.3.633 allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors.... Read more
Affected Products : shockwave_player- EPSS Score: %5.42
- Published: Nov. 08, 2011
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2011-2364
Unspecified vulnerability in the browser engine in Mozilla Firefox 3.6.x before 3.6.18 and Thunderbird before 3.1.11 allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unkn... Read more
- EPSS Score: %1.52
- Published: Jun. 30, 2011
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2011-2368
The WebGL implementation in Mozilla Firefox 4.x through 4.0.1 does not properly restrict write operations, which allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via unspecified vectors.... Read more
Affected Products : firefox- EPSS Score: %4.63
- Published: Jun. 30, 2011
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2011-0864
Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 6 Update 25 and earlier, 5.0 Update 29 and earlier, and 1.4.2_31 and earlier allows remote untrusted Java Web Start applications and untrusted Java applets to affe... Read more
- EPSS Score: %4.94
- Published: Jun. 14, 2011
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2011-0817
Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 6 Update 25 and earlier, when running on Windows, allows remote untrusted Java Web Start applications and untrusted Java applets to affect confidentiality, integri... Read more
- EPSS Score: %2.19
- Published: Jun. 14, 2011
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2011-1377
The Web Services Security component in the Web Services Feature Pack before 6.1.0.41 for IBM WebSphere Application Server (WAS) 6.1 does not properly handle the enabling of WS-Security for a JAX-WS application, which has unspecified impact and attack vect... Read more
Affected Products : websphere_application_server- EPSS Score: %1.37
- Published: Jan. 15, 2012
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2011-0383
The Java Servlet framework on Cisco TelePresence Recording Server devices with software 1.6.x before 1.6.2 and Cisco TelePresence Multipoint Switch (CTMS) devices with software 1.0.x, 1.1.x, 1.5.x, and 1.6.x does not require administrative authentication ... Read more
- EPSS Score: %4.70
- Published: Feb. 25, 2011
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2011-0069
Unspecified vulnerability in the browser engine in Mozilla Firefox 3.5.x before 3.5.19, 3.6.x before 3.6.17, and 4.x before 4.0.1; Thunderbird before 3.1.10; and SeaMonkey before 2.0.14 allows remote attackers to cause a denial of service (memory corrupti... Read more
- EPSS Score: %2.94
- Published: May. 07, 2011
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2011-0062
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox 3.6.x before 3.6.14 and Thunderbird 3.1.x before 3.1.8 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrar... Read more
- EPSS Score: %5.56
- Published: Mar. 02, 2011
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2011-0053
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 3.5.17 and 3.6.x before 3.6.14, Thunderbird before 3.1.8, and SeaMonkey before 2.0.12 allow remote attackers to cause a denial of service (memory corruption and applicati... Read more
- EPSS Score: %1.85
- Published: Mar. 02, 2011
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2010-4601
Multiple unspecified vulnerabilities in IBM Rational ClearQuest 7.0.x before 7.0.1.11, 7.1.1.x before 7.1.1.4, and 7.1.2.x before 7.1.2.1 allow attackers to have an unknown impact via vectors related to third-party .ocx files.... Read more
Affected Products : rational_clearquest- EPSS Score: %0.49
- Published: Dec. 29, 2010
- Modified: Apr. 11, 2025