Latest CVE Feed

Following is the list of latest published vulnerabilities. You can filter the list based on the severity of the vulnerability, whether it is actively exploited (also known as CISA KEV List) or remotely exploitable. You can also sort the list based on the published date, last updated date, or CVSS score.
  • 10.0

    HIGH
    CVE-2011-5089

    Buffer overflow in the Security Login ActiveX controls in ICONICS GENESIS32 8.05, 9.0, 9.1, and 9.2 and BizViz 8.05, 9.0, 9.1, and 9.2 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a long p... Read more

    Affected Products : genesis32 bizviz
    • EPSS Score: %3.43
    • Published: Apr. 18, 2012
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2012-2405

    Gallery 2 before 2.3.2 and 3 before 3.0.3 does not properly implement encryption, which has unspecified impact and attack vectors, a different vulnerability than CVE-2012-1113.... Read more

    Affected Products : gallery gallery
    • EPSS Score: %0.28
    • Published: Apr. 22, 2012
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2012-2271

    Buffer overflow in the InitLicenKeys function in a certain ActiveX control in SkinCrafter3_vs2005.dll in SkinCrafter 3.0 allows remote attackers to execute arbitrary code via a long string in the first argument (aka the reg_name argument).... Read more

    Affected Products : skincrafter
    • EPSS Score: %52.82
    • Published: May. 21, 2012
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2012-2561

    HP Business Service Management (BSM) 9.12 does not properly restrict the uploading of .war files, which allows remote attackers to execute arbitrary JSP code within the JBOSS Application Server component via a crafted request to TCP port 1098, 1099, or 44... Read more

    Affected Products : business_service_management
    • EPSS Score: %4.33
    • Published: May. 21, 2012
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2012-3559

    Unspecified vulnerability in Opera before 12.00 on Mac OS X has unknown impact and attack vectors, related to a "moderate severity issue."... Read more

    Affected Products : mac_os_x opera_browser
    • EPSS Score: %0.33
    • Published: Jun. 14, 2012
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2012-3575

    Unrestricted file upload vulnerability in uploader.php in the RBX Gallery plugin 2.1 for WordPress allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in up... Read more

    Affected Products : wordpress rbx_gallery
    • EPSS Score: %43.91
    • Published: Jun. 16, 2012
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2012-1832

    WellinTech KingView 6.53 allows remote attackers to execute arbitrary code or cause a denial of service (out-of-bounds read) via a crafted packet to (1) TCP or (2) UDP port 2001.... Read more

    Affected Products : kinghistorian kingview
    • EPSS Score: %1.81
    • Published: Jul. 05, 2012
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2012-3859

    Unspecified vulnerability in the WebAdmin Portal in Netsweeper has unknown impact and attack vectors, a different vulnerability than CVE-2012-2446 and CVE-2012-2447.... Read more

    Affected Products : netsweeper
    • EPSS Score: %12.75
    • Published: Jul. 09, 2012
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2012-4328

    Unspecified vulnerability in the MAPI in vBulletin Suite 4.1.2 through 4.1.12, Forum 4.1.2 through 4.1.12, and the MAPI plugin 1.4.3 for vBulletin 3.x has unknown impact and attack vectors.... Read more

    • EPSS Score: %0.89
    • Published: Aug. 14, 2012
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2012-4331

    Multiple unspecified vulnerabilities in SPIP before 1.9.2.o, 2.0.x before 2.0.18, and 2.1.x before 2.1.13 have unknown impact and attack vectors that are not related to cross-site scripting (XSS), different vulnerabilities than CVE-2012-2151.... Read more

    Affected Products : spip
    • EPSS Score: %0.43
    • Published: Aug. 14, 2012
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2010-5185

    The Antivirus component in Comodo Internet Security before 5.3.174622.1216 does not check whether X.509 certificates in signed executable files have been revoked, which has unknown impact and remote attack vectors.... Read more

    Affected Products : comodo_internet_security
    • EPSS Score: %0.18
    • Published: Aug. 26, 2012
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2011-5123

    The Antivirus component in Comodo Internet Security before 5.3.175888.1227 does not check whether X.509 certificates in signed executable files have been revoked, which has unknown impact and remote attack vectors.... Read more

    Affected Products : comodo_internet_security
    • EPSS Score: %0.18
    • Published: Aug. 26, 2012
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2012-3254

    Multiple unspecified vulnerabilities in HP iNode Management Center before iNode PC 5.1 E0304 allow remote attackers to execute arbitrary code via crafted input, as demonstrated by a stack-based buffer overflow in iNodeMngChecker.exe for a crafted 0x0A0BF0... Read more

    Affected Products : inode_management_center_pc
    • EPSS Score: %30.96
    • Published: Aug. 30, 2012
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2012-3261

    Unspecified vulnerability in a SOAP feature in HP SiteScope 11.10 through 11.12 allows remote attackers to execute arbitrary code via unknown vectors, aka ZDI-CAN-1463.... Read more

    Affected Products : sitescope
    • EPSS Score: %68.58
    • Published: Sep. 25, 2012
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2012-5692

    Unspecified vulnerability in admin/sources/base/core.php in Invision Power Board (aka IPB or IP.Board) 3.1.x through 3.3.x has unknown impact and remote attack vectors.... Read more

    • EPSS Score: %82.86
    • Published: Oct. 31, 2012
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2012-3021

    rifsrvd.exe in the Remote Interface Service in GE Intelligent Platforms Proficy Real-Time Information Portal 2.6 through 3.5 SP1 allows remote attackers to cause a denial of service (memory corruption and service crash) or possibly execute arbitrary code ... Read more

    • EPSS Score: %3.08
    • Published: Nov. 01, 2012
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2012-5862

    These Sinapsi devices store hard-coded passwords in the PHP file of the device. By using the hard-coded passwords in the device, attackers can log into the device with administrative privileges. This could allow the attacker to have unauthorized access... Read more

    • EPSS Score: %19.52
    • Published: Nov. 23, 2012
    • Modified: Jul. 08, 2025
  • 10.0

    HIGH
    CVE-2012-1714

    Unspecified vulnerability in a TList 6 ActiveX control in Oracle Hyperion Financial Management 11.1.1.4 and 11.1.2.1.104 allows remote attackers to execute arbitrary code via unknown vectors.... Read more

    Affected Products : hyperion_financial_management
    • EPSS Score: %11.11
    • Published: Dec. 21, 2012
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2012-3002

    The web interface on (1) Foscam and (2) Wansview IP cameras allows remote attackers to bypass authentication, and perform administrative functions or read the admin password, via a direct request to an unspecified URL.... Read more

    • EPSS Score: %3.08
    • Published: Dec. 21, 2012
    • Modified: Apr. 11, 2025
  • 10.0

    CRITICAL
    CVE-2012-6069

    The CoDeSys Runtime Toolkit’s file transfer functionality does not perform input validation, which allows an attacker to access files and directories outside the intended scope. This may allow an attacker to upload and download any file on the device. ... Read more

    Affected Products : codesys_runtime_system
    • EPSS Score: %2.23
    • Published: Jan. 21, 2013
    • Modified: Jul. 02, 2025
Showing 20 of 290940 Results