Latest CVE Feed
-
10.0
HIGHCVE-2012-3576
Unrestricted file upload vulnerability in php/upload.php in the wpStoreCart plugin before 2.5.30 for WordPress allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to th... Read more
- Published: Jun. 16, 2012
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2012-3561
Opera before 11.64 does not properly allocate memory for URL strings, which allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted string.... Read more
Affected Products : opera_browser- Published: Jun. 14, 2012
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2012-3506
Unspecified vulnerability in the Apache Open For Business Project (aka OFBiz) 10.04.x before 10.04.03 has unknown impact and attack vectors.... Read more
- Published: Oct. 25, 2012
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2005-2541
Tar 1.15.1 does not properly warn the user when extracting setuid or setgid files, which may allow local users or remote attackers to gain privileges.... Read more
Affected Products : tar- Published: Aug. 10, 2005
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2012-3416
Condor before 7.8.2 allows remote attackers to bypass host-based authentication and execute actions such as ALLOW_ADMINISTRATOR or ALLOW_WRITE by connecting from a system with a spoofed reverse DNS hostname.... Read more
Affected Products : condor- Published: Aug. 25, 2012
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2011-0474
Google Chrome before 8.0.552.237 and Chrome OS before 8.0.552.344 do not properly handle Cascading Style Sheets (CSS) token sequences in conjunction with cursors, which allows remote attackers to cause a denial of service or possibly have unspecified othe... Read more
- Published: Jan. 14, 2011
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2012-3262
Unspecified vulnerability in a SOAP feature in HP SiteScope 11.10 through 11.12 allows remote attackers to execute arbitrary code via unknown vectors, aka ZDI-CAN-1464.... Read more
Affected Products : sitescope- Published: Sep. 25, 2012
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2012-3278
Stack-based buffer overflow in magentservice.exe in HP Diagnostics Server 8.x through 8.07 and 9.x through 9.21 allows remote attackers to execute arbitrary code via a malformed message packet.... Read more
Affected Products : diagnostics_server- Published: Jan. 25, 2013
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2012-3275
Unspecified vulnerability in HP Network Node Manager i (NNMi) 9.1x and 9.20 allows remote attackers to execute arbitrary code via unknown vectors.... Read more
Affected Products : network_node_manager_i- Published: Dec. 06, 2012
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2012-3285
Unspecified vulnerability on the HP LeftHand Virtual SAN Appliance hydra with software before 10.0 allows remote attackers to execute arbitrary code via unknown vectors, aka ZDI-CAN-1513.... Read more
- Published: Feb. 06, 2013
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2012-3259
Unspecified vulnerability in a SOAP feature in HP SiteScope 11.10 through 11.12 allows remote attackers to execute arbitrary code via unknown vectors, aka ZDI-CAN-1461.... Read more
Affected Products : sitescope- Published: Sep. 25, 2012
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2012-3260
Unspecified vulnerability in a SOAP feature in HP SiteScope 11.10 through 11.12 allows remote attackers to execute arbitrary code via unknown vectors, aka ZDI-CAN-1462.... Read more
Affected Products : sitescope- Published: Sep. 25, 2012
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2012-3258
Unspecified vulnerability in HP Operations Orchestration 9.0 before 9.03 allows remote attackers to execute arbitrary code via unknown vectors.... Read more
Affected Products : operations_orchestration- Published: Sep. 19, 2012
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2012-1532
Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 7 and earlier and 6 Update 35 and earlier allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to De... Read more
- Published: Oct. 16, 2012
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2012-1541
Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 through Update 11 and 6 through Update 38 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Deploymen... Read more
- Published: Feb. 02, 2013
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2012-3290
Multiple unspecified vulnerabilities in Google Chrome before 20.0.1132.22 on the Acer AC700; Samsung Series 5, 5 550, and Chromebox 3; and Cr-48 Chromebook platforms have unknown impact and attack vectors.... Read more
Affected Products : chrome_os ac700_chromebook cr-48_chromebook series_5_chromebook chromebox_3 series_5_550_chromebook- Published: Jun. 07, 2012
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2012-3270
Unspecified vulnerability in HP Performance Insight 5.31, 5.40, and 5.41, when Sybase is used, allows remote attackers to obtain sensitive information, modify data, or cause a denial of service via unknown vectors, a different vulnerability than CVE-2012-... Read more
Affected Products : performance_insight- Published: Nov. 07, 2012
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2012-3135
Unspecified vulnerability in the Oracle JRockit component in Oracle Fusion Middleware 28.2.3 and before, and 27.7.2 and earlier, allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors.... Read more
Affected Products : fusion_middleware- Published: Jul. 17, 2012
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2012-3021
rifsrvd.exe in the Remote Interface Service in GE Intelligent Platforms Proficy Real-Time Information Portal 2.6 through 3.5 SP1 allows remote attackers to cause a denial of service (memory corruption and service crash) or possibly execute arbitrary code ... Read more
Affected Products : intelligent_platforms_proficy_real-time_information_portal- Published: Nov. 01, 2012
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2012-3010
rifsrvd.exe in the Remote Interface Service in GE Intelligent Platforms Proficy Real-Time Information Portal 2.6 through 3.5 SP1 allows remote attackers to cause a denial of service (memory corruption and service crash) or possibly execute arbitrary code ... Read more
Affected Products : intelligent_platforms_proficy_real-time_information_portal- Published: Nov. 01, 2012
- Modified: Apr. 11, 2025