Latest CVE Feed

Following is the list of latest published vulnerabilities. You can filter the list based on the severity of the vulnerability, whether it is actively exploited (also known as CISA KEV List) or remotely exploitable. You can also sort the list based on the published date, last updated date, or CVSS score.
  • 10.0

    HIGH
    CVE-2012-3416

    Condor before 7.8.2 allows remote attackers to bypass host-based authentication and execute actions such as ALLOW_ADMINISTRATOR or ALLOW_WRITE by connecting from a system with a spoofed reverse DNS hostname.... Read more

    Affected Products : condor
    • Published: Aug. 25, 2012
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2011-0474

    Google Chrome before 8.0.552.237 and Chrome OS before 8.0.552.344 do not properly handle Cascading Style Sheets (CSS) token sequences in conjunction with cursors, which allows remote attackers to cause a denial of service or possibly have unspecified othe... Read more

    Affected Products : debian_linux chrome chrome_os
    • Published: Jan. 14, 2011
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2012-3262

    Unspecified vulnerability in a SOAP feature in HP SiteScope 11.10 through 11.12 allows remote attackers to execute arbitrary code via unknown vectors, aka ZDI-CAN-1464.... Read more

    Affected Products : sitescope
    • Published: Sep. 25, 2012
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2012-3278

    Stack-based buffer overflow in magentservice.exe in HP Diagnostics Server 8.x through 8.07 and 9.x through 9.21 allows remote attackers to execute arbitrary code via a malformed message packet.... Read more

    Affected Products : diagnostics_server
    • Published: Jan. 25, 2013
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2012-3275

    Unspecified vulnerability in HP Network Node Manager i (NNMi) 9.1x and 9.20 allows remote attackers to execute arbitrary code via unknown vectors.... Read more

    Affected Products : network_node_manager_i
    • Published: Dec. 06, 2012
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2012-3285

    Unspecified vulnerability on the HP LeftHand Virtual SAN Appliance hydra with software before 10.0 allows remote attackers to execute arbitrary code via unknown vectors, aka ZDI-CAN-1513.... Read more

    • Published: Feb. 06, 2013
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2012-3259

    Unspecified vulnerability in a SOAP feature in HP SiteScope 11.10 through 11.12 allows remote attackers to execute arbitrary code via unknown vectors, aka ZDI-CAN-1461.... Read more

    Affected Products : sitescope
    • Published: Sep. 25, 2012
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2012-3260

    Unspecified vulnerability in a SOAP feature in HP SiteScope 11.10 through 11.12 allows remote attackers to execute arbitrary code via unknown vectors, aka ZDI-CAN-1462.... Read more

    Affected Products : sitescope
    • Published: Sep. 25, 2012
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2012-3258

    Unspecified vulnerability in HP Operations Orchestration 9.0 before 9.03 allows remote attackers to execute arbitrary code via unknown vectors.... Read more

    Affected Products : operations_orchestration
    • Published: Sep. 19, 2012
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2012-1532

    Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 7 and earlier and 6 Update 35 and earlier allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to De... Read more

    Affected Products : jdk jre jre jdk
    • Published: Oct. 16, 2012
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2012-1541

    Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 through Update 11 and 6 through Update 38 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Deploymen... Read more

    Affected Products : jdk jre jre jdk
    • Published: Feb. 02, 2013
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2012-3290

    Multiple unspecified vulnerabilities in Google Chrome before 20.0.1132.22 on the Acer AC700; Samsung Series 5, 5 550, and Chromebox 3; and Cr-48 Chromebook platforms have unknown impact and attack vectors.... Read more

    • Published: Jun. 07, 2012
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2012-3270

    Unspecified vulnerability in HP Performance Insight 5.31, 5.40, and 5.41, when Sybase is used, allows remote attackers to obtain sensitive information, modify data, or cause a denial of service via unknown vectors, a different vulnerability than CVE-2012-... Read more

    Affected Products : performance_insight
    • Published: Nov. 07, 2012
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2012-3135

    Unspecified vulnerability in the Oracle JRockit component in Oracle Fusion Middleware 28.2.3 and before, and 27.7.2 and earlier, allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors.... Read more

    Affected Products : fusion_middleware
    • Published: Jul. 17, 2012
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2012-3021

    rifsrvd.exe in the Remote Interface Service in GE Intelligent Platforms Proficy Real-Time Information Portal 2.6 through 3.5 SP1 allows remote attackers to cause a denial of service (memory corruption and service crash) or possibly execute arbitrary code ... Read more

    • Published: Nov. 01, 2012
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2012-3010

    rifsrvd.exe in the Remote Interface Service in GE Intelligent Platforms Proficy Real-Time Information Portal 2.6 through 3.5 SP1 allows remote attackers to cause a denial of service (memory corruption and service crash) or possibly execute arbitrary code ... Read more

    • Published: Nov. 01, 2012
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2012-2974

    The web interface on the SMC SMC8024L2 switch allows remote attackers to bypass authentication and obtain administrative access via a direct request to a .html file under (1) status/, (2) system/, (3) ports/, (4) trunks/, (5) vlans/, (6) qos/, (7) rstp/, ... Read more

    Affected Products : smc8024l2_switch
    • Published: Jul. 19, 2012
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2012-2953

    The management console in Symantec Web Gateway 5.0.x before 5.0.3.18 allows remote attackers to execute arbitrary commands via crafted input to application scripts.... Read more

    Affected Products : web_gateway
    • Published: Jul. 23, 2012
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2012-2949

    The ZTE sync_agent program for Android 2.3.4 on the Score M device uses a hardcoded ztex1609523 password to control access to commands, which allows remote attackers to gain privileges via a crafted application.... Read more

    Affected Products : android score_m
    • Published: May. 29, 2012
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2012-2802

    Unspecified vulnerability in the ac3_decode_frame function in libavcodec/ac3dec.c in FFmpeg before 0.11 and Libav 0.8.x before 0.8.4 has unknown impact and attack vectors, related to the "number of output channels" and "out of array writes."... Read more

    Affected Products : ffmpeg libav
    • Published: Sep. 10, 2012
    • Modified: Apr. 11, 2025
Showing 20 of 293510 Results