Latest CVE Feed
-
10.0
HIGHCVE-2004-1128
Buffer overflow in CMailCOM.dll in CMailServer 5.2 allows remote attackers to execute arbitrary code via an attachment with a long filename.... Read more
Affected Products : cmailserver- EPSS Score: %5.63
- Published: Jan. 10, 2005
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2004-1152
Buffer overflow in the mailListIsPdf function in Adobe Acrobat Reader 5.09 for Unix allows remote attackers to execute arbitrary code via an e-mail message with a crafted PDF attachment.... Read more
Affected Products : acrobat_reader- EPSS Score: %16.62
- Published: Jan. 10, 2005
- Modified: Apr. 03, 2025
-
10.0
CRITICALCVE-2017-14462
An exploitable access control vulnerability exists in the data, program, and function file permissions functionality of Allen Bradley Micrologix 1400 Series B FRN 21.2 and before. A specially crafted packet can cause a read or write operation resulting in... Read more
- EPSS Score: %36.58
- Published: Apr. 05, 2018
- Modified: Nov. 21, 2024
-
10.0
HIGHCVE-2004-1287
Buffer overflow in the error function in preproc.c for NASM 0.98.38 1.2 allows attackers to execute arbitrary code via a crafted asm file, a different vulnerability than CVE-2005-1194.... Read more
Affected Products : netwide_assembler- EPSS Score: %16.45
- Published: Jan. 10, 2005
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2016-1061
Use-after-free vulnerability in Adobe Reader and Acrobat before 11.0.16, Acrobat and Acrobat Reader DC Classic before 15.006.30172, and Acrobat and Acrobat Reader DC Continuous before 15.016.20039 on Windows and OS X allows attackers to execute arbitrary ... Read more
- EPSS Score: %10.86
- Published: May. 11, 2016
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2011-0863
Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 6 Update 25 and earlier allows remote untrusted Java Web Start applications and untrusted Java applets to affect confidentiality, integrity, and availability via u... Read more
- EPSS Score: %3.60
- Published: Jun. 14, 2011
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2015-5133
Buffer overflow in Adobe Flash Player before 18.0.0.232 on Windows and OS X and before 11.2.202.508 on Linux, Adobe AIR before 18.0.0.199, Adobe AIR SDK before 18.0.0.199, and Adobe AIR SDK & Compiler before 18.0.0.199 allows attackers to execute arbitrar... Read more
Affected Products : linux_kernel flash_player mac_os_x windows air evergreen air_sdk air_sdk_\&_compiler- EPSS Score: %71.45
- Published: Aug. 14, 2015
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2016-1094
Use-after-free vulnerability in Adobe Reader and Acrobat before 11.0.16, Acrobat and Acrobat Reader DC Classic before 15.006.30172, and Acrobat and Acrobat Reader DC Continuous before 15.016.20039 on Windows and OS X allows attackers to execute arbitrary ... Read more
- EPSS Score: %10.41
- Published: May. 11, 2016
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2015-4262
The password-change feature in Cisco Unified MeetingPlace Web Conferencing before 8.5(5) MR3 and 8.6 before 8.6(2) does not check the session ID or require entry of the current password, which allows remote attackers to reset arbitrary passwords via a cra... Read more
Affected Products : unified_meetingplace_web_conferencing- EPSS Score: %0.37
- Published: Jul. 24, 2015
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2009-2476
The Java Management Extensions (JMX) implementation in Sun Java SE 6 before Update 15, and OpenJDK, does not properly enforce OpenType checks, which allows context-dependent attackers to bypass intended access restrictions by leveraging finalizer resurrec... Read more
- EPSS Score: %1.82
- Published: Aug. 10, 2009
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2015-3132
Use-after-free vulnerability in Adobe Flash Player before 13.0.0.302 and 14.x through 18.x before 18.0.0.203 on Windows and OS X and before 11.2.202.481 on Linux, Adobe AIR before 18.0.0.180, Adobe AIR SDK before 18.0.0.180, and Adobe AIR SDK & Compiler b... Read more
- EPSS Score: %13.60
- Published: Jul. 09, 2015
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2008-4401
ActionScript in Adobe Flash Player 9.0.124.0 and earlier does not require user interaction in conjunction with (1) the FileReference.browse operation in the FileReference upload API or (2) the FileReference.download operation in the FileReference download... Read more
Affected Products : flash_player- EPSS Score: %4.52
- Published: Oct. 17, 2008
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2009-2721
Multiple unspecified vulnerabilities in the Provider class in Sun Java SE 5.0 before Update 20 have unknown impact and attack vectors, aka BugId 6406003.... Read more
Affected Products : java_se- EPSS Score: %1.15
- Published: Aug. 10, 2009
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2008-4796
The _httpsrequest function (Snoopy/Snoopy.class.php) in Snoopy 1.2.3 and earlier, as used in (1) ampache, (2) libphp-snoopy, (3) mahara, (4) mediamate, (5) opendb, (6) pixelpost, and possibly other products, allows remote attackers to execute arbitrary co... Read more
- EPSS Score: %1.09
- Published: Oct. 30, 2008
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2008-5018
The JavaScript engine in Mozilla Firefox 3.x before 3.0.4, Firefox 2.x before 2.0.0.18, Thunderbird 2.x before 2.0.0.18, and SeaMonkey 1.x before 1.1.13 allows remote attackers to cause a denial of service (crash) via vectors related to "insufficient clas... Read more
- EPSS Score: %20.19
- Published: Nov. 13, 2008
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2018-4257
In macOS High Sierra before 10.13.5, a buffer overflow was addressed with improved size validation.... Read more
- EPSS Score: %0.48
- Published: Jan. 11, 2019
- Modified: Nov. 21, 2024
-
10.0
HIGHCVE-2012-4155
Adobe Reader and Acrobat 9.x before 9.5.2 and 10.x before 10.1.4 on Windows and Mac OS X allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2012-2051, CVE-... Read more
- EPSS Score: %19.38
- Published: Aug. 15, 2012
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2018-4877
A use-after-free vulnerability was discovered in Adobe Flash Player before 28.0.0.161. This vulnerability occurs due to a dangling pointer in the Primetime SDK related to media player's quality of service functionality. A successful attack can lead to arb... Read more
- EPSS Score: %5.04
- Published: Feb. 06, 2018
- Modified: Nov. 21, 2024
-
10.0
HIGHCVE-2012-5137
Use-after-free vulnerability in Google Chrome before 23.0.1271.95 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to the Media Source API.... Read more
- EPSS Score: %4.00
- Published: Dec. 04, 2012
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2017-3093
Adobe Digital Editions versions 4.5.4 and earlier have an exploitable memory corruption vulnerability in the bitmap representation module. Successful exploitation could lead to arbitrary code execution.... Read more
Affected Products : digital_editions- EPSS Score: %7.85
- Published: Jun. 20, 2017
- Modified: Apr. 20, 2025