Latest CVE Feed
-
10.0
HIGHCVE-2007-6507
SpntSvc.exe daemon in Trend Micro ServerProtect 5.58 for Windows, before Security Patch 4, exposes unspecified dangerous sub-functions from StRpcSrv.dll in the DCE/RPC interface, which allows remote attackers to obtain "full file system access" and execut... Read more
- EPSS Score: %71.36
- Published: Dec. 20, 2007
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2004-0348
SQL injection vulnerability in viewCart.asp in SpiderSales shopping cart software allows remote attackers to execute arbitrary SQL via the userId parameter.... Read more
Affected Products : spidersales- EPSS Score: %0.56
- Published: Nov. 23, 2004
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2003-1121
Services in ScriptLogic 4.01, and possibly other versions before 4.14, process client requests at raised privileges, which allows remote attackers to (1) modify arbitrary registry entries via the ScriptLogic RPC service (SLRPC) or (2) modify arbitrary con... Read more
Affected Products : scriptlogic- EPSS Score: %4.96
- Published: Dec. 31, 2003
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2002-0436
sscd_suncourier.pl CGI script in the Sun Sunsolve CD pack allows remote attackers to execute arbitrary commands via shell metacharacters in the email address parameter.... Read more
- EPSS Score: %3.93
- Published: Jul. 26, 2002
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2002-0018
In Microsoft Windows NT and Windows 2000, a trusting domain that receives authorization information from a trusted domain does not verify that the trusted domain is authoritative for all listed SIDs, which allows remote attackers to gain Domain Administra... Read more
- EPSS Score: %36.04
- Published: Mar. 08, 2002
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2000-0800
String parsing error in rpc.kstatd in the linuxnfs or knfsd packages in SuSE and possibly other Linux systems allows remote attackers to gain root privileges.... Read more
Affected Products : suse_linux- EPSS Score: %2.88
- Published: Oct. 20, 2000
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2000-0012
Buffer overflow in w3-msql CGI program in miniSQL package allows remote attackers to execute commands.... Read more
Affected Products : msql- EPSS Score: %4.58
- Published: Dec. 27, 1999
- Modified: Apr. 03, 2025
-
10.0
CRITICALCVE-2024-42472
Flatpak is a Linux application sandboxing and distribution framework. Prior to versions 1.14.0 and 1.15.10, a malicious or compromised Flatpak app using persistent directories could access and write files outside of what it would otherwise have access to,... Read more
- Published: Aug. 15, 2024
- Modified: Aug. 19, 2025
-
10.0
HIGHCVE-2011-3548
Unspecified vulnerability in the Java Runtime Environment component in Oracle Java SE JDK and JRE 7, 6 Update 27 and earlier, 5.0 Update 31 and earlier, and 1.4.2_33 and earlier allows remote untrusted Java Web Start applications and untrusted Java applet... Read more
- EPSS Score: %2.42
- Published: Oct. 19, 2011
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2011-3554
Unspecified vulnerability in the Java Runtime Environment component in Oracle Java SE JDK and JRE 7, 6 Update 27 and earlier, 5.0 Update 31 and earlier allows remote untrusted Java Web Start applications and untrusted Java applets to affect confidentialit... Read more
- EPSS Score: %2.86
- Published: Oct. 19, 2011
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2007-0063
Integer underflow in the DHCP server in EMC VMware Workstation before 5.5.5 Build 56455 and 6.x before 6.0.1 Build 55017, Player before 1.0.5 Build 56455 and Player 2 before 2.0.1 Build 55017, ACE before 1.0.3 Build 54075 and ACE 2 before 2.0.1 Build 5501... Read more
- EPSS Score: %7.59
- Published: Sep. 21, 2007
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2014-3525
Unspecified vulnerability in Apache Traffic Server 3.x through 3.2.5, 4.x before 4.2.1.1, and 5.x before 5.0.1 has unknown impact and attack vectors, possibly related to health checks.... Read more
Affected Products : traffic_server- EPSS Score: %1.27
- Published: Aug. 22, 2014
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2014-3175
Multiple unspecified vulnerabilities in Google Chrome before 37.0.2062.94 allow attackers to cause a denial of service or possibly have other impact via unknown vectors, related to the load_truetype_glyph function in truetype/ttgload.c in FreeType and oth... Read more
Affected Products : chrome- EPSS Score: %2.03
- Published: Aug. 27, 2014
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2014-2405
Unspecified vulnerability in OpenJDK 6 before 6b31 on Debian GNU/Linux and Ubuntu 12.04 LTS and 10.04 LTS has unknown impact and attack vectors, a different vulnerability than CVE-2014-0462.... Read more
- EPSS Score: %0.83
- Published: May. 14, 2014
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2015-5564
Use-after-free vulnerability in Adobe Flash Player before 18.0.0.232 on Windows and OS X and before 11.2.202.508 on Linux, Adobe AIR before 18.0.0.199, Adobe AIR SDK before 18.0.0.199, and Adobe AIR SDK & Compiler before 18.0.0.199 allows attackers to exe... Read more
- EPSS Score: %4.33
- Published: Aug. 14, 2015
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2012-1182
The RPC code generator in Samba 3.x before 3.4.16, 3.5.x before 3.5.14, and 3.6.x before 3.6.4 does not implement validation of an array length in a manner consistent with validation of array memory allocation, which allows remote attackers to execute arb... Read more
Affected Products : samba- EPSS Score: %76.40
- Published: Apr. 10, 2012
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2020-3762
Adobe Acrobat and Reader versions 2019.021.20061 and earlier, 2017.011.30156 and earlier, 2017.011.30156 and earlier, and 2015.006.30508 and earlier have a privilege escalation vulnerability. Successful exploitation could lead to arbitrary file system wri... Read more
- EPSS Score: %1.32
- Published: Feb. 13, 2020
- Modified: Nov. 21, 2024
-
10.0
HIGHCVE-2013-1378
Adobe Flash Player before 10.3.183.75 and 11.x before 11.7.700.169 on Windows and Mac OS X, before 10.3.183.75 and 11.x before 11.2.202.280 on Linux, before 11.1.111.50 on Android 2.x and 3.x, and before 11.1.115.54 on Android 4.x; Adobe AIR before 3.7.0.... Read more
- EPSS Score: %7.03
- Published: Apr. 10, 2013
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2012-0131
Distributed Computing Environment (DCE) 1.8 and 1.9 on HP HP-UX B.11.11 and B.11.23 allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors.... Read more
- EPSS Score: %15.13
- Published: Apr. 05, 2012
- Modified: Apr. 11, 2025