Latest CVE Feed
-
10.0
HIGHCVE-2014-3525
Unspecified vulnerability in Apache Traffic Server 3.x through 3.2.5, 4.x before 4.2.1.1, and 5.x before 5.0.1 has unknown impact and attack vectors, possibly related to health checks.... Read more
Affected Products : traffic_server- EPSS Score: %1.27
- Published: Aug. 22, 2014
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2014-3175
Multiple unspecified vulnerabilities in Google Chrome before 37.0.2062.94 allow attackers to cause a denial of service or possibly have other impact via unknown vectors, related to the load_truetype_glyph function in truetype/ttgload.c in FreeType and oth... Read more
Affected Products : chrome- EPSS Score: %2.03
- Published: Aug. 27, 2014
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2014-2405
Unspecified vulnerability in OpenJDK 6 before 6b31 on Debian GNU/Linux and Ubuntu 12.04 LTS and 10.04 LTS has unknown impact and attack vectors, a different vulnerability than CVE-2014-0462.... Read more
- EPSS Score: %0.83
- Published: May. 14, 2014
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2015-5564
Use-after-free vulnerability in Adobe Flash Player before 18.0.0.232 on Windows and OS X and before 11.2.202.508 on Linux, Adobe AIR before 18.0.0.199, Adobe AIR SDK before 18.0.0.199, and Adobe AIR SDK & Compiler before 18.0.0.199 allows attackers to exe... Read more
- EPSS Score: %4.33
- Published: Aug. 14, 2015
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2012-1182
The RPC code generator in Samba 3.x before 3.4.16, 3.5.x before 3.5.14, and 3.6.x before 3.6.4 does not implement validation of an array length in a manner consistent with validation of array memory allocation, which allows remote attackers to execute arb... Read more
Affected Products : samba- EPSS Score: %76.40
- Published: Apr. 10, 2012
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2020-3762
Adobe Acrobat and Reader versions 2019.021.20061 and earlier, 2017.011.30156 and earlier, 2017.011.30156 and earlier, and 2015.006.30508 and earlier have a privilege escalation vulnerability. Successful exploitation could lead to arbitrary file system wri... Read more
- EPSS Score: %1.32
- Published: Feb. 13, 2020
- Modified: Nov. 21, 2024
-
10.0
HIGHCVE-2013-1378
Adobe Flash Player before 10.3.183.75 and 11.x before 11.7.700.169 on Windows and Mac OS X, before 10.3.183.75 and 11.x before 11.2.202.280 on Linux, before 11.1.111.50 on Android 2.x and 3.x, and before 11.1.115.54 on Android 4.x; Adobe AIR before 3.7.0.... Read more
- EPSS Score: %7.03
- Published: Apr. 10, 2013
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2012-0131
Distributed Computing Environment (DCE) 1.8 and 1.9 on HP HP-UX B.11.11 and B.11.23 allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors.... Read more
- EPSS Score: %15.13
- Published: Apr. 05, 2012
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2005-2715
Format string vulnerability in the Java user interface service (bpjava-msvc) daemon for VERITAS NetBackup Data and Business Center 4.5FP and 4.5MP, and NetBackup Enterprise/Server/Client 5.0, 5.1, and 6.0, allows remote attackers to execute arbitrary code... Read more
- EPSS Score: %66.31
- Published: Oct. 12, 2005
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2012-0275
Heap-based buffer overflow in Photoshop.exe in Adobe Photoshop CS5 12.x before 12.0.5, CS5.1 12.1.x before 12.1.1, and CS6 13.x before 13.0.1 allows remote attackers to execute arbitrary code via a crafted TIFF image with SGI24LogLum compression.... Read more
- EPSS Score: %24.01
- Published: Sep. 04, 2012
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2016-6940
Adobe Reader and Acrobat before 11.0.18, Acrobat and Acrobat Reader DC Classic before 15.006.30243, and Acrobat and Acrobat Reader DC Continuous before 15.020.20039 on Windows and OS X allow attackers to execute arbitrary code or cause a denial of service... Read more
- EPSS Score: %2.24
- Published: Oct. 13, 2016
- Modified: Apr. 12, 2025
-
10.0
CRITICALCVE-2021-0211
An improper check for unusual or exceptional conditions in Juniper Networks Junos OS and Junos OS Evolved Routing Protocol Daemon (RPD) service allows an attacker to send a valid BGP FlowSpec message thereby causing an unexpected change in the route adver... Read more
- EPSS Score: %0.39
- Published: Jan. 15, 2021
- Modified: Nov. 21, 2024
-
10.0
HIGHCVE-2020-6967
In Rockwell Automation all versions of FactoryTalk Diagnostics software, a subsystem of the FactoryTalk Services Platform, FactoryTalk Diagnostics exposes a .NET Remoting endpoint via RNADiagnosticsSrv.exe at TCPtcp/8082, which can insecurely deserialize ... Read more
Affected Products : factorytalk_services_platform- EPSS Score: %1.58
- Published: Mar. 23, 2020
- Modified: Nov. 21, 2024
-
10.0
HIGHCVE-2022-30136
Windows Network File System Remote Code Execution Vulnerability... Read more
Affected Products : windows_server_2012 windows_server_2016 windows_server_2019 windows windows_server_2012_r2- EPSS Score: %42.71
- Published: Jun. 15, 2022
- Modified: Jan. 02, 2025
-
10.0
HIGHCVE-2022-30234
A CWE-798: Use of Hard-coded Credentials vulnerability exists that could allow arbitrary code to be executed when root level access is obtained. Affected Products: Wiser Smart, EER21000 & EER21001 (V4.5 and prior)... Read more
- EPSS Score: %0.47
- Published: Jun. 02, 2022
- Modified: Nov. 21, 2024
-
10.0
HIGHCVE-2006-3838
Multiple stack-based buffer overflows in eIQnetworks Enterprise Security Analyzer (ESA) before 2.5.0, as used in products including (a) Sidewinder, (b) iPolicy Security Manager, (c) Astaro Report Manager, (d) Fortinet FortiReporter, (e) Top Layer Network ... Read more
Affected Products : enterprise_security_analyzer- EPSS Score: %71.53
- Published: Jul. 27, 2006
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2013-0612
Buffer overflow in Adobe Reader and Acrobat 9.x before 9.5.3, 10.x before 10.1.5, and 11.x before 11.0.1 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2013-0606, CVE-2013-0615, CVE-2013-0617, and CV... Read more
- EPSS Score: %7.91
- Published: Jan. 10, 2013
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2021-33044
The identity authentication bypass vulnerability found in some Dahua products during the login process. Attackers can bypass device identity authentication by constructing malicious data packets.... Read more
Affected Products : sd6al_firmware sd50_firmware sd52c_firmware ipc-hum7xxx_firmware ipc-hx3xxx_firmware ipc-hx5xxx_firmware sd1a1_firmware sd22_firmware sd41_firmware tpc-bf1241_firmware +28 more products- Actively Exploited
- EPSS Score: %94.27
- Published: Sep. 15, 2021
- Modified: Feb. 24, 2025
-
10.0
HIGHCVE-2012-2050
Buffer overflow in Adobe Reader and Acrobat 9.x before 9.5.2 and 10.x before 10.1.4 on Windows and Mac OS X allows attackers to execute arbitrary code via unspecified vectors.... Read more
- EPSS Score: %30.39
- Published: Aug. 15, 2012
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2012-2025
Adobe Illustrator before CS6 allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2012-0780, CVE-2012-2023, CVE-2012-2024, and CVE-2012-2026.... Read more
- EPSS Score: %25.79
- Published: May. 09, 2012
- Modified: Apr. 11, 2025