Latest CVE Feed

Following is the list of latest published vulnerabilities. You can filter the list based on the severity of the vulnerability, whether it is actively exploited (also known as CISA KEV List) or remotely exploitable. You can also sort the list based on the published date, last updated date, or CVSS score.
  • 10.0

    HIGH
    CVE-2010-2771

    solid.exe in IBM solidDB before 6.5 FP2 allows remote attackers to execute arbitrary code via a long username field in the first handshake packet.... Read more

    Affected Products : soliddb
    • EPSS Score: %8.46
    • Published: Jul. 22, 2010
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2010-2755

    layout/generic/nsObjectFrame.cpp in Mozilla Firefox 3.6.7 does not properly free memory in the parameter array of a plugin instance, which allows remote attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code via a cr... Read more

    Affected Products : firefox
    • EPSS Score: %6.73
    • Published: Jul. 30, 2010
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2010-2710

    Unspecified vulnerability in HP OpenView Network Node Manager (OV NNM) 7.51 and 7.53 allows remote attackers to execute arbitrary code via unknown vectors.... Read more

    Affected Products : openview_network_node_manager
    • EPSS Score: %16.29
    • Published: Aug. 20, 2010
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2010-2704

    Buffer overflow in HP OpenView Network Node Manager (OV NNM) 7.51 and 7.53 allows remote attackers to execute arbitrary code via a long HTTP request to nnmrptconfig.exe.... Read more

    Affected Products : openview_network_node_manager
    • EPSS Score: %40.69
    • Published: Jul. 28, 2010
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2010-2703

    Stack-based buffer overflow in the execvp_nc function in the ov.dll module in HP OpenView Network Node Manager (OV NNM) 7.51 and 7.53, when running on Windows, allows remote attackers to execute arbitrary code via a long HTTP request to webappmon.exe.... Read more

    • EPSS Score: %82.23
    • Published: Jul. 28, 2010
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2011-2363

    Use-after-free vulnerability in the nsSVGPointList::AppendElement function in the implementation of SVG element lists in Mozilla Firefox before 3.6.18, Thunderbird before 3.1.11, and SeaMonkey through 2.0.14 allows remote attackers to cause a denial of se... Read more

    Affected Products : firefox thunderbird seamonkey
    • EPSS Score: %2.45
    • Published: Jun. 30, 2011
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2010-2585

    Multiple buffer overflows in the RealPage Module Upload ActiveX control in Realpage.dll 1.0.0.9 in RealPage Module ActiveX Controls allow remote attackers to execute arbitrary code via a long (1) DestURL or (2) SourceFile property value.... Read more

    Affected Products : module_activex_control
    • EPSS Score: %12.21
    • Published: Oct. 26, 2010
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2010-2550

    The SMB Server in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP1 and SP2, Windows Server 2008 Gold, SP2, and R2, and Windows 7 does not properly validate fields in an SMB request, which allows remote attackers to execute arbi... Read more

    • EPSS Score: %81.41
    • Published: Aug. 11, 2010
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2012-0121

    Unspecified vulnerability in HP Data Protector Express (aka DPX) 5.0.00 before build 59287 and 6.0.00 before build 11974 allows remote attackers to execute arbitrary code or cause a denial of service via unknown vectors, aka ZDI-CAN-1392.... Read more

    Affected Products : data_protector_express
    • EPSS Score: %25.06
    • Published: Mar. 14, 2012
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2010-2451

    Multiple format string vulnerabilities in the DCC functionality in KVIrc 3.4 and 4.0 have unspecified impact and remote attack vectors.... Read more

    Affected Products : kvirc
    • EPSS Score: %3.08
    • Published: Jun. 29, 2010
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2010-2421

    Multiple unspecified vulnerabilities in Opera before 10.54 have unknown impact and attack vectors related to (1) "extremely severe," (2) "highly severe," (3) "moderately severe," and (4) "less severe" issues.... Read more

    Affected Products : opera_browser
    • EPSS Score: %1.47
    • Published: Jun. 22, 2010
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2010-2468

    The S2 Security NetBox 2.x and 3.x, as used in the Linear eMerge 50 and 5000 and the Sonitrol eAccess, uses a weak hash algorithm for storing the Administrator password, which makes it easier for context-dependent attackers to obtain privileged access by ... Read more

    Affected Products : netbox emerge_50 emerge_5000 eaccess
    • EPSS Score: %0.42
    • Published: Jun. 25, 2010
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2019-7970

    Adobe Photoshop CC versions 19.1.8 and earlier and 20.0.5 and earlier have a type confusion vulnerability. Successful exploitation could lead to arbitrary code execution.... Read more

    Affected Products : macos photoshop_cc windows
    • EPSS Score: %27.47
    • Published: Aug. 26, 2019
    • Modified: Nov. 21, 2024
  • 10.0

    HIGH
    CVE-2011-2884

    Multiple unspecified vulnerabilities in IBM Lotus Symphony 3 before FP3 have unknown impact and attack vectors, related to "critical security vulnerability issues."... Read more

    Affected Products : lotus_symphony
    • EPSS Score: %2.20
    • Published: Jul. 27, 2011
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2012-2794

    Unspecified vulnerability in the decode_mb_info function in libavcodec/indeo5.c in FFmpeg before 0.11, and Libav 0.7.x before 0.7.7 and 0.8.x before 0.8.4, has unknown impact and attack vectors in which the "allocated tile size ... mismatches parameters."... Read more

    Affected Products : ffmpeg libav
    • EPSS Score: %0.84
    • Published: Sep. 10, 2012
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2010-2362

    Winny 2.0b7.1 and earlier does not properly process node information, which has unspecified impact and remote attack vectors that might lead to use of the product's host for DDoS attacks.... Read more

    Affected Products : winny
    • EPSS Score: %0.35
    • Published: Aug. 25, 2010
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2010-2300

    Use-after-free vulnerability in the Element::normalizeAttributes function in dom/Element.cpp in WebCore in WebKit in Google Chrome before 5.0.375.70 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via vec... Read more

    Affected Products : chrome
    • EPSS Score: %31.25
    • Published: Jun. 15, 2010
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2010-2302

    Use-after-free vulnerability in WebCore in WebKit in Google Chrome before 5.0.375.70 allows remote attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code via vectors involving remote fonts in conjunction with shadow ... Read more

    • EPSS Score: %5.16
    • Published: Jun. 15, 2010
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2010-2272

    Unspecified vulnerability in iframe_history.html in Dojo 0.4.x before 0.4.4 has unknown impact and remote attack vectors.... Read more

    Affected Products : dojo
    • EPSS Score: %0.46
    • Published: Jun. 15, 2010
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2019-8196

    Adobe Acrobat and Reader versions , 2019.012.20040 and earlier, 2017.011.30148 and earlier, 2017.011.30148 and earlier, 2015.006.30503 and earlier, and 2015.006.30503 and earlier have an untrusted pointer dereference vulnerability. Successful exploitation... Read more

    • EPSS Score: %29.78
    • Published: Oct. 17, 2019
    • Modified: Nov. 21, 2024
Showing 20 of 292495 Results