Latest CVE Feed
-
10.0
HIGHCVE-2009-0775
Double free vulnerability in Mozilla Firefox before 3.0.7, Thunderbird before 2.0.0.21, and SeaMonkey before 1.1.15 allows remote attackers to execute arbitrary code via "cloned XUL DOM elements which were linked as a parent and child," which are not prop... Read more
- Published: Mar. 05, 2009
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2010-2217
Adobe Flash Media Server (FMS) before 3.0.6, and 3.5.x before 3.5.4, allows attackers to execute arbitrary code via unspecified vectors, related to a "JS method vulnerability."... Read more
- Published: Aug. 11, 2010
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2010-2193
Multiple unspecified vulnerabilities in the CA (1) PSFormX and (2) WebScan ActiveX controls, as distributed on the CA Global Advisor web site until May 2009, allow remote attackers to execute arbitrary code via unknown vectors.... Read more
- Published: Jun. 10, 2010
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2010-2105
Google Chrome before 5.0.375.55 does not properly follow the Safe Browsing specification's requirements for canonicalization of URLs, which has unspecified impact and remote attack vectors.... Read more
Affected Products : chrome- Published: May. 28, 2010
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2006-1523
The __group_complete_signal function in the RCU signal handling (signal.c) in Linux kernel 2.6.16, and possibly other versions, has unknown impact and attack vectors related to improper use of BUG_ON.... Read more
Affected Products : linux_kernel- Published: Apr. 12, 2006
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2010-2054
Integer overflow in httpAdapter.c in httpAdapter in SBLIM SFCB 1.3.4 through 1.3.7, when the configuration sets httpMaxContentLength to a zero value, allows remote attackers to cause a denial of service (heap memory corruption) or possibly execute arbitra... Read more
Affected Products : sblim-sfcb- Published: Jun. 15, 2010
- Modified: Apr. 11, 2025
-
10.0
CRITICALCVE-2025-2857
Following the recent Chrome sandbox escape (CVE-2025-2783), various Firefox developers identified a similar pattern in our IPC code. A compromised child process could cause the parent process to return an unintentionally powerful handle, leading to a sand... Read more
- Published: Mar. 27, 2025
- Modified: May. 01, 2025
- Vuln Type: Authorization
-
10.0
HIGHCVE-2010-2028
Buffer overflow in k23productions TFTPUtil GUI (aka TFTPGUI) 1.4.5 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long transport mode.... Read more
Affected Products : tftputil_gui- Published: May. 24, 2010
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2010-1988
Mozilla Firefox 3.6.3 on Windows XP SP3 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) or possibly execute arbitrary code via JavaScript code that performs certain string concatenation and substring o... Read more
- Published: May. 20, 2010
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2010-1961
Buffer overflow in ovutil.dll in ovwebsnmpsrv.exe in HP OpenView Network Node Manager (OV NNM) 7.51 and 7.53 allows remote attackers to execute arbitrary code via unspecified variables to jovgraph.exe, which are not properly handled in a call to the sprin... Read more
Affected Products : openview_network_node_manager- Published: Jun. 10, 2010
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2010-1960
Buffer overflow in the error handling functionality in ovwebsnmpsrv.exe in HP OpenView Network Node Manager (OV NNM) 7.51 and 7.53 allows remote attackers to execute arbitrary code via a long, invalid option to jovgraph.exe.... Read more
Affected Products : openview_network_node_manager- Published: Jun. 10, 2010
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2010-1962
Unspecified vulnerability in HP StorageWorks Storage Mirroring 5 before 5.2.1.870.0 allows remote attackers to execute arbitrary code via unknown vectors.... Read more
Affected Products : storageworks_storage_mirroring- Published: Jun. 07, 2010
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2006-2189
SQL injection vulnerability in search.php in Servous sBLOG 0.7.2 allows remote attackers to execute arbitrary SQL commands via the keyword parameter. NOTE: this issue can be used to trigger path disclosure. In addition, it might be primary to vector 1 i... Read more
Affected Products : sblog- Published: May. 04, 2006
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2010-1937
Heap-based buffer overflow in httpAdapter.c in httpAdapter in SBLIM SFCB before 1.3.8 might allow remote attackers to execute arbitrary code via a Content-Length HTTP header that specifies a value too small for the amount of POST data, aka bug #3001896.... Read more
Affected Products : sblim-sfcb- Published: Jun. 15, 2010
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2010-1809
The Accessibility component in Apple iOS before 4.1 on the iPhone and iPod touch does not perform the expected VoiceOver announcement associated with the location services icon, which has unspecified impact and attack vectors.... Read more
- Published: Sep. 09, 2010
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2010-1760
loader/DocumentThreadableLoader.cpp in the XMLHttpRequest implementation in WebCore in WebKit before r58409 does not properly handle credentials during a cross-origin synchronous request, which has unspecified impact and remote attack vectors, aka rdar pr... Read more
Affected Products : webkit- Published: Aug. 19, 2010
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2010-1663
The Google URL Parsing Library (aka google-url or GURL) in Google Chrome before 4.1.249.1064 allows remote attackers to bypass the Same Origin Policy via unspecified vectors.... Read more
Affected Products : chrome- Published: May. 03, 2010
- Modified: Apr. 11, 2025
-
10.0
CRITICALCVE-2020-14498
HMS Industrial Networks AB eCatcher all versions prior to 6.5.5 is vulnerable to a stack-based buffer overflow, which may allow an attacker to remotely execute arbitrary code. ... Read more
Affected Products : ecatcher- Published: Aug. 26, 2020
- Modified: Nov. 21, 2024
-
10.0
CRITICALCVE-2020-14500
Secomea GateManager all versions prior to 9.2c, An attacker can send a negative value and overwrite arbitrary data.... Read more
- Published: Aug. 25, 2020
- Modified: Nov. 21, 2024
-
10.0
HIGHCVE-2010-1608
Stack-based buffer overflow in IBM Lotus Notes 8.5 and 8.5fp1, and possibly other versions, allows remote attackers to execute arbitrary code via unknown attack vectors, as demonstrated by the vd_ln module in VulnDisco 9.0. NOTE: as of 20100222, this dis... Read more
- Published: Apr. 29, 2010
- Modified: Apr. 11, 2025