Latest CVE Feed

Following is the list of latest published vulnerabilities. You can filter the list based on the severity of the vulnerability, whether it is actively exploited (also known as CISA KEV List) or remotely exploitable. You can also sort the list based on the published date, last updated date, or CVSS score.
  • 10.0

    HIGH
    CVE-2009-4643

    Stack-based buffer overflow in dsInstallerService.dll in the Juniper Installer Service, as used in Juniper Odyssey Access Client 4.72.11421.0 and other products, allows remote attackers to execute arbitrary code via a long string in a malformed DSSETUPSER... Read more

    Affected Products : odyssey_access_client
    • Published: Feb. 15, 2010
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2009-4637

    FFmpeg 0.5 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via unknown vectors that trigger a stack-based buffer overflow.... Read more

    Affected Products : ffmpeg
    • Published: Feb. 10, 2010
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2009-4633

    vorbis_dec.c in FFmpeg 0.5 uses an assignment operator when a comparison operator was intended, which might allow remote attackers to cause a denial of service and possibly execute arbitrary code via a crafted file that modifies a loop counter and trigger... Read more

    Affected Products : ffmpeg
    • Published: Feb. 10, 2010
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2009-4660

    Stack-based buffer overflow in the AntServer Module (AntServer.exe) in BigAnt IM Server 2.50 allows remote attackers to execute arbitrary code via a long GET request to TCP port 6660.... Read more

    Affected Products : bigant_messenger
    • Published: Mar. 03, 2010
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2009-4594

    Unspecified vulnerability in IBM Lotus iNotes (aka Domino Web Access or DWA) before 229.131 for Domino 8.0.x has unknown impact and attack vectors, aka SPR SDOY7RHBNH.... Read more

    • Published: Jan. 09, 2010
    • Modified: Apr. 09, 2025
  • 10.0

    HIGH
    CVE-2012-5955

    Unspecified vulnerability in the IBM HTTP Server component 5.3 in IBM WebSphere Application Server (WAS) for z/OS allows remote attackers to execute arbitrary commands via unknown vectors.... Read more

    • Published: Dec. 20, 2012
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2009-4482

    Buffer overflow in MediaServer.exe in TVersity 1.6 allows remote attackers to execute arbitrary code via unspecified vectors, as demonstrated by the vd_tversity module in VulnDisco Pack Professional 8.11. NOTE: as of 20091229, this disclosure has no acti... Read more

    Affected Products : tversity
    • Published: Dec. 30, 2009
    • Modified: Apr. 09, 2025
  • 10.0

    HIGH
    CVE-2009-4476

    Stack-based buffer overflow in HAURI ViRobot Desktop 5.5 before 2009-09-28.00 allows remote attackers to execute arbitrary code via unspecified vectors, as demonstrated by a certain module in VulnDisco Pack Professional 7.15 through 8.11. NOTE: some of t... Read more

    Affected Products : virobot_desktop
    • Published: Dec. 30, 2009
    • Modified: Apr. 09, 2025
  • 10.0

    HIGH
    CVE-2009-4463

    Intellicom NetBiter WebSCADA devices use default passwords for the HICP network configuration service, which makes it easier for remote attackers to modify network settings and cause a denial of service. NOTE: this is only a vulnerability when the adminis... Read more

    • Published: Dec. 30, 2009
    • Modified: Apr. 09, 2025
  • 10.0

    HIGH
    CVE-2009-1210

    Format string vulnerability in the PROFINET/DCP (PN-DCP) dissector in Wireshark 1.0.6 and earlier allows remote attackers to execute arbitrary code via a PN-DCP packet with format string specifiers in the station name. NOTE: some of these details are obt... Read more

    Affected Products : wireshark
    • Published: Apr. 01, 2009
    • Modified: Apr. 09, 2025
  • 10.0

    HIGH
    CVE-2020-13854

    Artica Pandora FMS 7.44 allows privilege escalation.... Read more

    Affected Products : pandora_fms
    • Published: Jun. 11, 2020
    • Modified: Nov. 21, 2024
  • 10.0

    HIGH
    CVE-2007-6115

    Buffer overflow in the ANSI MAP dissector for Wireshark (formerly Ethereal) 0.99.5 to 0.99.6, when running on unspecified platforms, allows remote attackers to cause a denial of service and possibly execute arbitrary code via unknown vectors.... Read more

    Affected Products : wireshark
    • Published: Nov. 23, 2007
    • Modified: Apr. 09, 2025
  • 10.0

    HIGH
    CVE-2009-4368

    Multiple unspecified vulnerabilities in Centreon before 2.1.4 have unknown impact and attack vectors in the (1) ping tool, (2) traceroute tool, and (3) ldap import, possibly related to improper authentication.... Read more

    Affected Products : centreon centreon
    • Published: Dec. 21, 2009
    • Modified: Apr. 09, 2025
  • 10.0

    HIGH
    CVE-2016-4208

    Adobe Reader and Acrobat before 11.0.17, Acrobat and Acrobat Reader DC Classic before 15.006.30198, and Acrobat and Acrobat Reader DC Continuous before 15.017.20050 on Windows and OS X allow attackers to execute arbitrary code or cause a denial of service... Read more

    • Published: Jul. 13, 2016
    • Modified: Apr. 12, 2025
  • 10.0

    HIGH
    CVE-2008-0544

    Heap-based buffer overflow in the IMG_LoadLBM_RW function in IMG_lbm.c in SDL_image before 1.2.7 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted IFF ILBM file. NOTE: some of these ... Read more

    Affected Products : sdl_image
    • Published: Feb. 01, 2008
    • Modified: Apr. 09, 2025
  • 10.0

    HIGH
    CVE-2005-3450

    Unspecified vulnerability in the HTTP Server in Oracle Application Server 1.0 up to 9.0.2.3 has unknown impact and attack vectors, as identified by Oracle Vuln# AS04.... Read more

    Affected Products : application_server
    • Published: Nov. 02, 2005
    • Modified: Apr. 03, 2025
  • 10.0

    HIGH
    CVE-2007-1007

    Format string vulnerability in GnomeMeeting 1.0.2 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via format strings in the name, which is not properly handled in a call to the gnomemeeting_log_... Read more

    • Published: Feb. 20, 2007
    • Modified: Apr. 09, 2025
  • 10.0

    HIGH
    CVE-2006-0288

    Multiple unspecified vulnerabilities in the Oracle Reports Developer component of Oracle Application Server 9.0.4.1 and E-Business Suite and Applications 11.5.10 have unspecified impact and attack vectors, as identified by Oracle Vuln# (1) REP01 and (2) R... Read more

    Affected Products : e-business_suite application_server
    • Published: Jan. 18, 2006
    • Modified: Apr. 03, 2025
  • 10.0

    HIGH
    CVE-2009-4273

    stap-server in SystemTap before 1.1 allows remote attackers to execute arbitrary commands via shell metacharacters in stap command-line arguments in a request.... Read more

    Affected Products : systemtap
    • Published: Jan. 26, 2010
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2013-2810

    Emerson Process Management ROC800 RTU with software 3.50 and earlier, DL8000 RTU with software 2.30 and earlier, and ROC800L RTU with software 1.20 and earlier allows remote attackers to execute arbitrary commands via a TCP replay attack.... Read more

    • Published: Dec. 08, 2014
    • Modified: Apr. 12, 2025
Showing 20 of 292801 Results