Latest CVE Feed
-
10.0
HIGHCVE-2009-3570
Unspecified vulnerability in OpenOffice.org (OOo) has unspecified impact and remote attack vectors, as demonstrated by a certain module in VulnDisco Pack Professional 8.9. NOTE: as of 20091005, this disclosure has no actionable information. However, beca... Read more
Affected Products : openoffice.org- Published: Oct. 06, 2009
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-1999-0238
php.cgi allows attackers to read any file on the system.... Read more
Affected Products : php- Published: Aug. 01, 1997
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2009-3346
Unspecified vulnerability in SAP Crystal Reports Server 2008 allows remote attackers to execute arbitrary code via unknown vectors, as demonstrated by a certain module in VulnDisco Pack Professional 8.3 through 8.11. NOTE: as of 20090917, this disclosure... Read more
Affected Products : crystal_reports_server- Published: Sep. 24, 2009
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2009-3345
Heap-based buffer overflow in SAP Crystal Reports Server 2008 has unknown impact and attack vectors, as demonstrated by a certain module in VulnDisco Pack Professional 8.3 through 8.11. NOTE: as of 20090917, this disclosure has no actionable information.... Read more
Affected Products : crystal_reports_server- Published: Sep. 24, 2009
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2009-3350
Multiple unspecified vulnerabilities in the Subdomain Manager module for Drupal have unknown impact and attack vectors.... Read more
- Published: Sep. 24, 2009
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2009-3371
Use-after-free vulnerability in Mozilla Firefox 3.5.x before 3.5.4 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code by creating JavaScript web-workers recursively.... Read more
Affected Products : firefox- Published: Oct. 29, 2009
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2009-3351
Multiple unspecified vulnerabilities in the Node Browser module for Drupal have unknown impact and attack vectors.... Read more
- Published: Sep. 24, 2009
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2009-3379
Multiple unspecified vulnerabilities in libvorbis, as used in Mozilla Firefox 3.5.x before 3.5.4, allow remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via unknown vectors. NOTE: this might overlap CVE... Read more
Affected Products : firefox- Published: Oct. 29, 2009
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2009-3169
Multiple unspecified vulnerabilities in Hitachi JP1/File Transmission Server/FTP before 09-00 allow remote attackers to execute arbitrary code via unknown attack vectors.... Read more
Affected Products : jp1_file_transmission_server- Published: Sep. 11, 2009
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2009-3179
Multiple unspecified vulnerabilities in Symantec Altiris Deployment Solution 6.9 might allow remote attackers to execute arbitrary code via unknown client-side attack vectors, as demonstrated by a certain module in VulnDisco Pack Professional 7.17, as ide... Read more
Affected Products : altiris_deployment_solution- Published: Sep. 11, 2009
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2009-3102
The doHotCopy subroutine in socket-server.pl in Zmanda Recovery Manager (ZRM) for MySQL 2.x before 2.1.1 allows remote attackers to execute arbitrary commands via vectors involving a crafted $MYSQL_BINPATH variable.... Read more
Affected Products : zrm_for_my_sql- Published: Sep. 08, 2009
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2009-3072
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 3.0.14 and 3.5.x before 3.5.3, Thunderbird before 2.0.0.24, and SeaMonkey before 1.1.19 allow remote attackers to cause a denial of service (memory corruption and applica... Read more
Affected Products : firefox- Published: Sep. 10, 2009
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2009-3103
Array index error in the SMBv2 protocol implementation in srv2.sys in Microsoft Windows Vista Gold, SP1, and SP2, Windows Server 2008 Gold and SP2, and Windows 7 RC allows remote attackers to execute arbitrary code or cause a denial of service (system cra... Read more
- Published: Sep. 08, 2009
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2009-3032
Integer overflow in kvolefio.dll 8.5.0.8339 and 10.5.0.0 in the Autonomy KeyView Filter SDK, as used in IBM Lotus Notes 8.5, Symantec Mail Security for Microsoft Exchange 5.0.10 through 5.0.13, and other products, allows context-dependent attackers to exe... Read more
- Published: Mar. 05, 2010
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2009-2935
Google V8, as used in Google Chrome before 2.0.172.43, allows remote attackers to bypass intended restrictions on reading memory, and possibly obtain sensitive information or execute arbitrary code in the Chrome sandbox, via crafted JavaScript.... Read more
Affected Products : chrome- Published: Aug. 27, 2009
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2009-2753
Multiple buffer overflows in the authentication functionality in librpc.dll in the Informix Storage Manager (ISM) Portmapper service (aka portmap.exe), as used in IBM Informix Dynamic Server (IDS) 10.x before 10.00.TC9 and 11.x before 11.10.TC3, allow rem... Read more
Affected Products : informix_dynamic_server- Published: Mar. 05, 2010
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2009-2754
Integer signedness error in the authentication functionality in librpc.dll in the Informix Storage Manager (ISM) Portmapper service (aka portmap.exe), as used in IBM Informix Dynamic Server (IDS) 10.x before 10.00.TC9 and 11.x before 11.10.TC3 and EMC Leg... Read more
- Published: Mar. 05, 2010
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2009-2741
Unspecified vulnerability in the wberuntimeear application in the test servlet in IBM WebSphere Business Events 6.1 and 6.2 allows remote attackers to execute arbitrary code via unknown vectors.... Read more
Affected Products : websphere_business_events- Published: Sep. 18, 2009
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2009-2667
Unspecified vulnerability in IBM Tivoli Key Lifecycle Manager (TKLM) 1.0 has unknown impact and attack vectors, related to a "password security vulnerability."... Read more
Affected Products : tklm- Published: Aug. 05, 2009
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2009-2675
Integer overflow in the unpack200 utility in Sun Java Runtime Environment (JRE) in JDK and JRE 6 before Update 15, and JDK and JRE 5.0 before Update 20, allows context-dependent attackers to gain privileges via unspecified length fields in the header of a... Read more
- Published: Aug. 05, 2009
- Modified: Apr. 09, 2025