Latest CVE Feed

Following is the list of latest published vulnerabilities. You can filter the list based on the severity of the vulnerability, whether it is actively exploited (also known as CISA KEV List) or remotely exploitable. You can also sort the list based on the published date, last updated date, or CVSS score.
  • 10.0

    HIGH
    CVE-2008-3553

    Multiple unspecified vulnerabilities in Nokia Series 40 3rd edition devices allow remote attackers to execute arbitrary code via unknown vectors, probably related to MIDP privilege escalation and persistent MIDlets, aka "ISSUES 3-10." NOTE: as of 20080807... Read more

    Affected Products : series_40 j2me
    • EPSS Score: %5.15
    • Published: Aug. 08, 2008
    • Modified: Apr. 09, 2025
  • 10.0

    HIGH
    CVE-2008-3551

    Multiple unspecified vulnerabilities in Sun Java Platform Micro Edition (aka Java ME, J2ME, or mobile Java), as distributed in Sun Wireless Toolkit 2.5.2, allow remote attackers to execute arbitrary code via unknown vectors. NOTE: as of 20080807, the onl... Read more

    • EPSS Score: %5.43
    • Published: Aug. 08, 2008
    • Modified: Apr. 09, 2025
  • 10.0

    HIGH
    CVE-2008-3552

    Multiple unspecified vulnerabilities in Nokia Series 40 3rd edition FP1, and possibly later devices, allow remote attackers to execute arbitrary code via unknown vectors, probably related to MIDP privilege escalation and persistent MIDlets, aka "ISSUES 11... Read more

    Affected Products : series_40
    • EPSS Score: %5.15
    • Published: Aug. 08, 2008
    • Modified: Apr. 09, 2025
  • 10.0

    HIGH
    CVE-2008-3453

    Multiple unspecified vulnerabilities in ImpressCMS 1.0 have unknown impact and attack vectors, related to modules/admin.php and "a few files."... Read more

    Affected Products : impresscms
    • EPSS Score: %0.33
    • Published: Aug. 04, 2008
    • Modified: Apr. 09, 2025
  • 10.0

    HIGH
    CVE-2008-3455

    PHP remote file inclusion vulnerability in include/admin.php in JnSHosts PHP Hosting Directory 2.0 allows remote attackers to execute arbitrary PHP code via a URL in the rd parameter.... Read more

    Affected Products : php_hosting_directory
    • EPSS Score: %1.30
    • Published: Aug. 04, 2008
    • Modified: Apr. 09, 2025
  • 10.0

    HIGH
    CVE-2008-3411

    The Axesstel AXW-D800 modem with D2_ETH_109_01_VEBR Jun-14-2006 software does not require authentication for (1) etc/config/System.html, (2) etc/config/Network.html, (3) etc/config/Security.html, (4) cgi-bin/sysconf.cgi, and (5) cgi-bin/route.cgi, which a... Read more

    Affected Products : akw-d800
    • EPSS Score: %0.80
    • Published: Jul. 31, 2008
    • Modified: Apr. 09, 2025
  • 10.0

    HIGH
    CVE-2019-20893

    An issue was discovered in Activision Infinity Ward Call of Duty Modern Warfare 2 through 2019-12-11. PartyHost_HandleJoinPartyRequest has a buffer overflow vulnerability and can be exploited by using a crafted joinParty packet. This can be utilized to co... Read more

    Affected Products : call_of_duty_modern_warfare_2
    • EPSS Score: %0.60
    • Published: Jun. 30, 2020
    • Modified: Nov. 21, 2024
  • 10.0

    HIGH
    CVE-2008-3376

    Multiple unspecified vulnerabilities in JamRoom before 3.4.0 have unknown impact and attack vectors.... Read more

    Affected Products : jamroom
    • EPSS Score: %0.38
    • Published: Jul. 30, 2008
    • Modified: Apr. 09, 2025
  • 10.0

    HIGH
    CVE-2008-3479

    Heap-based buffer overflow in the Microsoft Message Queuing (MSMQ) service (mqsvc.exe) in Microsoft Windows 2000 SP4 allows remote attackers to read memory contents and execute arbitrary code via a crafted RPC call, related to improper processing of param... Read more

    Affected Products : office windows_2000
    • EPSS Score: %65.92
    • Published: Oct. 15, 2008
    • Modified: Apr. 09, 2025
  • 10.0

    HIGH
    CVE-2006-0874

    Multiple unspecified vulnerabilities in Intensive Point iUser Ecommerce before 2.2 have unspecified vectors and impact, as addressed by "Urgent secure fixes". NOTE: this might be a duplicate of CVE-2006-0854, but the vendor announcement for this issue (f... Read more

    Affected Products : iuser_ecommerce
    • EPSS Score: %0.43
    • Published: Feb. 24, 2006
    • Modified: Apr. 03, 2025
  • 10.0

    HIGH
    CVE-2008-3349

    Multiple unspecified vulnerabilities in NetApp Data ONTAP, as used on NetApp and IBM eServer platforms, allow remote attackers to execute arbitrary commands, cause a denial of service (system crash), or obtain sensitive information, probably related to in... Read more

    • EPSS Score: %3.12
    • Published: Jul. 28, 2008
    • Modified: Apr. 09, 2025
  • 10.0

    HIGH
    CVE-2008-3335

    Unspecified vulnerability in PunBB before 1.2.19 allows remote attackers to inject arbitrary SMTP commands via unknown vectors.... Read more

    Affected Products : punbb
    • EPSS Score: %2.42
    • Published: Jul. 27, 2008
    • Modified: Apr. 09, 2025
  • 10.0

    HIGH
    CVE-2008-3225

    Joomla! before 1.5.4 allows attackers to access administration functionality, which has unknown impact and attack vectors related to a missing "LDAP security fix."... Read more

    Affected Products : joomla
    • EPSS Score: %0.03
    • Published: Jul. 18, 2008
    • Modified: Apr. 09, 2025
  • 10.0

    HIGH
    CVE-2008-3252

    Stack-based buffer overflow in the read_article function in getarticle.c in newsx 1.6 allows remote attackers to execute arbitrary code via a news article containing a large number of lines starting with a period.... Read more

    Affected Products : fedora newsx
    • EPSS Score: %25.94
    • Published: Jul. 21, 2008
    • Modified: Apr. 09, 2025
  • 10.0

    HIGH
    CVE-2004-1289

    Multiple buffer overflows in (1) the getline function in pcalutil.c and (2) the get_holiday function in readfile.c for pcal 4.7.1 allow remote attackers to execute arbitrary code via a crafted calendar file.... Read more

    Affected Products : pcal
    • EPSS Score: %19.28
    • Published: Jan. 10, 2005
    • Modified: Apr. 03, 2025
  • 10.0

    HIGH
    CVE-2008-3159

    Integer overflow in ds.dlm, as used by dhost.exe, in Novell eDirectory 8.7.3.10 before 8.7.3 SP10b and 8.8 before 8.8.2 ftf2 allows remote attackers to execute arbitrary code via unspecified vectors that trigger a stack-based buffer overflow, related to "... Read more

    Affected Products : edirectory
    • EPSS Score: %15.11
    • Published: Jul. 14, 2008
    • Modified: Apr. 09, 2025
  • 10.0

    HIGH
    CVE-2008-3160

    Multiple unspecified vulnerabilities in IBM Data ONTAP 7.1 before 7.1.3, as used by IBM System Storage N series Filer and IBM System Storage N series Gateway, have unknown impact and attack vectors.... Read more

    Affected Products : data_ontap
    • EPSS Score: %1.82
    • Published: Jul. 14, 2008
    • Modified: Apr. 09, 2025
  • 10.0

    HIGH
    CVE-2008-3116

    Format string vulnerability in dx8render.dll in Snail Game (aka Suzhou Snail Electronic Company) 5th street (aka Hot Step or High Street 5) allows remote attackers to execute arbitrary code via format string specifiers in a chat message.... Read more

    Affected Products : 5th_street high_street_5 hot_step
    • EPSS Score: %5.54
    • Published: Jul. 10, 2008
    • Modified: Apr. 09, 2025
  • 10.0

    HIGH
    CVE-2008-4250

    The Server service in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, Server 2008, and 7 Pre-Beta allows remote attackers to execute arbitrary code via a crafted RPC request that triggers the overflow during path c... Read more

    • EPSS Score: %94.13
    • Published: Oct. 23, 2008
    • Modified: Apr. 09, 2025
  • 10.0

    HIGH
    CVE-2008-3079

    Unspecified vulnerability in Opera before 9.51 on Windows allows attackers to execute arbitrary code via unknown vectors.... Read more

    Affected Products : opera opera_browser windows
    • EPSS Score: %0.75
    • Published: Jul. 09, 2008
    • Modified: Apr. 09, 2025
Showing 20 of 292628 Results