Latest CVE Feed

Following is the list of latest published vulnerabilities. You can filter the list based on the severity of the vulnerability, whether it is actively exploited (also known as CISA KEV List) or remotely exploitable. You can also sort the list based on the published date, last updated date, or CVSS score.
  • 10.0

    CRITICAL
    CVE-2024-4985

    An authentication bypass vulnerability was present in the GitHub Enterprise Server (GHES) when utilizing SAML single sign-on authentication with the optional encrypted assertions feature. This vulnerability allowed an attacker to forge a SAML response to ... Read more

    Affected Products : enterprise_server
    • Published: May. 20, 2024
    • Modified: Aug. 27, 2025
  • 10.0

    HIGH
    CVE-2008-1910

    Stack-based buffer overflow in the database service (ibserver.exe) in Borland InterBase 2007 SP2 allows remote attackers to execute arbitrary code via a malformed opcode 0x52 request to TCP port 3050. NOTE: this might overlap CVE-2007-5243 or CVE-2007-524... Read more

    Affected Products : interbase
    • EPSS Score: %7.34
    • Published: Apr. 22, 2008
    • Modified: Apr. 09, 2025
  • 10.0

    HIGH
    CVE-2019-1935

    A vulnerability in Cisco Integrated Management Controller (IMC) Supervisor, Cisco UCS Director, and Cisco UCS Director Express for Big Data could allow an unauthenticated, remote attacker to log in to the CLI of an affected system by using the SCP User ac... Read more

    • EPSS Score: %88.86
    • Published: Aug. 21, 2019
    • Modified: Nov. 21, 2024
  • 10.0

    HIGH
    CVE-2019-1937

    A vulnerability in the web-based management interface of Cisco Integrated Management Controller (IMC) Supervisor, Cisco UCS Director, and Cisco UCS Director Express for Big Data could allow an unauthenticated, remote attacker to acquire a valid session to... Read more

    • EPSS Score: %91.30
    • Published: Aug. 21, 2019
    • Modified: Nov. 21, 2024
  • 10.0

    HIGH
    CVE-2019-1938

    A vulnerability in the web-based management interface of Cisco UCS Director and Cisco UCS Director Express for Big Data could allow an unauthenticated, remote attacker to bypass authentication and execute arbitrary actions with administrator privileges on... Read more

    • EPSS Score: %2.55
    • Published: Aug. 21, 2019
    • Modified: Nov. 21, 2024
  • 10.0

    HIGH
    CVE-2008-1822

    Unspecified vulnerability in the Oracle Application Express component in Oracle Application Express 3.0.1 has unknown impact and remote attack vectors, aka APEX02.... Read more

    Affected Products : application_express
    • EPSS Score: %0.93
    • Published: Apr. 16, 2008
    • Modified: Apr. 09, 2025
  • 10.0

    HIGH
    CVE-2008-1826

    Multiple unspecified vulnerabilities in Oracle E-Business Suite 11.5.10.2 have unknown impact and attack vectors related to (a) Advanced Pricing, aka (1) APP01 and (2) APP10; and (b) Applications Framework, aka (3) APP05.... Read more

    Affected Products : e-business_suite
    • EPSS Score: %1.14
    • Published: Apr. 16, 2008
    • Modified: Apr. 09, 2025
  • 10.0

    HIGH
    CVE-2008-1823

    Unspecified vulnerability in the Oracle Jinitiator component in Oracle Application Server 1.3.1.14 has unknown impact and remote attack vectors, aka AS01.... Read more

    Affected Products : application_server jinitiator
    • EPSS Score: %0.93
    • Published: Apr. 16, 2008
    • Modified: Apr. 09, 2025
  • 10.0

    HIGH
    CVE-2008-1812

    Unspecified vulnerability in the Oracle Enterprise Manager component in Oracle Database 9.0.1.5 FIPS+; Application Server 1.0.2.2; and Enterprise Manager for AS 1.0.2.2 and Database 9.0.1.5 has unknown impact and local attack vectors, aka EM01.... Read more

    Affected Products : database_9i application_server
    • EPSS Score: %0.93
    • Published: Apr. 16, 2008
    • Modified: Apr. 09, 2025
  • 10.0

    HIGH
    CVE-2008-1818

    Unspecified vulnerability in the Authentication component in Oracle Database 11.1.0.6 has unknown impact and remote attack vectors, aka DB08.... Read more

    Affected Products : database_server
    • EPSS Score: %1.46
    • Published: Apr. 16, 2008
    • Modified: Apr. 09, 2025
  • 10.0

    HIGH
    CVE-2008-1827

    Multiple unspecified vulnerabilities in Oracle E-Business Suite 11.5.10.2 and 12.0.4 have unknown impact and attack vectors related to (a) Advanced Pricing component, aka (1) APP02, (2) APP03, and (3) APP09; (b) Application Object Library component, aka (... Read more

    • EPSS Score: %2.78
    • Published: Apr. 16, 2008
    • Modified: Apr. 09, 2025
  • 10.0

    HIGH
    CVE-2008-1809

    Heap-based buffer overflow in Novell eDirectory 8.7.3 before 8.7.3.10b, and 8.8 before 8.8.2 FTF2, allows remote attackers to execute arbitrary code via an LDAP search request containing "NULL search parameters."... Read more

    Affected Products : edirectory
    • EPSS Score: %22.90
    • Published: Jul. 14, 2008
    • Modified: Apr. 09, 2025
  • 10.0

    HIGH
    CVE-2008-1831

    Multiple unspecified vulnerabilities in the Siebel SimBuilder component in Oracle Siebel Enterprise 7.8.2 and 7.8.5 have unknown impact and remote or local attack vectors, aka (1) SEBL01, (2) SEBL02, (3) SEBL03, (4) SEBL04, (5) SEBL05, and (6) SEBL06.... Read more

    Affected Products : siebel_enterprise
    • EPSS Score: %1.14
    • Published: Apr. 16, 2008
    • Modified: Apr. 09, 2025
  • 10.0

    HIGH
    CVE-2019-1913

    Multiple vulnerabilities in the web management interface of Cisco Small Business 220 Series Smart Switches could allow an unauthenticated, remote attacker to overflow a buffer, which then allows the execution of arbitrary code with root privileges on the ... Read more

    • EPSS Score: %19.00
    • Published: Aug. 07, 2019
    • Modified: Nov. 21, 2024
  • 10.0

    HIGH
    CVE-2019-7992

    Adobe Photoshop CC versions 19.1.8 and earlier and 20.0.5 and earlier have an out of bound write vulnerability. Successful exploitation could lead to arbitrary code execution.... Read more

    Affected Products : macos photoshop_cc windows
    • EPSS Score: %11.91
    • Published: Aug. 26, 2019
    • Modified: Nov. 21, 2024
  • 10.0

    HIGH
    CVE-2008-1766

    Multiple unspecified vulnerabilities in phpBB before 3.0.1 have unknown impact and attack vectors, related to "two minor security-related bugs."... Read more

    Affected Products : phpbb
    • EPSS Score: %0.32
    • Published: Apr. 12, 2008
    • Modified: Apr. 09, 2025
  • 10.0

    HIGH
    CVE-2019-1821

    A vulnerability in the web-based management interface of Cisco Prime Infrastructure (PI) and Cisco Evolved Programmable Network (EPN) Manager could allow an authenticated, remote attacker to execute code with root-level privileges on the underlying operat... Read more

    • EPSS Score: %93.01
    • Published: May. 16, 2019
    • Modified: Nov. 21, 2024
  • 10.0

    HIGH
    CVE-2017-16926

    Ohcount 3.0.0 is prone to a command injection via specially crafted filenames containing shell metacharacters, which can be exploited by an attacker (providing a source tree for Ohcount processing) to execute arbitrary code as the user running Ohcount.... Read more

    Affected Products : ohcount
    • EPSS Score: %6.41
    • Published: Nov. 22, 2017
    • Modified: Apr. 20, 2025
  • 10.0

    HIGH
    CVE-2019-1723

    A vulnerability in the Cisco Common Services Platform Collector (CSPC) could allow an unauthenticated, remote attacker to access an affected device by using an account that has a default, static password. This account does not have administrator privilege... Read more

    • EPSS Score: %25.49
    • Published: Mar. 13, 2019
    • Modified: Nov. 21, 2024
  • 10.0

    HIGH
    CVE-2008-1704

    Multiple buffer overflows in TIBCO Software Enterprise Message Service (EMS) before 4.4.3, and iProcess Engine 10.6.0 through 10.6.1, allow remote attackers to execute arbitrary code via a crafted message to the EMS server.... Read more

    • EPSS Score: %12.63
    • Published: Apr. 11, 2008
    • Modified: Apr. 09, 2025
Showing 20 of 292517 Results