Latest CVE Feed
-
10.0
HIGHCVE-2010-3572
Unspecified vulnerability in the Sound component in Oracle Java SE and Java for Business 6 Update 21, 5.0 Update 25, 1.4.2_27, and 1.3.1_28 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors.... Read more
- Published: Oct. 19, 2010
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2010-3562
Unspecified vulnerability in the 2D component in Oracle Java SE and Java for Business 6 Update 21, 5.0 Update 25, 1.4.2_27, and 1.3.1_28 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors. NOTE: the previou... Read more
- Published: Oct. 19, 2010
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2010-3193
Unspecified vulnerability in the DB2STST program in IBM DB2 9.1 before FP9, 9.5 before FP6, and 9.7 before FP2 has unknown impact and attack vectors.... Read more
Affected Products : db2- Published: Aug. 31, 2010
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2010-3114
The text-editing implementation in Google Chrome before 5.0.375.127, and webkitgtk before 1.2.6, does not check a node type before performing a cast, which has unspecified impact and attack vectors related to (1) DeleteSelectionCommand.cpp, (2) InsertLine... Read more
- Published: Aug. 24, 2010
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2019-17621
The UPnP endpoint URL /gena.cgi in the D-Link DIR-859 Wi-Fi router 1.05 and 1.06B01 Beta01 allows an Unauthenticated remote attacker to execute system commands as root, by sending a specially crafted HTTP SUBSCRIBE request to the UPnP service when connect... Read more
Affected Products : dir-823_firmware dir-822_firmware dir-895l_firmware dir-890l_firmware dir-885l_firmware dir-880l_firmware dir-868l_firmware dir-859_firmware dir-865l_firmware dir-869_firmware +18 more products- Actively Exploited
- Published: Dec. 30, 2019
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2014-2632
Unspecified vulnerability in the WebTier component in HP Service Manager (SM) 7.21 and 9.x before 9.34 allows remote attackers to execute arbitrary code via unknown vectors.... Read more
Affected Products : service_manager- Published: Aug. 23, 2014
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2010-2523
Multiple buffer overflows in ha.c in the mipv6 daemon in UMIP 0.4 allow remote attackers to have an unspecified impact via a crafted (1) ND_OPT_PREFIX_INFORMATION or (2) ND_OPT_HOME_AGENT_INFO packet.... Read more
Affected Products : umip- Published: Jul. 13, 2010
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2019-17509
D-Link DIR-846 devices with firmware 100A35 allow remote attackers to execute arbitrary OS commands as root by leveraging admin access and sending a /HNAP1/ request for SetMasterWLanSettings with shell metacharacters to /squashfs-root/www/HNAP1/control/Se... Read more
- Published: Oct. 11, 2019
- Modified: Nov. 21, 2024
-
10.0
HIGHCVE-2019-17510
D-Link DIR-846 devices with firmware 100A35 allow remote attackers to execute arbitrary OS commands as root by leveraging admin access and sending a /HNAP1/ request for SetWizardConfig with shell metacharacters to /squashfs-root/www/HNAP1/control/SetWizar... Read more
- Published: Oct. 11, 2019
- Modified: Nov. 21, 2024
-
10.0
HIGHCVE-2010-1763
Unspecified vulnerability in WebKit in Apple iTunes before 9.2 on Windows has unknown impact and attack vectors, a different vulnerability than CVE-2010-1387 and CVE-2010-1769.... Read more
- Published: Jun. 18, 2010
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2010-1676
Heap-based buffer overflow in Tor before 0.2.1.28 and 0.2.2.x before 0.2.2.20-alpha allows remote attackers to cause a denial of service (daemon crash) or possibly execute arbitrary code via unspecified vectors.... Read more
- Published: Dec. 22, 2010
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2010-1553
Stack-based buffer overflow in getnnmdata.exe in HP OpenView Network Node Manager (OV NNM) 7.01, 7.51, and 7.53 allows remote attackers to execute arbitrary code via an invalid MaxAge parameter.... Read more
Affected Products : openview_network_node_manager- Published: May. 13, 2010
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2010-1386
page/Geolocation.cpp in WebCore in WebKit before r56188 and before 1.2.5 does not properly restrict access to the lastPosition function, which has unspecified impact and remote attack vectors, aka rdar problem 7746357.... Read more
Affected Products : webkit- Published: Aug. 19, 2010
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2010-0477
The SMB client in Microsoft Windows Server 2008 R2 and Windows 7 does not properly handle (1) SMBv1 and (2) SMBv2 response packets, which allows remote SMB servers and man-in-the-middle attackers to execute arbitrary code via a crafted packet that causes ... Read more
- Published: Apr. 14, 2010
- Modified: Apr. 11, 2025
-
10.0
CRITICALCVE-2019-17440
Improper restriction of communications to Log Forwarding Card (LFC) on PA-7000 Series devices with second-generation Switch Management Card (SMC) may allow an attacker with network access to the LFC to gain root access to PAN-OS. This issue affects PAN-OS... Read more
- Published: Dec. 20, 2019
- Modified: Nov. 21, 2024
-
10.0
HIGHCVE-2010-0239
The TCP/IP implementation in Microsoft Windows Vista Gold, SP1, and SP2 and Server 2008 Gold and SP2, when IPv6 is enabled, does not properly perform bounds checking on ICMPv6 Router Advertisement packets, which allows remote attackers to execute arbitrar... Read more
- Published: Feb. 10, 2010
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2010-0160
The Web Worker functionality in Mozilla Firefox 3.0.x before 3.0.18 and 3.5.x before 3.5.8, and SeaMonkey before 2.0.3, does not properly handle array data types for posted messages, which allows remote attackers to cause a denial of service (heap memory ... Read more
- Published: Feb. 22, 2010
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2010-0079
Multiple vulnerabilities in the JRockit component in BEA Product Suite R27.6.5 using JRE/JDK 1.4.2, 5, and 6 allow remote attackers to affect confidentiality, integrity, and availability via unknown vectors. NOTE: this CVE identifier overlaps CVE-2009-386... Read more
- Published: Jan. 13, 2010
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2009-4538
drivers/net/e1000e/netdev.c in the e1000e driver in the Linux kernel 2.6.32.3 and earlier does not properly check the size of an Ethernet frame that exceeds the MTU, which allows remote attackers to have an unspecified impact via crafted packets, a relate... Read more
- Published: Jan. 12, 2010
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2009-4181
Stack-based buffer overflow in ovwebsnmpsrv.exe in HP OpenView Network Node Manager (OV NNM) 7.01, 7.51, and 7.53 allows remote attackers to execute arbitrary code via vectors involving the sel and arg parameters to jovgraph.exe.... Read more
Affected Products : openview_network_node_manager- Published: Dec. 10, 2009
- Modified: Apr. 09, 2025