Latest CVE Feed

Following is the list of latest published vulnerabilities. You can filter the list based on the severity of the vulnerability, whether it is actively exploited (also known as CISA KEV List) or remotely exploitable. You can also sort the list based on the published date, last updated date, or CVSS score.
  • 10.0

    HIGH
    CVE-2014-2632

    Unspecified vulnerability in the WebTier component in HP Service Manager (SM) 7.21 and 9.x before 9.34 allows remote attackers to execute arbitrary code via unknown vectors.... Read more

    Affected Products : service_manager
    • Published: Aug. 23, 2014
    • Modified: Apr. 12, 2025
  • 10.0

    HIGH
    CVE-2010-2523

    Multiple buffer overflows in ha.c in the mipv6 daemon in UMIP 0.4 allow remote attackers to have an unspecified impact via a crafted (1) ND_OPT_PREFIX_INFORMATION or (2) ND_OPT_HOME_AGENT_INFO packet.... Read more

    Affected Products : umip
    • Published: Jul. 13, 2010
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2019-17509

    D-Link DIR-846 devices with firmware 100A35 allow remote attackers to execute arbitrary OS commands as root by leveraging admin access and sending a /HNAP1/ request for SetMasterWLanSettings with shell metacharacters to /squashfs-root/www/HNAP1/control/Se... Read more

    Affected Products : dir-846_firmware dir-846
    • Published: Oct. 11, 2019
    • Modified: Nov. 21, 2024
  • 10.0

    HIGH
    CVE-2019-17510

    D-Link DIR-846 devices with firmware 100A35 allow remote attackers to execute arbitrary OS commands as root by leveraging admin access and sending a /HNAP1/ request for SetWizardConfig with shell metacharacters to /squashfs-root/www/HNAP1/control/SetWizar... Read more

    Affected Products : dir-846_firmware dir-846
    • Published: Oct. 11, 2019
    • Modified: Nov. 21, 2024
  • 10.0

    HIGH
    CVE-2010-1763

    Unspecified vulnerability in WebKit in Apple iTunes before 9.2 on Windows has unknown impact and attack vectors, a different vulnerability than CVE-2010-1387 and CVE-2010-1769.... Read more

    • Published: Jun. 18, 2010
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2010-1676

    Heap-based buffer overflow in Tor before 0.2.1.28 and 0.2.2.x before 0.2.2.20-alpha allows remote attackers to cause a denial of service (daemon crash) or possibly execute arbitrary code via unspecified vectors.... Read more

    Affected Products : tor tor
    • Published: Dec. 22, 2010
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2010-1553

    Stack-based buffer overflow in getnnmdata.exe in HP OpenView Network Node Manager (OV NNM) 7.01, 7.51, and 7.53 allows remote attackers to execute arbitrary code via an invalid MaxAge parameter.... Read more

    Affected Products : openview_network_node_manager
    • Published: May. 13, 2010
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2010-1386

    page/Geolocation.cpp in WebCore in WebKit before r56188 and before 1.2.5 does not properly restrict access to the lastPosition function, which has unspecified impact and remote attack vectors, aka rdar problem 7746357.... Read more

    Affected Products : webkit
    • Published: Aug. 19, 2010
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2010-0477

    The SMB client in Microsoft Windows Server 2008 R2 and Windows 7 does not properly handle (1) SMBv1 and (2) SMBv2 response packets, which allows remote SMB servers and man-in-the-middle attackers to execute arbitrary code via a crafted packet that causes ... Read more

    Affected Products : windows_7 windows_server_2008
    • Published: Apr. 14, 2010
    • Modified: Apr. 11, 2025
  • 10.0

    CRITICAL
    CVE-2019-17440

    Improper restriction of communications to Log Forwarding Card (LFC) on PA-7000 Series devices with second-generation Switch Management Card (SMC) may allow an attacker with network access to the LFC to gain root access to PAN-OS. This issue affects PAN-OS... Read more

    Affected Products : pan-os pa-7050 pa-7080
    • Published: Dec. 20, 2019
    • Modified: Nov. 21, 2024
  • 10.0

    HIGH
    CVE-2010-0239

    The TCP/IP implementation in Microsoft Windows Vista Gold, SP1, and SP2 and Server 2008 Gold and SP2, when IPv6 is enabled, does not properly perform bounds checking on ICMPv6 Router Advertisement packets, which allows remote attackers to execute arbitrar... Read more

    Affected Products : windows_server_2008 windows_vista
    • Published: Feb. 10, 2010
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2010-0160

    The Web Worker functionality in Mozilla Firefox 3.0.x before 3.0.18 and 3.5.x before 3.5.8, and SeaMonkey before 2.0.3, does not properly handle array data types for posted messages, which allows remote attackers to cause a denial of service (heap memory ... Read more

    Affected Products : firefox seamonkey
    • Published: Feb. 22, 2010
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2010-0079

    Multiple vulnerabilities in the JRockit component in BEA Product Suite R27.6.5 using JRE/JDK 1.4.2, 5, and 6 allow remote attackers to affect confidentiality, integrity, and availability via unknown vectors. NOTE: this CVE identifier overlaps CVE-2009-386... Read more

    Affected Products : bea_product_suite jre jdk
    • Published: Jan. 13, 2010
    • Modified: Apr. 09, 2025
  • 10.0

    HIGH
    CVE-2009-4538

    drivers/net/e1000e/netdev.c in the e1000e driver in the Linux kernel 2.6.32.3 and earlier does not properly check the size of an Ethernet frame that exceeds the MTU, which allows remote attackers to have an unspecified impact via crafted packets, a relate... Read more

    Affected Products : linux_kernel debian_linux
    • Published: Jan. 12, 2010
    • Modified: Apr. 09, 2025
  • 10.0

    HIGH
    CVE-2009-4181

    Stack-based buffer overflow in ovwebsnmpsrv.exe in HP OpenView Network Node Manager (OV NNM) 7.01, 7.51, and 7.53 allows remote attackers to execute arbitrary code via vectors involving the sel and arg parameters to jovgraph.exe.... Read more

    Affected Products : openview_network_node_manager
    • Published: Dec. 10, 2009
    • Modified: Apr. 09, 2025
  • 10.0

    HIGH
    CVE-2009-4177

    Buffer overflow in webappmon.exe in HP OpenView Network Node Manager (OV NNM) 7.01, 7.51, and 7.53 allows remote attackers to execute arbitrary code via a long HTTP Host header.... Read more

    Affected Products : openview_network_node_manager
    • Published: Dec. 10, 2009
    • Modified: Apr. 09, 2025
  • 10.0

    HIGH
    CVE-2009-4072

    Unspecified vulnerability in Opera before 10.10 has unknown impact and attack vectors, related to a "moderately severe issue."... Read more

    Affected Products : opera_browser
    • Published: Nov. 24, 2009
    • Modified: Apr. 09, 2025
  • 10.0

    HIGH
    CVE-2009-3955

    Adobe Reader and Acrobat 9.x before 9.3, and 8.x before 8.2 on Windows and Mac OS X, allows remote attackers to execute arbitrary code via a crafted JPC_MS_RGN marker in the Jp2c stream of a JpxDecode encoded data stream, which triggers an integer sign ex... Read more

    Affected Products : mac_os_x acrobat acrobat_reader windows
    • Published: Jan. 13, 2010
    • Modified: Apr. 09, 2025
  • 10.0

    HIGH
    CVE-2009-3845

    The port-3443 HTTP server in HP OpenView Network Node Manager (OV NNM) 7.01, 7.51, and 7.53 allows remote attackers to execute arbitrary commands via shell metacharacters in the hostname parameter to unspecified Perl scripts.... Read more

    Affected Products : openview_network_node_manager
    • Published: Dec. 10, 2009
    • Modified: Apr. 09, 2025
  • 10.0

    HIGH
    CVE-2009-3245

    OpenSSL before 0.9.8m does not check for a NULL return value from bn_wexpand function calls in (1) crypto/bn/bn_div.c, (2) crypto/bn/bn_gf2m.c, (3) crypto/ec/ec2_smpl.c, and (4) engines/e_ubsec.c, which has unspecified impact and context-dependent attack ... Read more

    Affected Products : openssl
    • Published: Mar. 05, 2010
    • Modified: Apr. 11, 2025
Showing 20 of 293354 Results