Latest CVE Feed
-
10.0
HIGHCVE-2006-5354
Unspecified vulnerability in Oracle HTTP Server 9.2.0.7 and 10.1.0.5, Application Server 9.0.4.3, 10.1.2.0.2, 10.1.2.1.0, and 10.1.3.0, racle Collaboration Suite 9.0.4.2 and 10.1.2, and Oracle E-Business Suite and Applications 11.5.10CU2 has unknown impac... Read more
- Published: Oct. 18, 2006
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2017-5815
A Remote Code Execution vulnerability in HPE Intelligent Management Center (iMC) PLAT version 7.3 E0504P04 was found.... Read more
Affected Products : intelligent_management_center- Published: Feb. 15, 2018
- Modified: Nov. 21, 2024
-
10.0
HIGHCVE-2006-5358
Unspecified vulnerability in Oracle Forms component in Oracle Application Server 9.0.4.3 and 10.1.2.0.2 has unknown impact and remote attack vectors, aka Vuln# FORM01.... Read more
Affected Products : application_server- Published: Oct. 18, 2006
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2017-5638
The Jakarta Multipart parser in Apache Struts 2 2.3.x before 2.3.32 and 2.5.x before 2.5.10.1 has incorrect exception handling and error-message generation during file-upload attempts, which allows remote attackers to execute arbitrary commands via a craf... Read more
Affected Products : weblogic_server oncommand_balance struts storwize_v7000_firmware storwize_v5000_firmware clearpass_policy_manager storwize_v3500_firmware storwize_v7000 storwize_v3500 storwize_v5000 +3 more products- Actively Exploited
- Published: Mar. 11, 2017
- Modified: Apr. 20, 2025
-
10.0
HIGHCVE-2006-5357
Unspecified vulnerability in Oracle HTTP Server component in Oracle Application Server 10.1.2.0.1, 10.1.2.0.2, and 10.1.2.1.0 has unknown impact and remote attack vectors related to the PHP Module, aka Vuln# OHS03.... Read more
Affected Products : application_server- Published: Oct. 18, 2006
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2006-5348
Unspecified vulnerability in Oracle HTTP Server 9.2.0.7, Oracle Collaboration Suite 9.0.4.2, and Oracle E-Business Suite and Applications 11.5.10CU2 has unknown impact and remote attack vectors related to HTTPS and SSL, aka Vuln# OHS05.... Read more
- Published: Oct. 18, 2006
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2006-5269
Heap-based buffer overflow in an unspecified procedure in Trend Micro ServerProtect 5.7 and 5.58 allows remote attackers to execute arbitrary code via unknown vectors, probably related to an RPC interface.... Read more
- Published: Nov. 17, 2008
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2017-3089
Adobe Digital Editions versions 4.5.4 and earlier have an exploitable memory corruption vulnerability in the PDF imaging model. Successful exploitation could lead to arbitrary code execution.... Read more
Affected Products : digital_editions- Published: Jun. 20, 2017
- Modified: Apr. 20, 2025
-
10.0
HIGHCVE-2022-25448
Tenda AC6 v15.03.05.09_multi was discovered to contain a stack overflow via the day parameter in the openSchedWifi function.... Read more
- Published: Mar. 18, 2022
- Modified: Nov. 21, 2024
-
10.0
HIGHCVE-2006-5288
Cisco 2700 Series Wireless Location Appliances before 2.1.34.0 have a default administrator username "root" and password "password," which allows remote attackers to obtain administrative privileges, aka Bug ID CSCsb92893.... Read more
Affected Products : 2700_wireless_location_appliance- Published: Oct. 13, 2006
- Modified: Apr. 09, 2025
-
10.0
CRITICALCVE-2017-2637
A design flaw issue was found in the Red Hat OpenStack Platform director use of TripleO to enable libvirtd based live-migration. Libvirtd is deployed by default (by director) listening on 0.0.0.0 (all interfaces) with no-authentication or encryption. Anyo... Read more
Affected Products : openstack- Published: Jul. 26, 2018
- Modified: Nov. 21, 2024
-
10.0
HIGHCVE-2007-6092
Buffer overflow in libsrtp in Ingate Firewall before 4.6.0 and SIParator before 4.6.0 has unknown impact and attack vectors. NOTE: it is not clear whether this issue crosses privilege boundaries.... Read more
- Published: Nov. 22, 2007
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2006-5238
Unspecified vulnerability in the file upload module in Blue Smiley Organizer before 4.45 has unknown impact and attack vectors.... Read more
Affected Products : blue_smiley_organizer- Published: Oct. 12, 2006
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2006-5171
Stack-based buffer overflow in the RPC interface in Mediasvr.exe in Computer Associates (CA) Brightstor ARCserve Backup 9.01 through 11.5, Enterprise Backup 10.5, and CA Protection Suites r2 allows remote attackers to execute arbitrary code via crafted SU... Read more
- Published: Jan. 16, 2007
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2006-4950
Cisco IOS 12.2 through 12.4 before 20060920, as used by Cisco IAD2430, IAD2431, and IAD2432 Integrated Access Devices, the VG224 Analog Phone Gateway, and the MWR 1900 and 1941 Mobile Wireless Edge Routers, is incorrectly identified as supporting DOCSIS, ... Read more
Affected Products : ios- Published: Sep. 23, 2006
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2006-4936
Moodle before 1.6.2 does not properly validate the module instance id when creating a course module object, which has unspecified impact and remote attack vectors.... Read more
Affected Products : moodle- Published: Sep. 23, 2006
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2017-13846
An issue was discovered in certain Apple products. macOS before 10.13.1 is affected. The issue involves the third-party "PCRE" product. Versions before 8.40 allow remote attackers to cause a denial of service (application crash) or possibly have unspecifi... Read more
- Published: Nov. 13, 2017
- Modified: Apr. 20, 2025
-
10.0
HIGHCVE-2017-12337
A vulnerability in the upgrade mechanism of Cisco collaboration products based on the Cisco Voice Operating System software platform could allow an unauthenticated, remote attacker to gain unauthorized, elevated access to an affected device. The vulnerabi... Read more
- Published: Nov. 16, 2017
- Modified: Jul. 31, 2025
-
10.0
HIGHCVE-2006-4831
Unspecified vulnerability in IP over DNS is now easy (iodine) before 0.3.2 has unknown impact and attack vectors, related to "potential security problems."... Read more
- Published: Sep. 15, 2006
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2006-4830
Directory traversal vulnerability in EditBlogTemplatesPlugin.java in David Czarnecki Blojsom 2.30 allows remote attackers to have an unknown impact by sending an HTTP request with a certain value of blogTemplate.... Read more
Affected Products : blojsom- Published: Sep. 15, 2006
- Modified: Apr. 03, 2025