Latest CVE Feed
-
10.0
HIGHCVE-2004-0368
Double free vulnerability in dtlogin in CDE on Solaris, HP-UX, and other operating systems allows remote attackers to execute arbitrary code via a crafted XDMCP packet.... Read more
- EPSS Score: %54.07
- Published: May. 04, 2004
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2017-3881
A vulnerability in the Cisco Cluster Management Protocol (CMP) processing code in Cisco IOS and Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause a reload of an affected device or remotely execute code with elevated privileges... Read more
Affected Products : ios_xe ios catalyst_4948 catalyst_2960l-16ps-ll catalyst_2960l-16ts-ll catalyst_2960l-24ps-ll catalyst_2960l-24ts-ll catalyst_2960l-48ps-ll catalyst_2960l-48ts-ll catalyst_2960l-8ps-ll +313 more products- Actively Exploited
- EPSS Score: %94.08
- Published: Mar. 17, 2017
- Modified: Apr. 20, 2025
-
10.0
HIGHCVE-2004-0185
Buffer overflow in the skey_challenge function in ftpd.c for wu-ftp daemon (wu-ftpd) 2.6.2 allows remote attackers to cause a denial of service and possibly execute arbitrary code via a s/key (SKEY) request with a long name.... Read more
Affected Products : wu-ftpd- EPSS Score: %7.26
- Published: Mar. 15, 2004
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2004-0097
Multiple vulnerabilities in PWLib before 1.6.0 allow remote attackers to cause a denial of service and possibly execute arbitrary code, as demonstrated by the NISCC/OUSPG PROTOS test suite for the H.225 protocol.... Read more
Affected Products : pwlib- EPSS Score: %27.04
- Published: Mar. 03, 2004
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2003-1576
Buffer overflow in pamverifier in Change Manager (CM) 1.0 for Sun Management Center (SunMC) 3.0 on Solaris 8 and 9 on the sparc platform allows remote attackers to execute arbitrary code via unspecified vectors.... Read more
- EPSS Score: %4.67
- Published: Jan. 28, 2010
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2003-0886
Format string vulnerability in hfaxd for Hylafax 4.1.7 and earlier allows remote attackers to execute arbitrary code.... Read more
Affected Products : hylafax- EPSS Score: %7.43
- Published: Dec. 01, 2003
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2003-0789
mod_cgid in Apache before 2.0.48, when using a threaded MPM, does not properly handle CGI redirect paths, which could cause Apache to send the output of a CGI program to the wrong client.... Read more
Affected Products : http_server- EPSS Score: %10.11
- Published: Nov. 03, 2003
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2003-0782
Multiple buffer overflows in ecartis before 1.0.0 allow attackers to cause a denial of service and possibly execute arbitrary code.... Read more
Affected Products : ecartis- EPSS Score: %0.75
- Published: May. 04, 2004
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2017-3112
An issue was discovered in Adobe Flash Player 27.0.0.183 and earlier versions. This vulnerability occurs as a result of a computation that reads data that is past the end of the target buffer; the computation is part of AdobePSDK metadata. The use of an i... Read more
- EPSS Score: %9.68
- Published: Dec. 09, 2017
- Modified: Apr. 20, 2025
-
10.0
HIGHCVE-2017-3090
Adobe Digital Editions versions 4.5.4 and earlier contain an insecure library loading vulnerability. The vulnerability is due to unsafe library loading of browser related library extensions in the installer plugin. A successful exploitation could lead to ... Read more
Affected Products : digital_editions- EPSS Score: %13.72
- Published: Jun. 20, 2017
- Modified: Apr. 20, 2025
-
10.0
CRITICALCVE-2017-3088
Adobe Digital Editions versions 4.5.4 and earlier have an exploitable memory corruption vulnerability in the PDF runtime engine. Successful exploitation could lead to arbitrary code execution.... Read more
Affected Products : digital_editions- EPSS Score: %8.33
- Published: Jun. 20, 2017
- Modified: Apr. 20, 2025
-
10.0
HIGHCVE-2017-3066
Adobe ColdFusion 2016 Update 3 and earlier, ColdFusion 11 update 11 and earlier, ColdFusion 10 Update 22 and earlier have a Java deserialization vulnerability in the Apache BlazeDS library. Successful exploitation could lead to arbitrary code execution.... Read more
Affected Products : coldfusion- Actively Exploited
- EPSS Score: %93.26
- Published: Apr. 27, 2017
- Modified: Apr. 20, 2025
-
10.0
HIGHCVE-2003-0209
Integer overflow in the TCP stream reassembly module (stream4) for Snort 2.0 and earlier allows remote attackers to execute arbitrary code via large sequence numbers in packets, which enable a heap-based buffer overflow.... Read more
- EPSS Score: %64.41
- Published: May. 05, 2003
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2002-1318
Buffer overflow in samba 2.2.2 through 2.2.6 allows remote attackers to cause a denial of service and possibly execute arbitrary code via an encrypted password that causes the overflow during decryption in which a DOS codepage string is converted to a lit... Read more
- EPSS Score: %73.41
- Published: Dec. 11, 2002
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2002-0639
Integer overflow in sshd in OpenSSH 2.9.9 through 3.3 allows remote attackers to execute arbitrary code during challenge response authentication (ChallengeResponseAuthentication) when OpenSSH is using SKEY or BSD_AUTH authentication.... Read more
Affected Products : openssh- EPSS Score: %30.29
- Published: Jul. 03, 2002
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2002-0427
Buffer overflows in fpexec in mod_frontpage before 1.6.1 may allow attackers to gain root privileges.... Read more
Affected Products : improved_mod_frontpage- EPSS Score: %0.47
- Published: Aug. 12, 2002
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2002-0013
Vulnerabilities in the SNMPv1 request handling of a large number of SNMP implementations allow remote attackers to cause a denial of service or gain privileges via (1) GetRequest, (2) GetNextRequest, and (3) SetRequest messages, as demonstrated by the PRO... Read more
Affected Products : snmp- EPSS Score: %63.40
- Published: Feb. 13, 2002
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2001-0803
Buffer overflow in the client connection routine of libDtSvc.so.1 in CDE Subprocess Control Service (dtspcd) allows remote attackers to execute arbitrary commands.... Read more
Affected Products : cde_common_desktop_environment- EPSS Score: %64.86
- Published: Dec. 06, 2001
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2001-0797
Buffer overflow in login in various System V based operating systems allows remote attackers to execute arbitrary commands via a large number of arguments through services such as telnet and rlogin.... Read more
- EPSS Score: %88.62
- Published: Dec. 12, 2001
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2001-0432
Buffer overflows in various CGI programs in the remote administration service for Trend Micro Interscan VirusWall 3.01 allow remote attackers to execute arbitrary commands.... Read more
Affected Products : interscan_viruswall- EPSS Score: %6.01
- Published: Jul. 02, 2001
- Modified: Apr. 03, 2025