Latest CVE Feed

Following is the list of latest published vulnerabilities. You can filter the list based on the severity of the vulnerability, whether it is actively exploited (also known as CISA KEV List) or remotely exploitable. You can also sort the list based on the published date, last updated date, or CVSS score.
  • 10.0

    HIGH
    CVE-2004-1010

    Buffer overflow in Info-Zip 2.3 and possibly earlier versions, when using recursive folder compression, allows remote attackers to execute arbitrary code via a ZIP file containing a long pathname.... Read more

    Affected Products : zip
    • EPSS Score: %6.06
    • Published: Mar. 01, 2005
    • Modified: Apr. 03, 2025
  • 10.0

    HIGH
    CVE-2004-1006

    Format string vulnerability in the log functions in dhcpd for dhcp 2.x allows remote DNS servers to execute arbitrary code via certain DNS messages, a different vulnerability than CVE-2002-0702.... Read more

    Affected Products : enterprise_linux dhcpd
    • EPSS Score: %7.66
    • Published: Mar. 01, 2005
    • Modified: Apr. 03, 2025
  • 10.0

    HIGH
    CVE-2013-6775

    The Chainfire SuperSU package before 1.69 for Android allows attackers to gain privileges via the (1) backtick or (2) $() type of shell metacharacters in the -c option to /system/xbin/su.... Read more

    Affected Products : android supersu
    • EPSS Score: %0.34
    • Published: Mar. 31, 2014
    • Modified: Apr. 12, 2025
  • 10.0

    HIGH
    CVE-2013-6920

    Siemens SINAMICS S/G controllers with firmware before 4.6.11 do not require authentication for FTP and TELNET sessions, which allows remote attackers to bypass intended access restrictions via TCP traffic to port (1) 21 or (2) 23.... Read more

    • EPSS Score: %1.39
    • Published: Dec. 07, 2013
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2020-9918

    An out-of-bounds read was addressed with improved input validation. This issue is fixed in macOS Catalina 10.15.6, tvOS 13.4.8, watchOS 6.2.8. A remote attacker may be able to cause unexpected system termination or corrupt kernel memory.... Read more

    Affected Products : macos mac_os_x tvos watchos
    • EPSS Score: %1.42
    • Published: Oct. 16, 2020
    • Modified: Nov. 21, 2024
  • 10.0

    HIGH
    CVE-2020-9682

    Adobe Creative Cloud Desktop Application versions 5.1 and earlier have a symlink vulnerability vulnerability. Successful exploitation could lead to arbitrary file system write.... Read more

    • EPSS Score: %1.62
    • Published: Jul. 17, 2020
    • Modified: Nov. 21, 2024
  • 10.0

    CRITICAL
    CVE-2023-29199

    There exists a vulnerability in source code transformer (exception sanitization logic) of vm2 for versions up to 3.9.15, allowing attackers to bypass `handleException()` and leak unsanitized host exceptions which can be used to escape the sandbox and run ... Read more

    Affected Products : vm2
    • EPSS Score: %28.50
    • Published: Apr. 14, 2023
    • Modified: Nov. 21, 2024
  • 10.0

    HIGH
    CVE-2014-9985

    In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile MDM9635M, SD 400, and SD 800, TOCTOU condition may result in bypassing error condition checks, leading to undefined behavior.... Read more

    • EPSS Score: %0.27
    • Published: Apr. 18, 2018
    • Modified: Nov. 21, 2024
  • 10.0

    HIGH
    CVE-2020-5902

    In BIG-IP versions 15.0.0-15.1.0.3, 14.1.0-14.1.2.5, 13.1.0-13.1.3.3, 12.1.0-12.1.5.1, and 11.6.1-11.6.5.1, the Traffic Management User Interface (TMUI), also referred to as the Configuration utility, has a Remote Code Execution (RCE) vulnerability in und... Read more

    • Actively Exploited
    • EPSS Score: %94.44
    • Published: Jul. 01, 2020
    • Modified: Apr. 02, 2025
  • 10.0

    CRITICAL
    CVE-2020-4429

    IBM Data Risk Manager 2.0.1, 2.0.2, 2.0.3, 2.0.4, 2.0.5, and 2.0.6 contains a default password for an IDRM administrative account. A remote attacker could exploit this vulnerability to login and execute arbitrary code on the system with root privileges. I... Read more

    Affected Products : data_risk_manager
    • EPSS Score: %38.29
    • Published: May. 07, 2020
    • Modified: Nov. 21, 2024
  • 10.0

    HIGH
    CVE-2012-1713

    Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 update 4 and earlier, 6 update 32 and earlier, 5 update 35 and earlier, 1.4.2_37 and earlier, and JavaFX 2.1 and earlier allows remote attackers to affect confid... Read more

    Affected Products : jdk jre jre jdk javafx
    • EPSS Score: %7.68
    • Published: Jun. 16, 2012
    • Modified: Apr. 11, 2025
  • 10.0

    CRITICAL
    CVE-2023-1523

    Using the TIOCLINUX ioctl request, a malicious snap could inject contents into the input of the controlling terminal which could allow it to cause arbitrary commands to be executed outside of the snap sandbox after the snap exits. Graphical terminal emula... Read more

    Affected Products : ubuntu_linux snapd
    • EPSS Score: %0.09
    • Published: Sep. 01, 2023
    • Modified: Nov. 21, 2024
  • 10.0

    HIGH
    CVE-2020-3765

    Adobe After Effects versions 16.1.2 and earlier have an out-of-bounds write vulnerability. Successful exploitation could lead to arbitrary code execution.... Read more

    Affected Products : windows after_effects
    • EPSS Score: %2.56
    • Published: Feb. 20, 2020
    • Modified: May. 05, 2025
  • 10.0

    HIGH
    CVE-2020-3754

    Adobe Acrobat and Reader versions 2019.021.20061 and earlier, 2017.011.30156 and earlier, 2017.011.30156 and earlier, and 2015.006.30508 and earlier have a buffer error vulnerability. Successful exploitation could lead to arbitrary code execution .... Read more

    • EPSS Score: %2.60
    • Published: Feb. 13, 2020
    • Modified: Nov. 21, 2024
  • 10.0

    HIGH
    CVE-2020-3752

    Adobe Acrobat and Reader versions 2019.021.20061 and earlier, 2017.011.30156 and earlier, 2017.011.30156 and earlier, and 2015.006.30508 and earlier have a buffer error vulnerability. Successful exploitation could lead to arbitrary code execution .... Read more

    • EPSS Score: %3.12
    • Published: Feb. 13, 2020
    • Modified: Nov. 21, 2024
  • 10.0

    CRITICAL
    CVE-2023-0018

    Due to improper input sanitization of user-controlled input in SAP BusinessObjects Business Intelligence Platform CMC application - versions 420, and 430, an attacker with basic user-level privileges can modify/upload crystal reports containing a maliciou... Read more

    • EPSS Score: %0.50
    • Published: Jan. 10, 2023
    • Modified: Nov. 21, 2024
  • 10.0

    HIGH
    CVE-2020-3750

    Adobe Acrobat and Reader versions 2019.021.20061 and earlier, 2017.011.30156 and earlier, 2017.011.30156 and earlier, and 2015.006.30508 and earlier have an use after free vulnerability. Successful exploitation could lead to arbitrary code execution .... Read more

    • EPSS Score: %4.38
    • Published: Feb. 13, 2020
    • Modified: Nov. 21, 2024
  • 10.0

    HIGH
    CVE-2020-3749

    Adobe Acrobat and Reader versions 2019.021.20061 and earlier, 2017.011.30156 and earlier, 2017.011.30156 and earlier, and 2015.006.30508 and earlier have an use after free vulnerability. Successful exploitation could lead to arbitrary code execution .... Read more

    • EPSS Score: %4.38
    • Published: Feb. 13, 2020
    • Modified: Nov. 21, 2024
  • 10.0

    HIGH
    CVE-2020-3746

    Adobe Acrobat and Reader versions 2019.021.20061 and earlier, 2017.011.30156 and earlier, 2017.011.30156 and earlier, and 2015.006.30508 and earlier have an use after free vulnerability. Successful exploitation could lead to arbitrary code execution .... Read more

    • EPSS Score: %4.38
    • Published: Feb. 13, 2020
    • Modified: Nov. 21, 2024
  • 10.0

    HIGH
    CVE-2020-3743

    Adobe Acrobat and Reader versions 2019.021.20061 and earlier, 2017.011.30156 and earlier, 2017.011.30156 and earlier, and 2015.006.30508 and earlier have an use after free vulnerability. Successful exploitation could lead to arbitrary code execution .... Read more

    • EPSS Score: %4.38
    • Published: Feb. 13, 2020
    • Modified: Nov. 21, 2024
Showing 20 of 291562 Results