Latest CVE Feed
-
10.0
HIGHCVE-2020-15421
This vulnerability allows remote attackers to execute arbitrary code on affected installations of CentOS Web Panel cwp-e17.0.9.8.923. Authentication is not required to exploit this vulnerability. The specific flaw exists within ajax_mod_security.php. When... Read more
Affected Products : webpanel- EPSS Score: %2.07
- Published: Jul. 28, 2020
- Modified: Nov. 21, 2024
-
10.0
CRITICALCVE-2025-31324
SAP NetWeaver Visual Composer Metadata Uploader is not protected with a proper authorization, allowing unauthenticated agent to upload potentially malicious executable binaries that could severely harm the host system. This could significantly affect the ... Read more
Affected Products : netweaver- Actively Exploited
- Published: Apr. 24, 2025
- Modified: May. 06, 2025
- Vuln Type: Authorization
-
10.0
HIGHCVE-2005-4200
Multiple unspecified vulnerabilities in MyBulletinBoard (MyBB) before 1.0 have unknown impact and attack vectors, a different set of vulnerabilities than those identified by CVE-2005-4199.... Read more
Affected Products : mybulletinboard- EPSS Score: %0.49
- Published: Dec. 13, 2005
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2005-3640
Multiple buffer overflows in the IMAP Groupware Mail server of Floosietek FTGate (FTGate4) 4.1 allow remote attackers to execute arbitrary code via long arguments to various IMAP commands, as demonstrated with the EXAMINE command.... Read more
Affected Products : ftgate- EPSS Score: %8.45
- Published: Nov. 16, 2005
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2005-3656
Multiple format string vulnerabilities in logging functions in mod_auth_pgsql before 2.0.3, when used for user authentication against a PostgreSQL database, allows remote unauthenticated attackers to execute arbitrary code, as demonstrated via the usernam... Read more
Affected Products : mod_auth_pgsql- EPSS Score: %49.58
- Published: Dec. 31, 2005
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2018-4164
An issue was discovered in certain Apple products. Xcode before 9.3 is affected. The issue, which is unspecified, involves the "LLVM" component.... Read more
Affected Products : xcode- EPSS Score: %3.05
- Published: Apr. 03, 2018
- Modified: Nov. 21, 2024
-
10.0
HIGHCVE-2005-3464
Unspecified vulnerability in PeopleTools in Oracle PeopleSoft Enterprise 8.44 up to 8.46 has unknown impact and attack vectors, as identified by Oracle Vuln# PSE04.... Read more
Affected Products : peoplesoft_enterprise- EPSS Score: %4.24
- Published: Nov. 02, 2005
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2005-3454
Multiple unspecified vulnerabilities in Oracle Collaboration Suite 10g Release 1 version 10.1.1 and 9i Release 2 9.0.4.2 have unknown impact and attack vectors, as identified by Oracle Vuln# (1) OCS01, (2) OCS02, (3) OCS03, and (4) OCS04 for Calendar; (5)... Read more
Affected Products : collaboration_suite- EPSS Score: %4.24
- Published: Nov. 02, 2005
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2005-3452
Unspecified vulnerability in Web Cache in Oracle Application Server 1.0 up to 9.0.4.2 has unknown impact and attack vectors, as identified by Oracle Vuln# AS13.... Read more
Affected Products : application_server- EPSS Score: %1.54
- Published: Nov. 02, 2005
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2005-3445
Multiple unspecified vulnerabilities in HTTP Server in Oracle Database Server 8i up to 10.1.0.4.2 and Application Server 1.0.2.2 up to 10.1.2.0 have unknown impact and attack vectors, aka Oracle Vuln# (1) DB30 and AS03 or (2) DB31 and AS05.... Read more
- EPSS Score: %2.02
- Published: Nov. 02, 2005
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2005-3437
Unspecified vulnerability in the PL/SQL component in Oracle Database Server 9i up to 10.1.0.4 has unknown impact and attack vectors, aka Oracle Vuln# DB01.... Read more
Affected Products : database_server- EPSS Score: %3.21
- Published: Nov. 02, 2005
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2005-3443
Unspecified vulnerability in the Spatial component in Oracle Database Server from 9i up to 10.1.0.3 has unknown impact and attack vectors, aka Oracle Vuln# DB17.... Read more
Affected Products : database_server- EPSS Score: %4.24
- Published: Nov. 02, 2005
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2005-3459
Unspecified vulnerability in Oracle E-Business Suite and Applications 4.5 up to 4.5.1 has unknown impact and attack vectors, as identified by Oracle Vuln# APPS22 in Oracle Clinical.... Read more
- EPSS Score: %4.24
- Published: Nov. 02, 2005
- Modified: Apr. 03, 2025
-
10.0
CRITICALCVE-2023-37470
Metabase is an open-source business intelligence and analytics platform. Prior to versions 0.43.7.3, 0.44.7.3, 0.45.4.3, 0.46.6.4, 1.43.7.3, 1.44.7.3, 1.45.4.3, and 1.46.6.4, a vulnerability could potentially allow remote code execution on one's Metabase ... Read more
Affected Products : metabase- EPSS Score: %3.35
- Published: Aug. 04, 2023
- Modified: Nov. 21, 2024
-
10.0
CRITICALCVE-2023-37466
vm2 is an advanced vm/sandbox for Node.js. The library contains critical security issues and should not be used for production. The maintenance of the project has been discontinued. In vm2 for versions up to 3.9.19, `Promise` handler sanitization can be b... Read more
Affected Products : vm2- EPSS Score: %4.73
- Published: Jul. 14, 2023
- Modified: Nov. 21, 2024
-
10.0
CRITICALCVE-2024-44148
This issue was addressed with improved validation of file attributes. This issue is fixed in macOS Sequoia 15. An app may be able to break out of its sandbox.... Read more
Affected Products : macos- Published: Sep. 17, 2024
- Modified: Mar. 14, 2025
-
10.0
HIGHCVE-2013-3356
Buffer overflow in Adobe Reader and Acrobat before 10.1.8 and 11.x before 11.0.04 on Windows and Mac OS X allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2013-3353.... Read more
- EPSS Score: %43.98
- Published: Sep. 12, 2013
- Modified: Apr. 11, 2025
-
10.0
HIGHCVE-2005-3142
Heap-based buffer overflow in Kaspersky Antivirus (KAV) 5.0 and Kaspersky Personal Security Suite 1.1 allows remote attackers to execute arbitrary code via a CAB file with large records after the header.... Read more
- EPSS Score: %21.20
- Published: Oct. 05, 2005
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2005-3116
Stack-based buffer overflow in a shared library as used by the Volume Manager daemon (vmd) in VERITAS NetBackup Enterprise Server 5.0 MP1 to MP5 and 5.1 up to MP3A allows remote attackers to execute arbitrary code via a crafted packet.... Read more
Affected Products : netbackup- EPSS Score: %55.11
- Published: Nov. 18, 2005
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2005-3068
Unspecified vulnerability in Eric Integrated Development Environment (eric3) before 3.7.2 has unknown impact and attack vectors related to a "potential security exploit."... Read more
Affected Products : eric_integrated_development_environment- EPSS Score: %0.69
- Published: Sep. 27, 2005
- Modified: Apr. 03, 2025