Latest CVE Feed

Following is the list of latest published vulnerabilities. You can filter the list based on the severity of the vulnerability, whether it is actively exploited (also known as CISA KEV List) or remotely exploitable. You can also sort the list based on the published date, last updated date, or CVSS score.
  • 10.0

    HIGH
    CVE-2011-4244

    Heap-based buffer overflow in the RealVideo renderer in RealNetworks RealPlayer before 15.0.0 allows remote attackers to execute arbitrary code via unspecified vectors.... Read more

    Affected Products : realplayer
    • EPSS Score: %5.54
    • Published: Nov. 24, 2011
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2011-4187

    Buffer overflow in the GetDriverSettings function in nipplib.dll in Novell iPrint Client before 5.78 on Windows allows remote attackers to execute arbitrary code via a long realm field, a different vulnerability than CVE-2011-3173.... Read more

    Affected Products : windows iprint
    • EPSS Score: %27.72
    • Published: Feb. 21, 2012
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2011-3271

    Unspecified vulnerability in the Smart Install functionality in Cisco IOS 12.2 and 15.1 allows remote attackers to execute arbitrary code or cause a denial of service (device crash) via crafted TCP packets to port 4786, aka Bug ID CSCto10165.... Read more

    Affected Products : ios
    • EPSS Score: %29.93
    • Published: Oct. 03, 2011
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2011-3176

    Stack-based buffer overflow in the Preboot Service in Novell ZENworks Configuration Management (ZCM) 11.1 and 11.1a allows remote attackers to execute arbitrary code via an opcode 0x4c request.... Read more

    Affected Products : zenworks_configuration_management
    • EPSS Score: %81.99
    • Published: Apr. 09, 2012
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2011-3175

    Stack-based buffer overflow in the Preboot Service in Novell ZENworks Configuration Management (ZCM) 11.1 and 11.1a allows remote attackers to execute arbitrary code via an opcode 0x6c request.... Read more

    Affected Products : zenworks_configuration_management
    • EPSS Score: %73.66
    • Published: Apr. 09, 2012
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2011-3172

    A vulnerability in pam_modules of SUSE Linux Enterprise allows attackers to log into accounts that should have been disabled. Affected releases are SUSE Linux Enterprise: versions prior to 12.... Read more

    Affected Products : suse_linux_enterprise_server
    • EPSS Score: %0.23
    • Published: Jun. 08, 2018
    • Modified: Nov. 21, 2024
  • 10.0

    HIGH
    CVE-2011-3166

    Unspecified vulnerability in HP OpenView Network Node Manager (OV NNM) 7.51 and 7.53 allows remote attackers to execute arbitrary code via unknown vectors, aka ZDI-CAN-1209.... Read more

    Affected Products : openview_network_node_manager
    • EPSS Score: %42.82
    • Published: Nov. 02, 2011
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2011-3165

    Unspecified vulnerability in HP OpenView Network Node Manager (OV NNM) 7.51 and 7.53 allows remote attackers to execute arbitrary code via unknown vectors, aka ZDI-CAN-1208.... Read more

    Affected Products : openview_network_node_manager
    • EPSS Score: %42.82
    • Published: Nov. 02, 2011
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2011-3156

    Unspecified vulnerability in HP Data Protector Notebook Extension 6.20 and Data Protector for Personal Computers 7.0 allows remote attackers to execute arbitrary code via unknown vectors, aka ZDI-CAN-1222.... Read more

    • EPSS Score: %45.96
    • Published: Oct. 19, 2011
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2011-3097

    The PDF functionality in Google Chrome before 19.0.1084.46 allows remote attackers to cause a denial of service or possibly have unspecified other impact by leveraging an out-of-bounds write error in the implementation of sampled functions.... Read more

    Affected Products : chrome
    • EPSS Score: %3.50
    • Published: May. 16, 2012
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2011-2953

    An unspecified ActiveX control in the browser plugin in RealNetworks RealPlayer 11.0 through 11.1 and 14.0.0 through 14.0.5, RealPlayer SP 1.0 through 1.1.5, and RealPlayer Enterprise 2.0 through 2.1.5 allows remote attackers to execute arbitrary code via... Read more

    Affected Products : realplayer realplayer_sp
    • EPSS Score: %4.99
    • Published: Aug. 18, 2011
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2011-2946

    Unspecified vulnerability in an ActiveX control in RealNetworks RealPlayer 11.0 through 11.1 and 14.0.0 through 14.0.5, RealPlayer SP 1.0 through 1.1.5, and RealPlayer Enterprise 2.0 through 2.1.5 allows remote attackers to execute arbitrary code via unkn... Read more

    Affected Products : realplayer realplayer_sp
    • EPSS Score: %5.87
    • Published: Aug. 18, 2011
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2011-2822

    Google Chrome before 13.0.782.215 on Windows does not properly parse URLs located on the command line, which has unspecified impact and attack vectors.... Read more

    Affected Products : chrome windows
    • EPSS Score: %0.35
    • Published: Aug. 29, 2011
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2011-2717

    The DHCPv6 client (dhcp6c) as used in the dhcpv6 project through 2011-07-25 allows remote DHCP servers to execute arbitrary commands via shell metacharacters in a hostname obtained from a DHCP message.... Read more

    Affected Products : enterprise_linux dhcp6c
    • EPSS Score: %0.68
    • Published: Nov. 27, 2019
    • Modified: Nov. 21, 2024
  • 10.0

    HIGH
    CVE-2011-2663

    Array index error in GroupWise Internet Agent (GWIA) in Novell GroupWise 8.0 before HP3 allows remote attackers to execute arbitrary code via a crafted yearly RRULE variable in a VCALENDAR attachment in an e-mail message.... Read more

    Affected Products : groupwise
    • EPSS Score: %6.25
    • Published: Oct. 08, 2011
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2011-2261

    Unspecified vulnerability in the Oracle Secure Backup component in Oracle Secure Backup 10.3.0.3 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors, a different vulnerability than CVE-2011-2252.... Read more

    Affected Products : secure_backup
    • EPSS Score: %3.47
    • Published: Jul. 20, 2011
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2011-2164

    Multiple unspecified vulnerabilities in Adobe Photoshop before 12.0.4 have unknown impact and attack vectors.... Read more

    Affected Products : photoshop
    • EPSS Score: %1.73
    • Published: May. 20, 2011
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2011-1930

    In klibc 1.5.20 and 1.5.21, the DHCP options written by ipconfig to /tmp/net-$DEVICE.conf are not properly escaped. This may allow a remote attacker to send a specially crafted DHCP reply which could execute arbitrary code with the privileges of any proce... Read more

    Affected Products : debian_linux klibc
    • EPSS Score: %28.99
    • Published: Nov. 14, 2019
    • Modified: Nov. 21, 2024
  • 10.0

    HIGH
    CVE-2011-1889

    The NSPLookupServiceNext function in the client in Microsoft Forefront Threat Management Gateway (TMG) 2010 allows remote attackers to execute arbitrary code via vectors involving unspecified requests, aka "TMG Firewall Client Memory Corruption Vulnerabil... Read more

    • Actively Exploited
    • EPSS Score: %87.38
    • Published: Jun. 16, 2011
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2011-1868

    The Distributed File System (DFS) implementation in Microsoft Windows XP SP2 and SP3 and Server 2003 SP2 does not properly validate fields in DFS responses, which allows remote DFS servers to execute arbitrary code via a crafted response, aka "DFS Memory ... Read more

    • EPSS Score: %34.71
    • Published: Jun. 16, 2011
    • Modified: Apr. 11, 2025
Showing 20 of 291400 Results