Latest CVE Feed

Following is the list of latest published vulnerabilities. You can filter the list based on the severity of the vulnerability, whether it is actively exploited (also known as CISA KEV List) or remotely exploitable. You can also sort the list based on the published date, last updated date, or CVSS score.
  • 10.0

    HIGH
    CVE-2013-1483

    Unspecified vulnerability in the JavaFX component in Oracle Java SE JavaFX 2.2.4 and earlier allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors, a different vulnerability than other CVEs listed in the Februa... Read more

    Affected Products : javafx
    • EPSS Score: %1.47
    • Published: Feb. 02, 2013
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2013-1319

    Microsoft Publisher 2003 SP3 does not properly check the return value of an unspecified method, which allows remote attackers to execute arbitrary code via a crafted Publisher file, aka "Publisher Return Value Handling Vulnerability."... Read more

    Affected Products : publisher
    • EPSS Score: %61.37
    • Published: May. 15, 2013
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2013-1318

    Microsoft Publisher 2003 SP3 allows remote attackers to execute arbitrary code via a crafted Publisher file that triggers access to an invalid pointer, aka "Publisher Corrupt Interface Pointer Vulnerability."... Read more

    Affected Products : publisher
    • EPSS Score: %61.37
    • Published: May. 15, 2013
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2018-16590

    FURUNO FELCOM 250 and 500 devices use only client-side JavaScript in login.js for authentication.... Read more

    • EPSS Score: %0.70
    • Published: Sep. 06, 2018
    • Modified: Nov. 21, 2024
  • 10.0

    HIGH
    CVE-2013-1091

    Stack-based buffer overflow in Novell iPrint Client before 5.90 allows remote attackers to execute arbitrary code via unspecified vectors.... Read more

    Affected Products : iprint
    • EPSS Score: %14.04
    • Published: May. 02, 2013
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2003-0178

    Multiple buffer overflows in Lotus Domino Web Server before 6.0.1 allow remote attackers to cause a denial of service or execute arbitrary code via (1) the s_ViewName option in the PresetFields parameter for iNotes, (2) the Foldername option in the Preset... Read more

    Affected Products : lotus_domino_web_server
    • EPSS Score: %58.51
    • Published: Apr. 02, 2003
    • Modified: Apr. 03, 2025
  • 10.0

    CRITICAL
    CVE-2023-22527

    A template injection vulnerability on older versions of Confluence Data Center and Server allows an unauthenticated attacker to achieve RCE on an affected instance. Customers using an affected version must take immediate action. Most recent supported ver... Read more

    • Actively Exploited
    • EPSS Score: %94.36
    • Published: Jan. 16, 2024
    • Modified: Feb. 09, 2025
  • 10.0

    CRITICAL
    CVE-2023-22515

    Atlassian has been made aware of an issue reported by a handful of customers where external attackers may have exploited a previously unknown vulnerability in publicly accessible Confluence Data Center and Server instances to create unauthorized Confluenc... Read more

    • Actively Exploited
    • EPSS Score: %94.36
    • Published: Oct. 04, 2023
    • Modified: Feb. 09, 2025
  • 10.0

    HIGH
    CVE-2013-0842

    Google Chrome before 24.0.1312.56 does not properly handle %00 characters in pathnames, which has unspecified impact and attack vectors.... Read more

    Affected Products : chrome
    • EPSS Score: %0.34
    • Published: Jan. 24, 2013
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2013-0714

    IPSSH (aka the SSH server) in Wind River VxWorks 6.5 through 6.9 allows remote attackers to execute arbitrary code or cause a denial of service (daemon hang) via a crafted public-key authentication request.... Read more

    Affected Products : vxworks
    • EPSS Score: %9.32
    • Published: Mar. 20, 2013
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2013-0230

    Stack-based buffer overflow in the ExecuteSoapAction function in the SOAPAction handler in the HTTP service in MiniUPnP MiniUPnPd 1.0 allows remote attackers to execute arbitrary code via a long quoted method.... Read more

    Affected Products : miniupnpd
    • EPSS Score: %80.14
    • Published: Jan. 31, 2013
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2013-0073

    The Windows Forms (aka WinForms) component in Microsoft .NET Framework 2.0 SP2, 3.5, 3.5.1, 4, and 4.5 does not properly restrict the privileges of a callback function during object creation, which allows remote attackers to execute arbitrary code via (1)... Read more

    • EPSS Score: %53.18
    • Published: Feb. 13, 2013
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2012-6601

    The device-management command-line interface in Palo Alto Networks PAN-OS before 3.1.12, 4.0.x before 4.0.10, and 4.1.x before 4.1.4 allows remote attackers to execute arbitrary code via unspecified vectors, aka Ref ID 36983.... Read more

    Affected Products : pan-os
    • EPSS Score: %8.42
    • Published: Aug. 31, 2013
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2012-6592

    Palo Alto Networks PAN-OS before 3.1.10 and 4.0.x before 4.0.5 allows remote attackers to execute arbitrary commands via unspecified vectors, aka Ref ID 31091.... Read more

    Affected Products : pan-os
    • EPSS Score: %3.36
    • Published: Aug. 31, 2013
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2012-6429

    Buffer overflow in the PrepareSync method in the SyncService.dll ActiveX control in Samsung Kies before 2.5.1.12123_2_7 allows remote attackers to execute arbitrary code via a long string to the password argument.... Read more

    Affected Products : kies
    • EPSS Score: %56.95
    • Published: Apr. 04, 2014
    • Modified: Apr. 12, 2025
  • 10.0

    HIGH
    CVE-2018-16167

    LogonTracer 1.2.0 and earlier allows remote attackers to execute arbitrary OS commands via unspecified vectors.... Read more

    Affected Products : logontracer
    • EPSS Score: %87.03
    • Published: Jan. 09, 2019
    • Modified: Nov. 21, 2024
  • 10.0

    HIGH
    CVE-2012-4876

    Stack-based buffer overflow in the UltraMJCam ActiveX Control in TRENDnet SecurView TV-IP121WN Wireless Internet Camera allows remote attackers to execute arbitrary code via a long string to the OpenFileDlg method.... Read more

    • EPSS Score: %73.07
    • Published: Sep. 06, 2012
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2012-4577

    The Linux firmware image on (1) Korenix Jetport 5600 series serial-device servers and (2) ORing Industrial DIN-Rail serial-device servers has a hardcoded password of "password" for the root account, which allows remote attackers to obtain administrative a... Read more

    Affected Products : jetport
    • EPSS Score: %2.52
    • Published: Aug. 21, 2012
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2012-4145

    Unspecified vulnerability in Opera before 12.01 on Windows and UNIX, and before 11.66 and 12.x before 12.01 on Mac OS X, has unknown impact and attack vectors, related to a "low severity issue."... Read more

    • EPSS Score: %0.41
    • Published: Aug. 06, 2012
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2018-16037

    Adobe Acrobat and Reader versions 2019.008.20081 and earlier, 2019.008.20080 and earlier, 2019.008.20081 and earlier, 2017.011.30106 and earlier version, 2017.011.30105 and earlier version, 2015.006.30457 and earlier, and 2015.006.30456 and earlier have a... Read more

    • EPSS Score: %2.07
    • Published: Jan. 18, 2019
    • Modified: Nov. 21, 2024
Showing 20 of 292510 Results