Latest CVE Feed

Following is the list of latest published vulnerabilities. You can filter the list based on the severity of the vulnerability, whether it is actively exploited (also known as CISA KEV List) or remotely exploitable. You can also sort the list based on the published date, last updated date, or CVSS score.
  • 10.0

    HIGH
    CVE-2009-1350

    Unspecified vulnerability in xtagent.exe in Novell NetIdentity Client before 1.2.4 allows remote attackers to execute arbitrary code by establishing an IPC$ connection to the XTIERRPCPIPE named pipe, and sending RPC messages that trigger a dereference of ... Read more

    Affected Products : netidentity_client1.2.3
    • EPSS Score: %75.46
    • Published: Apr. 21, 2009
    • Modified: Apr. 09, 2025
  • 10.0

    HIGH
    CVE-2009-1231

    Unspecified vulnerability in the eClient in IBM DB2 Content Manager 8.4.1 before 8.4.1.1 has unknown impact and attack vectors.... Read more

    Affected Products : db2_content_manager
    • EPSS Score: %0.51
    • Published: Apr. 02, 2009
    • Modified: Apr. 09, 2025
  • 10.0

    HIGH
    CVE-2009-1177

    Multiple stack-based buffer overflows in maptemplate.c in mapserv in MapServer 4.x before 4.10.4 and 5.x before 5.2.2 have unknown impact and remote attack vectors.... Read more

    Affected Products : mapserver mapserver
    • EPSS Score: %1.52
    • Published: Mar. 31, 2009
    • Modified: Apr. 09, 2025
  • 10.0

    HIGH
    CVE-2009-1167

    Unspecified vulnerability on the Cisco Wireless LAN Controller (WLC) platform 4.x before 4.2.205.0 and 5.x before 5.2.191.0, as used in Cisco 1500 Series, 2000 Series, 2100 Series, 4100 Series, 4200 Series, and 4400 Series Wireless Services Modules (WiSM)... Read more

    • EPSS Score: %0.57
    • Published: Jul. 29, 2009
    • Modified: Apr. 09, 2025
  • 10.0

    HIGH
    CVE-2009-1161

    Directory traversal vulnerability in the TFTP service in Cisco CiscoWorks Common Services (CWCS) 3.0.x through 3.2.x on Windows, as used in Cisco Unified Service Monitor, Security Manager, TelePresence Readiness Assessment Manager, Unified Operations Mana... Read more

    • EPSS Score: %1.62
    • Published: May. 21, 2009
    • Modified: Apr. 09, 2025
  • 10.0

    HIGH
    CVE-2009-0939

    Tor before 0.2.0.34 treats incomplete IPv4 addresses as valid, which has unknown impact and attack vectors related to "Spec conformance," as demonstrated using 192.168.0.... Read more

    Affected Products : tor tor
    • EPSS Score: %0.67
    • Published: Mar. 18, 2009
    • Modified: Apr. 09, 2025
  • 10.0

    HIGH
    CVE-2009-0896

    Buffer overflow in the queue manager in IBM WebSphere MQ 6.x before 6.0.2.7 and 7.x before 7.0.1.0 allows remote attackers to execute arbitrary code via a crafted request.... Read more

    Affected Products : websphere_mq
    • EPSS Score: %25.84
    • Published: Jun. 03, 2009
    • Modified: Apr. 09, 2025
  • 10.0

    HIGH
    CVE-2009-0895

    Integer overflow in Novell eDirectory 8.7.3.x before 8.7.3.10 ftf2 and 8.8.x before 8.8.5.2 allows remote attackers to execute arbitrary code via an NDS Verb 0x1 request containing a large integer value that triggers a heap-based buffer overflow.... Read more

    Affected Products : edirectory
    • EPSS Score: %26.23
    • Published: Dec. 03, 2009
    • Modified: Apr. 09, 2025
  • 10.0

    HIGH
    CVE-2009-0837

    Stack-based buffer overflow in Foxit Reader 3.0 before Build 1506, including 1120 and 1301, allows remote attackers to execute arbitrary code via a long (1) relative path or (2) absolute path in the filename argument in an action, as demonstrated by the "... Read more

    Affected Products : reader3.0
    • EPSS Score: %83.22
    • Published: Mar. 10, 2009
    • Modified: Apr. 09, 2025
  • 10.0

    HIGH
    CVE-2009-0836

    Foxit Reader 2.3 before Build 3902 and 3.0 before Build 1506, including 1120 and 1301, does not require user confirmation before performing dangerous actions defined in a PDF file, which allows remote attackers to execute arbitrary programs and have unspe... Read more

    Affected Products : reader
    • EPSS Score: %10.77
    • Published: Mar. 10, 2009
    • Modified: Apr. 09, 2025
  • 10.0

    HIGH
    CVE-2009-0720

    Unspecified vulnerability in HP OpenView Network Node Manager (OV NNM) 7.01, 7.51, and 7.53 allows remote attackers to execute arbitrary code via unknown vectors.... Read more

    Affected Products : openview_network_node_manager
    • EPSS Score: %6.53
    • Published: May. 05, 2009
    • Modified: Apr. 09, 2025
  • 10.0

    HIGH
    CVE-2009-0517

    Eval injection vulnerability in index.php in phpSlash 0.8.1.1 and earlier allows remote attackers to execute arbitrary PHP code via the fields parameter, which is supplied to an eval function call within the generic function in include/class/tz_env.class.... Read more

    Affected Products : phpslash
    • EPSS Score: %56.18
    • Published: Feb. 11, 2009
    • Modified: Apr. 09, 2025
  • 10.0

    HIGH
    CVE-2009-0323

    Multiple stack-based buffer overflows in W3C Amaya Web Browser 10.0 and 11.0 allow remote attackers to execute arbitrary code via (1) a long type parameter in an input tag, which is not properly handled by the EndOfXmlAttributeValue function; (2) an "HTML... Read more

    Affected Products : amaya
    • EPSS Score: %69.82
    • Published: Jan. 28, 2009
    • Modified: Apr. 09, 2025
  • 10.0

    HIGH
    CVE-2009-0263

    Multiple buffer overflows in Winamp 5.541 and earlier allow remote attackers to cause a denial of service and possibly execute arbitrary code via (1) a large Common Chunk (COMM) header value in an AIFF file and (2) a large invalid value in an MP3 file.... Read more

    Affected Products : winamp
    • EPSS Score: %5.38
    • Published: Jan. 23, 2009
    • Modified: Apr. 09, 2025
  • 10.0

    HIGH
    CVE-2009-0137

    Multiple unspecified vulnerabilities in Safari RSS in Apple Mac OS X 10.4.11 and 10.5.6, and Windows XP and Vista, allow remote attackers to execute arbitrary JavaScript in the local security zone via a crafted feed: URL, related to "input validation issu... Read more

    • EPSS Score: %0.58
    • Published: Feb. 13, 2009
    • Modified: Apr. 09, 2025
  • 10.0

    HIGH
    CVE-2009-0043

    The smmsnmpd service in CA Service Metric Analysis r11.0 through r11.1 SP1 and Service Level Management 3.5 does not properly restrict access, which allows remote attackers to execute arbitrary commands via unspecified vectors.... Read more

    • EPSS Score: %29.18
    • Published: Jan. 08, 2009
    • Modified: Apr. 09, 2025
  • 10.0

    HIGH
    CVE-2009-0042

    Multiple unspecified vulnerabilities in the Arclib library (arclib.dll) before 7.3.0.15 in the CA Anti-Virus engine for CA Anti-Virus for the Enterprise 7.1, r8, and r8.1; Anti-Virus 2007 v8 and 2008; Internet Security Suite 2007 v3 and 2008; and other CA... Read more

    • EPSS Score: %1.24
    • Published: Jan. 28, 2009
    • Modified: Apr. 09, 2025
  • 10.0

    HIGH
    CVE-2009-0012

    Heap-based buffer overflow in CoreText in Apple Mac OS X 10.5.6 allows remote attackers to execute arbitrary code via a crafted Unicode string.... Read more

    Affected Products : mac_os_x mac_os_x_server
    • EPSS Score: %9.33
    • Published: Feb. 13, 2009
    • Modified: Apr. 09, 2025
  • 10.0

    HIGH
    CVE-2008-7219

    Horde Kronolith H3 2.1 before 2.1.7 and 2.2 before 2.2-RC2; Nag H3 2.1 before 2.1.4 and 2.2 before 2.2-RC2; Mnemo H3 2.1 before 2.1.2 and H3 2.2 before 2.2-RC2; Groupware 1.0 before 1.0.3 and 1.1 before 1.1-RC2; and Groupware Webmail Edition 1.0 before 1.... Read more

    • EPSS Score: %1.06
    • Published: Sep. 13, 2009
    • Modified: Apr. 09, 2025
  • 10.0

    HIGH
    CVE-2008-6833

    Directory traversal vulnerability in commsrss.php in fuzzylime (cms) before 3.01b allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in a files array element for a blogs action, as demonstrated by the files[0] paramete... Read more

    Affected Products : fuzzylime_\(cms\)
    • EPSS Score: %2.48
    • Published: Jun. 22, 2009
    • Modified: Apr. 09, 2025
Showing 20 of 291513 Results