Latest CVE Feed
-
10.0
HIGHCVE-2009-1350
Unspecified vulnerability in xtagent.exe in Novell NetIdentity Client before 1.2.4 allows remote attackers to execute arbitrary code by establishing an IPC$ connection to the XTIERRPCPIPE named pipe, and sending RPC messages that trigger a dereference of ... Read more
Affected Products : netidentity_client1.2.3- EPSS Score: %75.46
- Published: Apr. 21, 2009
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2009-1231
Unspecified vulnerability in the eClient in IBM DB2 Content Manager 8.4.1 before 8.4.1.1 has unknown impact and attack vectors.... Read more
Affected Products : db2_content_manager- EPSS Score: %0.51
- Published: Apr. 02, 2009
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2009-1177
Multiple stack-based buffer overflows in maptemplate.c in mapserv in MapServer 4.x before 4.10.4 and 5.x before 5.2.2 have unknown impact and remote attack vectors.... Read more
- EPSS Score: %1.52
- Published: Mar. 31, 2009
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2009-1167
Unspecified vulnerability on the Cisco Wireless LAN Controller (WLC) platform 4.x before 4.2.205.0 and 5.x before 5.2.191.0, as used in Cisco 1500 Series, 2000 Series, 2100 Series, 4100 Series, 4200 Series, and 4400 Series Wireless Services Modules (WiSM)... Read more
- EPSS Score: %0.57
- Published: Jul. 29, 2009
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2009-1161
Directory traversal vulnerability in the TFTP service in Cisco CiscoWorks Common Services (CWCS) 3.0.x through 3.2.x on Windows, as used in Cisco Unified Service Monitor, Security Manager, TelePresence Readiness Assessment Manager, Unified Operations Mana... Read more
Affected Products : security_manager unified_operations_manager ciscoworks_common_services unified_service_monitor ciscoworks_lan_management_solution unified_provisioning_manager ciscoworks_health_and_utilization_monitor ciscoworks_qos_policy_manager ciscoworks_voice_manager telepresence_readiness_assessment_manager- EPSS Score: %1.62
- Published: May. 21, 2009
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2009-0939
Tor before 0.2.0.34 treats incomplete IPv4 addresses as valid, which has unknown impact and attack vectors related to "Spec conformance," as demonstrated using 192.168.0.... Read more
- EPSS Score: %0.67
- Published: Mar. 18, 2009
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2009-0896
Buffer overflow in the queue manager in IBM WebSphere MQ 6.x before 6.0.2.7 and 7.x before 7.0.1.0 allows remote attackers to execute arbitrary code via a crafted request.... Read more
Affected Products : websphere_mq- EPSS Score: %25.84
- Published: Jun. 03, 2009
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2009-0895
Integer overflow in Novell eDirectory 8.7.3.x before 8.7.3.10 ftf2 and 8.8.x before 8.8.5.2 allows remote attackers to execute arbitrary code via an NDS Verb 0x1 request containing a large integer value that triggers a heap-based buffer overflow.... Read more
Affected Products : edirectory- EPSS Score: %26.23
- Published: Dec. 03, 2009
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2009-0837
Stack-based buffer overflow in Foxit Reader 3.0 before Build 1506, including 1120 and 1301, allows remote attackers to execute arbitrary code via a long (1) relative path or (2) absolute path in the filename argument in an action, as demonstrated by the "... Read more
Affected Products : reader3.0- EPSS Score: %83.22
- Published: Mar. 10, 2009
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2009-0836
Foxit Reader 2.3 before Build 3902 and 3.0 before Build 1506, including 1120 and 1301, does not require user confirmation before performing dangerous actions defined in a PDF file, which allows remote attackers to execute arbitrary programs and have unspe... Read more
Affected Products : reader- EPSS Score: %10.77
- Published: Mar. 10, 2009
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2009-0720
Unspecified vulnerability in HP OpenView Network Node Manager (OV NNM) 7.01, 7.51, and 7.53 allows remote attackers to execute arbitrary code via unknown vectors.... Read more
Affected Products : openview_network_node_manager- EPSS Score: %6.53
- Published: May. 05, 2009
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2009-0517
Eval injection vulnerability in index.php in phpSlash 0.8.1.1 and earlier allows remote attackers to execute arbitrary PHP code via the fields parameter, which is supplied to an eval function call within the generic function in include/class/tz_env.class.... Read more
Affected Products : phpslash- EPSS Score: %56.18
- Published: Feb. 11, 2009
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2009-0323
Multiple stack-based buffer overflows in W3C Amaya Web Browser 10.0 and 11.0 allow remote attackers to execute arbitrary code via (1) a long type parameter in an input tag, which is not properly handled by the EndOfXmlAttributeValue function; (2) an "HTML... Read more
Affected Products : amaya- EPSS Score: %69.82
- Published: Jan. 28, 2009
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2009-0263
Multiple buffer overflows in Winamp 5.541 and earlier allow remote attackers to cause a denial of service and possibly execute arbitrary code via (1) a large Common Chunk (COMM) header value in an AIFF file and (2) a large invalid value in an MP3 file.... Read more
Affected Products : winamp- EPSS Score: %5.38
- Published: Jan. 23, 2009
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2009-0137
Multiple unspecified vulnerabilities in Safari RSS in Apple Mac OS X 10.4.11 and 10.5.6, and Windows XP and Vista, allow remote attackers to execute arbitrary JavaScript in the local security zone via a crafted feed: URL, related to "input validation issu... Read more
- EPSS Score: %0.58
- Published: Feb. 13, 2009
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2009-0043
The smmsnmpd service in CA Service Metric Analysis r11.0 through r11.1 SP1 and Service Level Management 3.5 does not properly restrict access, which allows remote attackers to execute arbitrary commands via unspecified vectors.... Read more
- EPSS Score: %29.18
- Published: Jan. 08, 2009
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2009-0042
Multiple unspecified vulnerabilities in the Arclib library (arclib.dll) before 7.3.0.15 in the CA Anti-Virus engine for CA Anti-Virus for the Enterprise 7.1, r8, and r8.1; Anti-Virus 2007 v8 and 2008; Internet Security Suite 2007 v3 and 2008; and other CA... Read more
- EPSS Score: %1.24
- Published: Jan. 28, 2009
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2009-0012
Heap-based buffer overflow in CoreText in Apple Mac OS X 10.5.6 allows remote attackers to execute arbitrary code via a crafted Unicode string.... Read more
- EPSS Score: %9.33
- Published: Feb. 13, 2009
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2008-7219
Horde Kronolith H3 2.1 before 2.1.7 and 2.2 before 2.2-RC2; Nag H3 2.1 before 2.1.4 and 2.2 before 2.2-RC2; Mnemo H3 2.1 before 2.1.2 and H3 2.2 before 2.2-RC2; Groupware 1.0 before 1.0.3 and 1.1 before 1.1-RC2; and Groupware Webmail Edition 1.0 before 1.... Read more
- EPSS Score: %1.06
- Published: Sep. 13, 2009
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2008-6833
Directory traversal vulnerability in commsrss.php in fuzzylime (cms) before 3.01b allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in a files array element for a blogs action, as demonstrated by the files[0] paramete... Read more
Affected Products : fuzzylime_\(cms\)- EPSS Score: %2.48
- Published: Jun. 22, 2009
- Modified: Apr. 09, 2025