Latest CVE Feed

Following is the list of latest published vulnerabilities. You can filter the list based on the severity of the vulnerability, whether it is actively exploited (also known as CISA KEV List) or remotely exploitable. You can also sort the list based on the published date, last updated date, or CVSS score.
  • 10.0

    HIGH
    CVE-2002-1383

    Multiple integer overflows in Common Unix Printing System (CUPS) 1.1.14 through 1.1.17 allow remote attackers to execute arbitrary code via (1) the CUPSd HTTP interface, as demonstrated by vanilla-coke, and (2) the image handling code in CUPS filters, as ... Read more

    Affected Products : mac_os_x linux cups
    • EPSS Score: %16.21
    • Published: Dec. 26, 2002
    • Modified: Apr. 03, 2025
  • 10.0

    HIGH
    CVE-2002-1369

    jobs.c in Common Unix Printing System (CUPS) 1.1.14 through 1.1.17 does not properly use the strncat function call when processing the options string, which allows remote attackers to execute arbitrary code via a buffer overflow attack.... Read more

    Affected Products : mac_os_x linux cups
    • EPSS Score: %9.97
    • Published: Dec. 26, 2002
    • Modified: Apr. 03, 2025
  • 10.0

    HIGH
    CVE-2002-1358

    Multiple SSH2 servers and clients do not properly handle lists with empty elements or strings, which may allow remote attackers to cause a denial of service or possibly execute arbitrary code, as demonstrated by the SSHredder SSH protocol test suite.... Read more

    • EPSS Score: %4.13
    • Published: Dec. 23, 2002
    • Modified: Apr. 03, 2025
  • 10.0

    HIGH
    CVE-2009-0137

    Multiple unspecified vulnerabilities in Safari RSS in Apple Mac OS X 10.4.11 and 10.5.6, and Windows XP and Vista, allow remote attackers to execute arbitrary JavaScript in the local security zone via a crafted feed: URL, related to "input validation issu... Read more

    • EPSS Score: %0.58
    • Published: Feb. 13, 2009
    • Modified: Apr. 09, 2025
  • 10.0

    HIGH
    CVE-2009-0042

    Multiple unspecified vulnerabilities in the Arclib library (arclib.dll) before 7.3.0.15 in the CA Anti-Virus engine for CA Anti-Virus for the Enterprise 7.1, r8, and r8.1; Anti-Virus 2007 v8 and 2008; Internet Security Suite 2007 v3 and 2008; and other CA... Read more

    • EPSS Score: %1.24
    • Published: Jan. 28, 2009
    • Modified: Apr. 09, 2025
  • 10.0

    HIGH
    CVE-2009-0012

    Heap-based buffer overflow in CoreText in Apple Mac OS X 10.5.6 allows remote attackers to execute arbitrary code via a crafted Unicode string.... Read more

    Affected Products : mac_os_x mac_os_x_server
    • EPSS Score: %9.33
    • Published: Feb. 13, 2009
    • Modified: Apr. 09, 2025
  • 10.0

    HIGH
    CVE-2018-12823

    Adobe Digital Editions versions 4.5.8 and below have a heap overflow vulnerability. Successful exploitation could lead to arbitrary code execution.... Read more

    Affected Products : digital_editions
    • EPSS Score: %27.34
    • Published: Oct. 17, 2018
    • Modified: Nov. 21, 2024
  • 10.0

    HIGH
    CVE-2008-7219

    Horde Kronolith H3 2.1 before 2.1.7 and 2.2 before 2.2-RC2; Nag H3 2.1 before 2.1.4 and 2.2 before 2.2-RC2; Mnemo H3 2.1 before 2.1.2 and H3 2.2 before 2.2-RC2; Groupware 1.0 before 1.0.3 and 1.1 before 1.1-RC2; and Groupware Webmail Edition 1.0 before 1.... Read more

    • EPSS Score: %1.06
    • Published: Sep. 13, 2009
    • Modified: Apr. 09, 2025
  • 10.0

    HIGH
    CVE-2018-12814

    Adobe Digital Editions versions 4.5.8 and below have a heap overflow vulnerability. Successful exploitation could lead to arbitrary code execution.... Read more

    Affected Products : digital_editions
    • EPSS Score: %21.79
    • Published: Oct. 17, 2018
    • Modified: Nov. 21, 2024
  • 10.0

    HIGH
    CVE-2018-12815

    Adobe Acrobat and Reader 2018.011.20040 and earlier, 2017.011.30080 and earlier, and 2015.006.30418 and earlier versions have a Use-after-free vulnerability. Successful exploitation could lead to arbitrary code execution in the context of the current user... Read more

    • EPSS Score: %1.88
    • Published: Jul. 20, 2018
    • Modified: Nov. 21, 2024
  • 10.0

    HIGH
    CVE-2018-12813

    Adobe Digital Editions versions 4.5.8 and below have a heap overflow vulnerability. Successful exploitation could lead to arbitrary code execution.... Read more

    Affected Products : digital_editions
    • EPSS Score: %21.79
    • Published: Oct. 17, 2018
    • Modified: Nov. 21, 2024
  • 10.0

    HIGH
    CVE-2008-6820

    The db2fmp process in IBM DB2 8 before FP17, 9.1 before FP5, and 9.5 before FP2 on Windows runs with "OS privilege," which has unknown impact and attack vectors, a different vulnerability than CVE-2008-3856.... Read more

    Affected Products : db2 windows
    • EPSS Score: %0.78
    • Published: Jun. 03, 2009
    • Modified: Apr. 09, 2025
  • 10.0

    HIGH
    CVE-2008-6767

    wp-admin/upgrade.php in WordPress, probably 2.6.x, allows remote attackers to upgrade the application, and possibly cause a denial of service (application outage), via a direct request.... Read more

    Affected Products : wordpress
    • EPSS Score: %0.74
    • Published: Apr. 28, 2009
    • Modified: Apr. 09, 2025
  • 10.0

    HIGH
    CVE-2008-6415

    Buffer overflow in YoungZSoft CCProxy 6.5 might allow remote attackers to execute arbitrary code via a CONNECTION request with a long hostname.... Read more

    Affected Products : ccproxy
    • EPSS Score: %5.38
    • Published: Mar. 06, 2009
    • Modified: Apr. 09, 2025
  • 10.0

    HIGH
    CVE-2018-12787

    Adobe Acrobat and Reader 2018.011.20040 and earlier, 2017.011.30080 and earlier, and 2015.006.30418 and earlier versions have an Out-of-bounds write vulnerability. Successful exploitation could lead to arbitrary code execution in the context of the curren... Read more

    • EPSS Score: %7.44
    • Published: Jul. 20, 2018
    • Modified: Nov. 21, 2024
  • 10.0

    HIGH
    CVE-2008-6071

    Heap-based buffer overflow in the DecodeImage function in coders/pict.c in GraphicsMagick before 1.1.14, and 1.2.x before 1.2.3, allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a crafted PICT image. NOT... Read more

    Affected Products : graphicsmagick
    • EPSS Score: %6.08
    • Published: Feb. 10, 2009
    • Modified: Apr. 09, 2025
  • 10.0

    HIGH
    CVE-2008-5457

    Unspecified vulnerability in the Oracle BEA WebLogic Server Plugins for Apache, Sun and IIS web servers component in BEA Product Suite 10.3, 10.0 MP1, 9.2 MP3, 9.1, 9.0, 8.1 SP6, and 7.0 SP7 allows remote attackers to affect confidentiality, integrity, an... Read more

    Affected Products : bea_product_suite
    • EPSS Score: %83.27
    • Published: Jan. 14, 2009
    • Modified: Apr. 09, 2025
  • 10.0

    HIGH
    CVE-2008-5415

    The LDBserver service in the server in CA ARCserve Backup 11.1 through 12.0 on Windows allows remote attackers to execute arbitrary code via a handle_t argument to an RPC endpoint in which the argument refers to an incompatible procedure.... Read more

    • EPSS Score: %15.63
    • Published: Dec. 11, 2008
    • Modified: Apr. 09, 2025
  • 10.0

    HIGH
    CVE-2008-5401

    Stack-based buffer overflow in the image tooltip implementation in Trillian before 3.1.12.0 allows remote attackers to execute arbitrary code via a long image filename, related to "AIM IMG Tag Parsing."... Read more

    • EPSS Score: %26.69
    • Published: Dec. 10, 2008
    • Modified: Apr. 09, 2025
  • 10.0

    HIGH
    CVE-2008-5282

    Multiple stack-based buffer overflows in W3C Amaya Web Browser 10.0.1 allow remote attackers to execute arbitrary code via (1) a link with a long HREF attribute, and (2) a DIV tag with a long id attribute.... Read more

    Affected Products : amaya_web_browser
    • EPSS Score: %46.08
    • Published: Nov. 29, 2008
    • Modified: Apr. 09, 2025
Showing 20 of 292318 Results