Latest CVE Feed
-
10.0
HIGHCVE-2008-5282
Multiple stack-based buffer overflows in W3C Amaya Web Browser 10.0.1 allow remote attackers to execute arbitrary code via (1) a link with a long HREF attribute, and (2) a DIV tag with a long id attribute.... Read more
Affected Products : amaya_web_browser- EPSS Score: %46.08
- Published: Nov. 29, 2008
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2008-4692
The Native Managed Provider for .NET component in IBM DB2 8 before FP17, 9.1 before FP6, and 9.5 before FP2, when a definer cannot maintain objects, preserves views and triggers without marking them inoperative or dropping them, which has unknown impact a... Read more
Affected Products : db2- EPSS Score: %1.49
- Published: Oct. 22, 2008
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2018-12758
Adobe Acrobat and Reader 2018.011.20040 and earlier, 2017.011.30080 and earlier, and 2015.006.30418 and earlier versions have an Out-of-bounds write vulnerability. Successful exploitation could lead to arbitrary code execution in the context of the curren... Read more
- EPSS Score: %7.44
- Published: Jul. 20, 2018
- Modified: Nov. 21, 2024
-
10.0
HIGHCVE-2008-4402
Multiple buffer overflows in CGI modules in the server in Trend Micro OfficeScan 8.0 SP1 before build 2439 and 8.0 SP1 Patch 1 before build 3087 allow remote attackers to execute arbitrary code via unspecified vectors.... Read more
- EPSS Score: %15.57
- Published: Oct. 03, 2008
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2002-1251
Buffer overflow in log2mail before 0.2.5.1 allows remote attackers to execute arbitrary code via a long log message.... Read more
Affected Products : log2mail- EPSS Score: %5.17
- Published: Nov. 12, 2002
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2008-4008
Unspecified vulnerability in the WebLogic Server Plugins for Apache component in BEA Product Suite 10.3, 10.0 MP1, 9.2 MP3, 9.1, 9.0, 8.1 SP6, 7.0 SP7, and 6.1 SP7 allows remote attackers to affect confidentiality, integrity, and availability via unknown ... Read more
Affected Products : bea_product_suite- EPSS Score: %85.81
- Published: Oct. 14, 2008
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2008-3892
Buffer overflow in a certain ActiveX control in the COM API in VMware Workstation 5.5.x before 5.5.8 build 108000, VMware Workstation 6.0.x before 6.0.5 build 109488, VMware Player 1.x before 1.0.8 build 108000, VMware Player 2.x before 2.0.5 build 109488... Read more
- EPSS Score: %66.00
- Published: Sep. 03, 2008
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2008-3865
Multiple heap-based buffer overflows in the ApiThread function in the firewall service (aka TmPfw.exe) in Trend Micro Network Security Component (NSC) modules, as used in Trend Micro OfficeScan 8.0 SP1 Patch 1 and Internet Security 2007 and 2008 17.0.1224... Read more
- EPSS Score: %29.34
- Published: Jan. 21, 2009
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2008-3695
Unspecified vulnerability in a certain ActiveX control in VMware Workstation 5.5.x before 5.5.8 build 108000, VMware Workstation 6.0.x before 6.0.5 build 109488, VMware Player 1.x before 1.0.8 build 108000, VMware Player 2.x before 2.0.5 build 109488, VMw... Read more
- EPSS Score: %1.24
- Published: Sep. 03, 2008
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2008-3175
Integer underflow in rxRPC.dll in the LGServer service in the server in CA ARCserve Backup for Laptops and Desktops 11.0 through 11.5 allows remote attackers to execute arbitrary code or cause a denial of service via a crafted message that triggers a buff... Read more
- EPSS Score: %24.28
- Published: Aug. 01, 2008
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2008-3064
Unspecified vulnerability in RealNetworks RealPlayer Enterprise, RealPlayer 10, and RealPlayer 10.5 before build 6.0.12.1675 has unknown impact and attack vectors, probably related to accessing local files, aka a "Local resource reference vulnerability."... Read more
Affected Products : realplayer- EPSS Score: %0.71
- Published: Jul. 28, 2008
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2008-2824
Unspecified vulnerability in the Extensible Interface Platform in Web Services in Xerox WorkCentre 7655, 7665, and 7675 allows remote attackers to make configuration changes via unknown vectors.... Read more
Affected Products : workcentre- EPSS Score: %1.97
- Published: Jun. 23, 2008
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2008-2654
Off-by-one error in the read_client function in webhttpd.c in Motion 3.2.10 and earlier might allow remote attackers to execute arbitrary code via a long request to a Motion HTTP Control interface, which triggers a stack-based buffer overflow with some co... Read more
Affected Products : motion- EPSS Score: %7.46
- Published: Jun. 13, 2008
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2008-2541
Multiple stack-based buffer overflows in the HTTP Gateway Service (icihttp.exe) in CA eTrust Secure Content Manager 8.0 allow remote attackers to execute arbitrary code or cause a denial of service via long FTP responses, related to (1) the file month fie... Read more
Affected Products : etrust_secure_content_manager- EPSS Score: %24.94
- Published: Jun. 04, 2008
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2008-2437
Stack-based buffer overflow in cgiRecvFile.exe in Trend Micro OfficeScan 7.3 patch 4 build 1362 and other builds, OfficeScan 8.0 and 8.0 SP1, and Client Server Messaging Security 3.6 allows remote attackers to execute arbitrary code via an HTTP request co... Read more
- EPSS Score: %29.75
- Published: Sep. 16, 2008
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2018-12338
Undocumented Factory Backdoor in ECOS System Management Appliance (aka SMA) 5.2.68 allows the vendor to extract confidential information and manipulate security relevant configurations via remote root SSH access.... Read more
Affected Products : system_management_appliance- EPSS Score: %0.38
- Published: Jun. 17, 2018
- Modified: Nov. 21, 2024
-
10.0
HIGHCVE-2018-12313
OS command injection in snmp.cgi in ASUSTOR ADM version 3.1.1 allows attackers to execute system commands without authentication via the "rocommunity" URL parameter.... Read more
- EPSS Score: %5.20
- Published: Dec. 04, 2018
- Modified: Nov. 21, 2024
-
10.0
HIGHCVE-2018-12336
Undocumented Factory Backdoor in ECOS Secure Boot Stick (aka SBS) 5.6.5 allows the vendor to extract confidential information via remote root SSH access.... Read more
- EPSS Score: %0.38
- Published: Jun. 17, 2018
- Modified: Nov. 21, 2024
-
10.0
HIGHCVE-2018-12072
An issue was discovered in Cloud Media Popcorn A-200 03-05-130708-21-POP-411-000 firmware. It is configured to provide TELNET remote access (without a password) that pops a shell as root. If an attacker can connect to port 23 on the device, he can complet... Read more
- EPSS Score: %0.36
- Published: Jun. 17, 2018
- Modified: Nov. 21, 2024
-
10.0
HIGHCVE-2002-1034
none.php for SunPS iRunbook 2.5.2 allows remote attackers to read arbitrary files via an absolute pathname in the argument.... Read more
Affected Products : i-runbook- EPSS Score: %8.71
- Published: Oct. 04, 2002
- Modified: Apr. 03, 2025