Vulnerabilities in N/A
159,958 resultsCVE-2012-2957—The management console in Symantec Web Gateway 5.0.x before 5.0.3.18 allows local users to gain privileges by modifying files, related to a EPSS 59.3%CVE-2014-2321—web_shell_cmd.gch on ZTE F460 and F660 cable modems allows remote attackers to obtain administrative access via sendcmd requests, as demonstEPSS 59.3%CVE-2015-1172—Unrestricted file upload vulnerability in admin/upload-file.php in the Holding Pattern theme (aka holding_pattern) 0.6 and earlier for WordPEPSS 59.3%CVE-2008-5081—The originates_from_local_legacy_unicast_socket function (avahi-core/server.c) in avahi-daemon in Avahi before 0.6.24 allows remote attackerEPSS 59.2%CVE-2007-4370—Multiple buffer overflows in the (1) client and (2) server in Racer 0.5.3 beta 5 allow remote attackers to execute arbitrary code via a longEPSS 59.2%CVE-2007-3216—Multiple buffer overflows in the LGServer component of CA (Computer Associates) BrightStor ARCserve Backup for Laptops and Desktops r11.1 alEPSS 59.2%CVE-2016-1285—named in ISC BIND 9.x before 9.9.8-P4 and 9.10.x before 9.10.3-P4 does not properly handle DNAME records when parsing fetch reply messages, EPSS 59.1%CVE-2008-4037—Microsoft Windows 2000 Gold through SP4, XP Gold through SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, and Server 2008 allows remote SMBEPSS 59.1%CVE-2008-2463—The Microsoft Office Snapshot Viewer ActiveX control in snapview.ocx 10.0.5529.0, as distributed in the standalone Snapshot Viewer and MicroEPSS 59.1%CVE-2017-1000170—jqueryFileTree 2.1.5 and older Directory TraversalEPSS 59.1%CVE-2020-13381—openSIS through 7.4 allows SQL Injection.EPSS 59.0%CVE-2005-1018—Buffer overflow in the UniversalAgent for Computer Associates (CA) BrightStor ARCserve Backup allows remote authenticated users to cause a dEPSS 59.0%CVE-2012-0500—Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 2 and earlier, 6 Update 30 and earlier,EPSS 59.0%CVE-2007-3386—Cross-site scripting (XSS) vulnerability in the Host Manager Servlet for Apache Tomcat 6.0.0 to 6.0.13 and 5.5.0 to 5.5.24 allows remote attEPSS 59.0%CVE-2021-42840—SuiteCRM before 7.11.19 allows remote code execution via the system settings Log File Name setting. In certain circumstances involving adminEPSS 58.9%CVE-2013-4787—Android 1.6 Donut through 4.2 Jelly Bean does not properly check cryptographic signatures for applications, which allows attackers to executEPSS 58.9%CVE-2008-0506—include/imageObjectIM.class.php in Coppermine Photo Gallery (CPG) before 1.4.15, when the ImageMagick picture processing method is configureEPSS 58.9%CVE-2005-1256—Stack-based buffer overflow in the IMAP daemon (IMAPD32.EXE) in IMail 8.13 in Ipswitch Collaboration Suite (ICS), and other versions before EPSS 58.9%CVE-2011-3414—The CaseInsensitiveHashProvider.getHashCode function in the HashTable implementation in the ASP.NET subsystem in Microsoft .NET Framework 1.EPSS 58.9%CVE-2003-0717—The Messenger Service for Windows NT through Server 2003 does not properly verify the length of the message, which allows remote attackers tEPSS 58.9%