Vulnerabilities in N/A
159,958 resultsCVE-2008-3922—awstatstotals.php in AWStats Totals 1.0 through 1.14 allows remote attackers to execute arbitrary code via PHP sequences in the sort parametEPSS 53.2%CVE-2002-0149—Buffer overflow in ASP Server-Side Include Function in IIS 4.0, 5.0 and 5.1 allows remote attackers to cause a denial of service and possiblEPSS 53.2%CVE-2014-8142—Use-after-free vulnerability in the process_nested_data function in ext/standard/var_unserializer.re in PHP before 5.4.36, 5.5.x before 5.5.EPSS 53.2%CVE-2012-2539HIGHMicrosoft Word 2003 SP3, 2007 SP2 and SP3, and 2010 SP1; Word Viewer; Office Compatibility Pack SP2 and SP3; and Office Web Apps 2010 SP1 alEPSS 53.2%KEVCVE-2006-6761—Stack-based buffer overflow in the IMAP daemon (IMAPD) in Novell NetMail before 3.52e FTF2 allows remote authenticated users to execute arbiEPSS 53.1%CVE-2019-11577—dhcpcd before 7.2.1 contains a buffer overflow in dhcp6_findna in dhcp6.c when reading NA/TA addresses.EPSS 53.1%CVE-2019-9760—FTPGetter Standard v.5.97.0.177 allows remote code execution when a user initiates an FTP connection to an attacker-controlled machine that EPSS 53.1%CVE-2010-0248HIGHMicrosoft Internet Explorer 6, 6 SP1, 7, and 8 does not properly handle objects in memory, which allows remote attackers to execute arbitrarEPSS 53.1%CVE-2002-0073—The FTP service in Internet Information Server (IIS) 4.0, 5.0 and 5.1 allows attackers who have established an FTP session to cause a denialEPSS 53.0%CVE-2006-3459—Multiple stack-based buffer overflows in the TIFF library (libtiff) before 3.8.2, as used in Adobe Reader 9.3.0 and other products, allow coEPSS 53.0%CVE-2021-38147—Wipro Holmes Orchestrator 20.4.1 (20.4.1_02_11_2020) allows remote attackers to download arbitrary files, such as reports containing sensitiEPSS 53.0%CVE-2009-1955—The expat XML parser in the apr_xml_* interface in xml/apr_xml.c in Apache APR-util before 1.3.7, as used in the mod_dav and mod_dav_svn modEPSS 53.0%CVE-2007-5099—PHP remote file inclusion vulnerability in show.php in David Watters Helplink 0.1.0 allows remote attackers to execute arbitrary PHP code viEPSS 53.0%CVE-2019-9733—An issue was discovered in JFrog Artifactory 6.7.3. By default, the access-admin account is used to reset the password of the admin account EPSS 52.9%CVE-2024-32238CRITICALH3C ER8300G2-X is vulnerable to Incorrect Access Control. The password for the router's management system can be accessed via the managementEPSS 52.9%CVE-2016-7434—The read_mru_list function in NTP before 4.2.8p9 allows remote attackers to cause a denial of service (crash) via a crafted mrulist query.EPSS 52.9%CVE-2021-41381—Payara Micro Community 5.2021.6 and below allows Directory Traversal.EPSS 52.9%CVE-2019-11447—An issue was discovered in CutePHP CuteNews 2.1.2. An attacker can infiltrate the server through the avatar upload process in the profile arEPSS 52.9%CVE-2007-5348—Integer overflow in GDI+ in Microsoft Internet Explorer 6 SP1, Windows XP SP2 and SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, Server 2EPSS 52.9%CVE-2020-29279—PHP remote file inclusion in the assign_resume_tpl method in Application/Common/Controller/BaseController.class.php in 74CMS before 6.0.48 aEPSS 52.9%