Vulnerabilities in N/A
159,958 resultsCVE-2011-4453—The PageListSort function in scripts/pagelist.php in PmWiki 2.x before 2.2.35 allows remote attackers to execute arbitrary code via PHP sequEPSS 52.0%CVE-2015-1487—The management console in Symantec Endpoint Protection Manager (SEPM) 12.1 before 12.1-RU6-MP1 allows remote authenticated users to write toEPSS 52.0%CVE-2007-3034—Integer overflow in the AttemptWrite function in Graphics Rendering Engine (GDI) on Microsoft Windows 2000 SP4, XP SP2, and Server 2003 SP1 EPSS 51.9%CVE-2019-13068—public/app/features/panel/panel_ctrl.ts in Grafana before 6.2.5 allows HTML Injection in panel drilldown links (via the Title or url field).EPSS 51.9%CVE-2002-1318—Buffer overflow in samba 2.2.2 through 2.2.6 allows remote attackers to cause a denial of service and possibly execute arbitrary code via anEPSS 51.9%CVE-2013-4812—UpdateCertificatesServlet in the SNAC registration server in HP ProCurve Manager (PCM) 3.20 and 4.0, PCM+ 3.20 and 4.0, and Identity Driven EPSS 51.9%CVE-2011-4075—The masort function in lib/functions.php in phpLDAPadmin 1.2.x before 1.2.2 allows remote attackers to execute arbitrary PHP code via the orEPSS 51.9%CVE-2013-6129—The install/upgrade.php scripts in vBulletin 4.1 and 5 allow remote attackers to create administrative accounts via the customerid, htmldataEPSS 51.9%CVE-1999-0046—Buffer overflow of rlogin program using TERM environmental variable.EPSS 51.9%CVE-2010-1622—SpringSource Spring Framework 2.5.x before 2.5.6.SEC02, 2.5.7 before 2.5.7.SR01, and 3.0.x before 3.0.3 allows remote attackers to execute aEPSS 51.8%CVE-2015-4632—Multiple directory traversal vulnerabilities in Koha 3.14.x before 3.14.16, 3.16.x before 3.16.12, 3.18.x before 3.18.08, and 3.20.x before EPSS 51.8%CVE-2022-36534—Super Flexible Software GmbH & Co. KG Syncovery 9 for Linux v9.47x and below was discovered to contain multiple remote code execution (RCE) EPSS 51.8%CVE-2016-3288—Microsoft Internet Explorer 11 allows remote attackers to execute arbitrary code via a crafted web page, aka "Internet Explorer Memory CorruEPSS 51.8%CVE-2020-11946—Zoho ManageEngine OpManager before 125120 allows an unauthenticated user to retrieve an API key via a servlet call.EPSS 51.8%CVE-2021-41649—An un-authenticated SQL Injection exists in PuneethReddyHC online-shopping-system-advanced through the /homeaction.php cat_id parameter. UsiEPSS 51.8%CVE-2002-2268—Buffer overflow in Webster HTTP Server allows remote attackers to execute arbitrary code via a long URL.EPSS 51.7%CVE-2022-45933CRITICALKubeView through 0.1.31 allows attackers to obtain control of a Kubernetes cluster because api/scrape/kube-system does not require authenticEPSS 51.7%CVE-2021-31602MEDIUMAn issue was discovered in Hitachi Vantara Pentaho through 9.1 and Pentaho Business Intelligence Server through 7.x. The Security Model has EPSS 51.7%CVE-2007-4232—PHP remote file inclusion vulnerability in admin/inc/change_action.php in Andreas Robertz PHPNews 0.93 allows remote attackers to execute arEPSS 51.7%CVE-2014-9308—Unrestricted file upload vulnerability in inc/amfphp/administration/banneruploaderscript.php in the WP EasyCart (aka WordPress Shopping CartEPSS 51.6%