Vulnerabilities in N/A

159,958 results
CVE-2013-2334Unspecified vulnerability in HP Storage Data Protector 6.20, 6.21, 7.00, and 7.01 allows remote attackers to execute arbitrary code via unknEPSS 47.1%CVE-2008-3273JBoss Enterprise Application Platform (aka JBossEAP or EAP) before 4.2.0.CP03, and 4.3.0 before 4.3.0.CP01, allows remote attackers to obtaiEPSS 47.1%CVE-2014-2962Absolute path traversal vulnerability in the webproc cgi module on the Belkin N150 F9K1009 v1 router with firmware before 1.00.08 allows remEPSS 47.1%CVE-2019-16313ifw8 Router ROM v4.31 allows credential disclosure by reading the action/usermanager.htm HTML source code.EPSS 47.0%CVE-2008-5405Stack-based buffer overflow in the RDP protocol password decoder in Cain & Abel 4.9.23 and 4.9.24, and possibly earlier, allows remote attacEPSS 47.0%CVE-2004-0214Buffer overflow in Microsoft Internet Explorer and Explorer on Windows XP SP1, WIndows 2000, Windows 98, and Windows Me may allow remote malEPSS 47.0%CVE-2023-46455In GL.iNET GL-AR300M routers with firmware v4.3.7 it is possible to write arbitrary files through a path traversal attack in the OpenVPN cliEPSS 47.0%CVE-2020-15299A reflected Cross-Site Scripting (XSS) Vulnerability in the KingComposer plugin through 2.9.4 for WordPress allows remote attackers to trickEPSS 47.0%CVE-2018-8736A privilege escalation vulnerability in Nagios XI 5.2.x through 5.4.x before 5.4.13 allows an attacker to leverage an RCE vulnerability escaEPSS 46.9%CVE-2014-9013The ajaxinit function in wpmarketplace/libs/cart.php in the WP Marketplace plugin 2.4.0 for WordPress allows remote authenticated users to cEPSS 46.9%CVE-2008-2551The DownloaderActiveX Control (DownloaderActiveX.ocx) in Icona SpA C6 Messenger 1.0.0.1 allows remote attackers to force the download and exEPSS 46.9%CVE-2024-30568CRITICALNetgear R6850 1.1.0.88 was discovered to contain a command injection vulnerability via the c4-IPAddr parameter.EPSS 46.9%CVE-2019-8368OpenEMR v5.0.1-6 allows XSS.EPSS 46.9%CVE-2012-6274BigAntSoft BigAnt IM Message Server does not require authentication for file uploading, which allows remote attackers to create arbitrary fiEPSS 46.9%CVE-2007-5186PHP remote file inclusion vulnerability in index.php in Segue CMS 1.8.4 and earlier, when register_globals is disabled, allows remote attackEPSS 46.8%CVE-2011-0096MEDIUMThe MHTML protocol handler in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP1 and SP2, Windows Server 2008 GoldEPSS 46.8%CVE-2022-29298SolarView Compact ver.6.00 allows attackers to access sensitive files via directory traversal.EPSS 46.8%CVE-2015-6834Multiple use-after-free vulnerabilities in PHP before 5.4.45, 5.5.x before 5.5.29, and 5.6.x before 5.6.13 allow remote attackers to executeEPSS 46.8%CVE-2010-2590Heap-based buffer overflow in the CrystalReports12.CrystalPrintControl.1 ActiveX control in PrintControl.dll 12.3.2.753 in SAP Crystal ReporEPSS 46.8%CVE-2014-0282Microsoft Internet Explorer 6 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) EPSS 46.8%