Vulnerabilities in N/A
159,958 resultsCVE-2022-31446—Tenda AC18 router V15.03.05.19 and V15.03.05.05 was discovered to contain a remote code execution (RCE) vulnerability via the Mac parameter EPSS 34.0%CVE-2004-0839—Internet Explorer in Windows XP SP2, and other versions including 5.01 and 5.5, allows remote attackers to install arbitrary programs via a EPSS 34.0%CVE-2003-0711—Stack-based buffer overflow in the PCHealth system in the Help and Support Center function in Windows XP and Windows Server 2003 allows remoEPSS 34.0%CVE-2010-0027—The URL validation functionality in Microsoft Internet Explorer 5.01, 6, 6 SP1, 7 and 8, and the ShellExecute API function in Windows 2000 SEPSS 34.0%CVE-2013-0085—Buffer overflow in Microsoft SharePoint Server 2010 SP1 and SharePoint Foundation 2010 SP1 allows remote attackers to cause a denial of servEPSS 34.0%CVE-2015-1376—pixabay-images.php in the Pixabay Images plugin before 2.4 for WordPress does not validate hostnames, which allows remote authenticated userEPSS 34.0%CVE-2022-32417—PbootCMS v3.1.2 was discovered to contain a remote code execution (RCE) vulnerability via the function parserIfLabel at function.php.EPSS 34.0%CVE-2002-1790—The SMTP service in Microsoft Internet Information Services (IIS) 4.0 and 5.0 allows remote attackers to bypass anti-relaying rules and sendEPSS 34.0%CVE-2009-1530—Use-after-free vulnerability in Microsoft Internet Explorer 7 for Windows XP SP2 and SP3; 7 for Server 2003 SP2; 7 for Vista Gold, SP1, and EPSS 33.9%CVE-2012-1007—Multiple cross-site scripting (XSS) vulnerabilities in Apache Struts 1.3.10 allow remote attackers to inject arbitrary web script or HTML viEPSS 33.9%CVE-2008-4027—Double free vulnerability in Microsoft Office Word 2000 SP3, 2002 SP3, 2003 SP3, and 2007 Gold and SP1; Outlook 2007 Gold and SP1; Word ViewEPSS 33.9%CVE-2007-2366—Buffer overflow in Corel Paint Shop Pro 11.20 allows user-assisted remote attackers to execute arbitrary code via a crafted .PNG file.EPSS 33.9%CVE-2022-25766HIGHRemote Code Execution (RCE)EPSS 33.9%CVE-2017-11281—Adobe Flash Player has an exploitable memory corruption vulnerability in the text handling function. Successful exploitation could lead to aEPSS 33.9%CVE-2022-37661—SmartRG SR506n 2.5.15 and SR510n 2.6.13 routers are vulnerable to Remote Code Execution (RCE) via the ping host feature.EPSS 33.9%CVE-2019-18938—eQ-3 Homematic CCU2 2.47.20 and CCU3 3.47.18 with the E-Mail AddOn through 1.6.8.c installed allow Remote Code Execution by unauthenticated EPSS 33.8%CVE-2019-18937—eQ-3 Homematic CCU2 2.47.20 and CCU3 3.47.18 with the Script Parser AddOn through 1.8 installed allow Remote Code Execution by unauthenticatEPSS 33.8%CVE-2020-5807—An unauthenticated remote attacker can send data to RsvcHost.exe listening on TCP port 5241 to add entries in the FactoryTalk Diagnostics evEPSS 33.8%CVE-2006-3961—Buffer overflow in McSubMgr ActiveX control (mcsubmgr.dll) in McAfee Security Center 6.0.23 for Internet Security Suite 2006, Wireless Home EPSS 33.8%CVE-2022-32548CRITICALAn issue was discovered on certain DrayTek Vigor routers before July 2022 such as the Vigor3910 before 4.3.1.1. /cgi-bin/wlogin.cgi has a buEPSS 33.8%