Vulnerabilities in N/A
159,958 resultsCVE-2010-2552—Stack consumption vulnerability in the SMB Server in Microsoft Windows Vista SP1 and SP2, Windows Server 2008 Gold, SP2, and R2, and WindowsEPSS 32.6%CVE-2022-24108—The Skyoftech So Listing Tabs module 2.2.0 for OpenCart allows a remote attacker to inject a serialized PHP object via the setting parameterEPSS 32.6%CVE-2007-0048—Adobe Acrobat Reader Plugin before 8.0.0, and possibly the plugin distributed with Adobe Reader 7.x before 7.1.4, 8.x before 8.1.7, and 9.x EPSS 32.6%CVE-2021-46441—In the "webupg" binary of D-Link DIR-825 G1, because of the lack of parameter verification, attackers can use "cmd" parameters to execute arEPSS 32.6%CVE-2008-3472—Microsoft Internet Explorer 6 and 7 does not properly determine the domain or security zone of origin of web script, which allows remote attEPSS 32.6%CVE-2023-33735CRITICALD-Link DIR-846 v1.00A52 was discovered to contain a remote command execution (RCE) vulnerability via the tomography_ping_address parameter iEPSS 32.6%CVE-2007-1644—The dynamic DNS update mechanism in the DNS Server service on Microsoft Windows does not properly authenticate clients in certain deploymentEPSS 32.6%CVE-2013-1017—Buffer overflow in Apple QuickTime before 7.7.4 allows remote attackers to execute arbitrary code or cause a denial of service (application EPSS 32.6%CVE-2022-25077—TOTOLink A3100R V4.1.2cu.5050_B20200504 was discovered to contain a command injection vulnerability in the "Main" function. This vulnerabiliEPSS 32.6%CVE-2009-0239—Cross-site scripting (XSS) vulnerability in Windows Search 4.0 for Microsoft Windows XP SP2 and SP3 and Server 2003 SP2 allows user-assistedEPSS 32.5%CVE-2012-2335—php-wrapper.fcgi does not properly handle command-line arguments, which allows remote attackers to bypass a protection mechanism in PHP 5.3.EPSS 32.5%CVE-2014-0002—The XSLT component in Apache Camel before 2.11.4 and 2.12.x before 2.12.3 allows remote attackers to read arbitrary files and possibly have EPSS 32.5%CVE-2022-4116CRITICALA vulnerability was found in quarkus. This security flaw happens in Dev UI Config Editor which is vulnerable to drive-by localhost attacks lEPSS 32.5%CVE-2021-20130—ManageEngine ADManager Plus Build 7111 contains a post-authentication remote code execution vulnerability due to improperly validated file uEPSS 32.5%CVE-2016-3198—Microsoft Edge allows remote attackers to bypass the Content Security Policy (CSP) protection mechanism via a crafted document, aka "MicrosoEPSS 32.5%CVE-2015-5471—Absolute path traversal vulnerability in include/user/download.php in the Swim Team plugin 1.44.10777 for WordPress allows remote attackers EPSS 32.5%CVE-2016-4229—Use-after-free vulnerability in Adobe Flash Player before 18.0.0.366 and 19.x through 22.x before 22.0.0.209 on Windows and OS X and before EPSS 32.5%CVE-2016-3345—The SMBv1 server in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold anEPSS 32.5%CVE-2013-0641HIGHBuffer overflow in Adobe Reader and Acrobat 9.x before 9.5.4, 10.x before 10.1.6, and 11.x before 11.0.02 allows remote attackers to executeEPSS 32.4%KEVCVE-2018-15534—Geutebrueck re_porter 16 before 7.8.974.20 has a possibility of unauthenticated access to sensitive information including usernames and hashEPSS 32.4%