Vulnerabilities in N/A

159,958 results
CVE-2024-57004MEDIUMCross-Site Scripting (XSS) vulnerability in Roundcube Webmail 1.6.9 allows remote authenticated users to upload a malicious file as an emailEPSS 28.8%CVE-2009-0950Stack-based buffer overflow in Apple iTunes before 8.2 allows remote attackers to execute arbitrary code or cause a denial of service (appliEPSS 28.8%CVE-2014-2324Multiple directory traversal vulnerabilities in (1) mod_evhost and (2) mod_simple_vhost in lighttpd before 1.4.35 allow remote attackers to EPSS 28.8%CVE-2009-1558Directory traversal vulnerability in adm/file.cgi on the Cisco Linksys WVC54GCA wireless video camera with firmware 1.00R22 and 1.00R24 alloEPSS 28.8%CVE-2018-19660An exploitable authenticated command-injection vulnerability exists in the web server functionality of Moxa NPort W2x50A products with firmwEPSS 28.8%CVE-2014-6035Directory traversal vulnerability in the FileCollector servlet in ZOHO ManageEngine OpManager 11.4, 11.3, and earlier allows remote attackerEPSS 28.8%CVE-2022-40843The Tenda AC1200 V-W15Ev2 V15.11.0.10(1576) router is vulnerable to improper authorization / improper session management that allows the rouEPSS 28.8%CVE-2003-0990The parseAddress code in (1) SquirrelMail 1.4.0 and (2) GPG Plugin 1.1 allows remote attackers to execute commands via shell metacharacters EPSS 28.8%CVE-2008-0533Multiple cross-site scripting (XSS) vulnerabilities in securecgi-bin/CSuserCGI.exe in User-Changeable Password (UCP) before 4.2 in Cisco SecEPSS 28.8%CVE-2010-0252The Microsoft Data Analyzer ActiveX control (aka the Office Excel ActiveX control for Data Analysis) in max3activex.dll in Microsoft WindowsEPSS 28.8%CVE-2013-5015SQL injection vulnerability in the management console in Symantec Endpoint Protection Manager (SEPM) 11.0 before 11.0.7405.1424 and 12.1 befEPSS 28.8%CVE-2023-38886An issue in Dolibarr ERP CRM v.17.0.1 and before allows a remote privileged attacker to execute arbitrary code via a crafted command/script.EPSS 28.7%CVE-2007-4954PHP remote file inclusion vulnerability in admin.joom12pic.php in the joom12Pic (com_joom12pic) 1.0 component for Joomla! allows remote attaEPSS 28.7%CVE-2007-5592Multiple PHP remote file inclusion vulnerabilities in awzMB 4.2 beta 1 and earlier allow remote attackers to execute arbitrary PHP code via EPSS 28.7%CVE-2007-5271Multiple PHP remote file inclusion vulnerabilities in Trionic Cite CMS 1.2 rev9 and earlier allow remote attackers to execute arbitrary PHP EPSS 28.7%CVE-2009-1529HIGHMicrosoft Internet Explorer 7 for Windows XP SP2 and SP3; 7 for Server 2003 SP2; 7 for Vista Gold, SP1, and SP2; and 7 for Server 2008 SP2 dEPSS 28.7%CVE-2018-4936Adobe Flash Player versions 29.0.0.113 and earlier have an exploitable Heap Overflow vulnerability. Successful exploitation could lead to inEPSS 28.7%CVE-1999-0738The code.asp sample file in IIS and Site Server allows remote attackers to read arbitrary files.EPSS 28.7%CVE-1999-0739The codebrws.asp sample file in IIS and Site Server allows remote attackers to read arbitrary files.EPSS 28.7%CVE-2007-3826Microsoft Internet Explorer 7 on Windows XP SP2 allows remote attackers to prevent users from leaving a site, spoof the address bar, and conEPSS 28.7%