Vulnerabilities in N/A
159,958 resultsCVE-2016-0857—Multiple heap-based buffer overflows in Advantech WebAccess before 8.1 allow remote attackers to execute arbitrary code via unspecified vectEPSS 28.2%CVE-2022-28573—D-Link DIR-823-Pro v1.0.2 was discovered to contain a command injection vulnerability in the function SetNTPserverSeting. This vulnerabilityEPSS 28.2%CVE-2013-6934—The parseRTSPRequestString function in Live Networks Live555 Streaming Media 2013.11.26, as used in VideoLAN VLC Media Player, allows remoteEPSS 28.2%CVE-2012-0014HIGHMicrosoft .NET Framework 2.0 SP2, 3.5.1, and 4, and Silverlight 4 before 4.1.10111, does not properly restrict access to memory associated wEPSS 28.2%CVE-2019-19356HIGHNetis WF2419 is vulnerable to authenticated Remote Code Execution (RCE) as root through the router Web management page. The vulnerability haEPSS 28.2%KEVCVE-2010-1225—The memory-management implementation in the Virtual Machine Monitor (aka VMM or hypervisor) in Microsoft Virtual PC 2007 Gold and SP1, VirtuEPSS 28.2%CVE-2011-0041—Integer overflow in gdiplus.dll in GDI+ in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP1 and SP2, Windows SerEPSS 28.2%CVE-2012-2333—Integer underflow in OpenSSL before 0.9.8x, 1.0.0 before 1.0.0j, and 1.0.1 before 1.0.1c, when TLS 1.1, TLS 1.2, or DTLS is used with CBC enEPSS 28.2%CVE-2020-10931—Memcached 1.6.x before 1.6.2 allows remote attackers to cause a denial of service (daemon crash) via a crafted binary protocol header to tryEPSS 28.1%CVE-2006-0058—Signal handler race condition in Sendmail 8.13.x before 8.13.6 allows remote attackers to execute arbitrary code by triggering timeouts in aEPSS 28.1%CVE-2003-1566—Microsoft Internet Information Services (IIS) 5.0 does not log requests that use the TRACK method, which allows remote attackers to obtain sEPSS 28.1%CVE-2019-14529—OpenEMR before 5.0.2 allows SQL Injection in interface/forms/eye_mag/save.php.EPSS 28.1%CVE-1999-0737—The viewcode.asp sample file in IIS and Site Server allows remote attackers to read arbitrary files.EPSS 28.1%CVE-2013-0006HIGHMicrosoft XML Core Services (aka MSXML) 3.0, 5.0, and 6.0 does not properly parse XML content, which allows remote attackers to execute arbiEPSS 28.1%CVE-2011-1137—Integer overflow in the mod_sftp (aka SFTP) module in ProFTPD 1.3.3d and earlier allows remote attackers to cause a denial of service (memorEPSS 28.1%CVE-2001-0875—Internet Explorer 5.5 and 6.0 allows remote attackers to cause the File Download dialogue box to misrepresent the name of the file in the diEPSS 28.1%CVE-2009-0689—Array index error in the (1) dtoa implementation in dtoa.c (aka pdtoa.c) and the (2) gdtoa (aka new dtoa) implementation in gdtoa/misc.c in EPSS 28.1%CVE-2020-35606—Arbitrary command execution can occur in Webmin through 1.962. Any user authorized for the Package Updates module can execute arbitrary commEPSS 28.0%CVE-2021-43287—An issue was discovered in ThoughtWorks GoCD before 21.3.0. The business continuity add-on, which is enabled by default, leaks all secrets kEPSS 28.0%CVE-2007-5347—Microsoft Internet Explorer 5.01 through 7 allows remote attackers to execute arbitrary code via "unexpected method calls to HTML objects," EPSS 28.0%