Vulnerabilities in N/A

159,958 results
CVE-2017-3823An issue was discovered in the Cisco WebEx Extension before 1.0.7 on Google Chrome, the ActiveTouch General Plugin Container before 106 on MEPSS 27.2%CVE-2019-13063Within Sahi Pro 8.0.0, an attacker can send a specially crafted URL to include any victim files on the system via the script parameter on thEPSS 27.2%CVE-2010-1248Buffer overflow in Microsoft Office Excel 2002 SP3 and Office 2004 for Mac allows remote attackers to execute arbitrary code via an Excel fiEPSS 27.2%CVE-2000-1034Buffer overflow in the System Monitor ActiveX control in Windows 2000 allows remote attackers to execute arbitrary commands via a long LogFiEPSS 27.2%CVE-2021-22718A CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability exists in C-Bus Toolkit (V1.15.7 and EPSS 27.2%CVE-1999-0517MEDIUMAn SNMP community name is the default (e.g. public), null, or missing.EPSS 27.2%CVE-2014-7992The DLSw implementation in Cisco IOS does not initialize packet buffers, which allows remote attackers to obtain sensitive credential informEPSS 27.2%CVE-2020-8982An unauthenticated arbitrary file read issue exists in all versions of Citrix ShareFile StorageZones (aka storage zones) Controller, includiEPSS 27.1%CVE-2008-1445Active Directory on Microsoft Windows 2000 Server SP4, XP Professional SP2 and SP3, Server 2003 SP1 and SP2, and Server 2008 allows remote aEPSS 27.1%CVE-2012-1465Stack-based buffer overflow in the HTTP Server in NetMechanica NetDecision before 4.6.1 allows remote attackers to cause a denial of serviceEPSS 27.1%CVE-2016-4203Adobe Reader and Acrobat before 11.0.17, Acrobat and Acrobat Reader DC Classic before 15.006.30198, and Acrobat and Acrobat Reader DC ContinEPSS 27.1%CVE-2016-2148Heap-based buffer overflow in the DHCP client (udhcpc) in BusyBox before 1.25.0 allows remote attackers to have unspecified impact via vectoEPSS 27.1%CVE-2007-0943Unspecified vulnerability in Internet Explorer 5.01 and 6 SP1 allows remote attackers to execute arbitrary code via crafted Cascading Style EPSS 27.1%CVE-2007-4559CRITICALDirectory traversal vulnerability in the (1) extract and (2) extractall functions in the tarfile module in Python allows user-assisted remotEPSS 27.1%CVE-2000-0653Microsoft Outlook Express allows remote attackers to monitor a user's email by creating a persistent browser link to the Outlook Express winEPSS 27.1%CVE-2009-0555Microsoft Windows Media Runtime, as used in DirectShow WMA Voice Codec, Windows Media Audio Voice Decoder, and Audio Compression Manager (ACEPSS 27.1%CVE-2013-3522SQL injection vulnerability in index.php/ajax/api/reputation/vote in vBulletin 5.0.0 Beta 11, 5.0.0 Beta 28, and earlier allows remote autheEPSS 27.1%CVE-2022-32205MEDIUMA malicious server can serve excessive amounts of `Set-Cookie:` headers in a HTTP response to curl and curl < 7.84.0 stores all of them. A sEPSS 27.1%CVE-2002-1567Cross-site scripting (XSS) vulnerability in Apache Tomcat 4.1 allows remote attackers to execute arbitrary web script and steal cookies via EPSS 27.1%CVE-2021-31630Command Injection in Open PLC Webserver v3 allows remote attackers to execute arbitrary code via the "Hardware Layer Code Box" component on EPSS 27.1%