Vulnerabilities in N/A
159,958 resultsCVE-2017-18357—Shopware before 5.3.4 has a PHP Object Instantiation issue via the sort parameter to the loadPreviewAction() method of the Shopware_ControllEPSS 27.1%CVE-2005-0468—Heap-based buffer overflow in the env_opt_add function in telnet.c for various BSD-based Telnet clients allows remote attackers to execute aEPSS 27.1%CVE-2009-0233—The DNS Resolver Cache Service (aka DNSCache) in Windows DNS Server in Microsoft Windows 2000 SP4, Server 2003 SP1 and SP2, and Server 2008,EPSS 27.1%CVE-2012-0171—Microsoft Internet Explorer 6 through 9 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code EPSS 27.1%CVE-2020-13782—D-Link DIR-865L Ax 1.20B01 Beta devices allow Command Injection.EPSS 27.1%CVE-2009-1132—Heap-based buffer overflow in the Wireless LAN AutoConfig Service (aka Wlansvc) in Microsoft Windows Vista Gold, SP1, and SP2 and Server 200EPSS 27.1%CVE-2018-14665—A flaw was found in xorg-x11-server before 1.20.3. An incorrect permission check for -modulepath and -logfile options when starting Xorg. X EPSS 27.0%CVE-2012-0159—Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2, R2, and R2 SP1, Windows 7 Gold and SPEPSS 27.0%CVE-2016-0797—Multiple integer overflows in OpenSSL 1.0.1 before 1.0.1s and 1.0.2 before 1.0.2g allow remote attackers to cause a denial of service (heap EPSS 27.0%CVE-2014-3668—Buffer overflow in the date_from_ISO8601 function in the mkgmtime implementation in libxmlrpc/xmlrpc.c in the XMLRPC extension in PHP beforeEPSS 27.0%CVE-2009-1551—Multiple PHP remote file inclusion vulnerabilities in Qt quickteam 2 allow remote attackers to execute arbitrary PHP code via a URL in the (EPSS 27.0%CVE-2007-1277—WordPress 2.1.1, as downloaded from some official distribution sites during February and March 2007, contains an externally introduced backdEPSS 27.0%CVE-2013-1282—The LDAP service in Microsoft Active Directory, Active Directory Application Mode (ADAM), Active Directory Lightweight Directory Service (ADEPSS 27.0%CVE-2019-16405—Centreon Web before 2.8.30, 18.10.x before 18.10.8, 19.04.x before 19.04.5 and 19.10.x before 19.10.2 allows Remote Code Execution by an admEPSS 27.0%CVE-2007-2582—Multiple buffer overflows in the DB2 JDBC Applet Server (DB2JDS) service in IBM DB2 9.x and earlier allow remote attackers to (1) execute arEPSS 27.0%CVE-1999-1484—Buffer overflow in MSN Setup BBS 4.71.0.10 ActiveX control (setupbbs.ocx) allows a remote attacker to execute arbitrary commands via the metEPSS 27.0%CVE-2004-0386—Buffer overflow in the HTTP parser for MPlayer 1.0pre3 and earlier, 0.90, and 0.91 allows remote attackers to execute arbitrary code via a lEPSS 27.0%CVE-2003-0686—Buffer overflow in PAM SMB module (pam_smb) 1.1.6 and earlier, when authenticating to a remote service, allows remote attackers to execute aEPSS 27.0%CVE-2010-4804—The Android browser in Android before 2.3.4 allows remote attackers to obtain SD card contents via crafted content:// URIs, related to (1) BEPSS 27.0%CVE-2004-1319—The DHTML Edit Control (dhtmled.ocx) allows remote attackers to inject arbitrary web script into other domains by setting a name for a windoEPSS 26.9%