Vulnerabilities in N/A
159,958 resultsCVE-2013-2570—A Command Injection vulnerability exists in Zavio IP Cameras through 1.6.3 in the General.Time.NTP.Server parameter to the sub_C8C8 functionEPSS 26.6%CVE-2014-3931CRITICALfastping.c in MRLG (aka Multi-Router Looking Glass) before 5.5.0 allows remote attackers to cause an arbitrary memory write and memory corruEPSS 26.6%KEVCVE-2013-6225—LiveZilla 5.0.1.4 has a Remote Code Execution vulnerabilityEPSS 26.6%CVE-2007-3763—The IAX2 channel driver (chan_iax2) in Asterisk before 1.2.22 and 1.4.x before 1.4.8, Business Edition before B.2.2.1, AsteriskNOW before beEPSS 26.6%CVE-2016-2179—The DTLS implementation in OpenSSL before 1.1.0 does not properly restrict the lifetime of queue entries associated with unused out-of-orderEPSS 26.6%CVE-2020-5515—Gila CMS 1.11.8 allows /admin/sql?query= SQL Injection.EPSS 26.5%CVE-2018-6307—LibVNC before commit ca2a5ac02fbbadd0a21fabba779c1ea69173d10b contains heap use-after-free vulnerability in server code of file transfer extEPSS 26.5%CVE-2022-39066HIGHThere is a SQL injection vulnerability in ZTE MF286R. Due to insufficient validation of the input parameters of the phonebook interface, an EPSS 26.5%CVE-2010-0018—Integer overflow in the Embedded OpenType (EOT) Font Engine (t2embed.dll) in Microsoft Windows 2000 SP4; Windows XP SP2 and SP3; Windows SerEPSS 26.5%CVE-2011-0979—Microsoft Excel 2002 SP3, 2003 SP3, 2007 SP2, and 2010; Office 2004, 2008, and 2011 for Mac; Open XML File Format Converter for Mac; and ExcEPSS 26.5%CVE-2000-0071—IIS 4.0 allows a remote attacker to obtain the real pathname of the document root by requesting non-existent files with .ida or .idq extensiEPSS 26.5%CVE-2006-5855—Multiple buffer overflows in IBM Tivoli Storage Manager (TSM) before 5.2.9 and 5.3.x before 5.3.4 allow remote attackers to cause a denial oEPSS 26.5%CVE-2004-0117—Unknown vulnerability in the H.323 protocol implementation in Windows 98, Windows 2000, Windows XP, and Windows Server 2003 allows remote atEPSS 26.5%CVE-2014-4061—Microsoft SQL Server 2008 SP3, 2008 R2 SP2, and 2012 SP1 does not properly control use of stack memory for processing of T-SQL batch commandEPSS 26.5%CVE-2015-3134—Adobe Flash Player before 13.0.0.302 and 14.x through 18.x before 18.0.0.203 on Windows and OS X and before 11.2.202.481 on Linux, Adobe AIREPSS 26.5%CVE-2003-0531—Internet Explorer 5.01 SP3 through 6.0 SP1 allows remote attackers to access and execute script in the My Computer domain using the browser EPSS 26.5%CVE-2008-6938—Pi3Web 2.0.3 before PL2, when installed on Windows as a desktop application and without using the Pi3Web/Conf/Intenet.pi3, allows remote attEPSS 26.5%CVE-2010-4598—Directory traversal vulnerability in Ecava IntegraXor 3.6.4000.0 and earlier allows remote attackers to read arbitrary files via a .. (dot dEPSS 26.5%CVE-2022-35628—A SQL injection issue was discovered in the lux extension before 17.6.1, and 18.x through 24.x before 24.0.2, for TYPO3.EPSS 26.5%CVE-2011-4044—An unspecified ActiveX control in SVUIGrd.ocx in ARC Informatique PcVue 6.0 through 10.0, FrontVue, and PlantVue allows remote attackers to EPSS 26.5%