Vulnerabilities in N/A
159,958 resultsCVE-2024-27497HIGHLinksys E2000 Ver.1.0.06 build 1 is vulnerable to authentication bypass via the position.js file.EPSS 26.5%CVE-2020-11579—An issue was discovered in Chadha PHPKB 9.0 Enterprise Edition. installer/test-connection.php (part of the installation process) allows a reEPSS 26.5%CVE-2009-2523—The License Logging Server (llssrv.exe) in Microsoft Windows 2000 SP4 allows remote attackers to execute arbitrary code via an RPC message cEPSS 26.5%CVE-2009-1135—Microsoft Internet Security and Acceleration (ISA) Server 2006 Gold and SP1, when Radius OTP is enabled, uses the HTTP-Basic authentication EPSS 26.5%CVE-2016-6302—The tls_decrypt_ticket function in ssl/t1_lib.c in OpenSSL before 1.1.0 does not consider the HMAC size during validation of the ticket lengEPSS 26.4%CVE-2023-23590HIGHMercedes-Benz XENTRY Retail Data Storage 7.8.1 allows remote attackers to cause a denial of service (device restart) via an unauthenticated EPSS 26.4%CVE-1999-0918—Denial of service in various Windows systems via malformed, fragmented IGMP packets.EPSS 26.4%CVE-2014-2994—Stack-based buffer overflow in Acunetix Web Vulnerability Scanner (WVS) 8 build 20120704 allows remote attackers to execute arbitrary code vEPSS 26.4%CVE-2011-3315—Directory traversal vulnerability in Cisco Unified Communications Manager (CUCM) 5.x and 6.x before 6.1(5)SU2, 7.x before 7.1(5b)SU2, and 8.EPSS 26.4%CVE-2022-24627CRITICALAn issue was discovered in AudioCodes Device Manager Express through 7.8.20002.47752. It is an unauthenticated SQL injection in the p parameEPSS 26.4%CVE-2011-4518—Directory traversal vulnerability in the PmWebDir object in the web server in MICROSYS PROMOTIC before 8.1.5 allows remote attackers to readEPSS 26.4%CVE-2000-0710—The shtml.exe component of Microsoft FrontPage 2000 Server Extensions 1.1 allows remote attackers to determine the physical path of the servEPSS 26.4%CVE-2011-3412—Microsoft Publisher 2003 SP3, and 2007 SP2 and SP3, allows remote attackers to execute arbitrary code via a crafted Publisher file that leveEPSS 26.4%CVE-2011-0980—Microsoft Excel 2002 SP3 and 2003 SP3, Office 2004 and 2008 for Mac, and Open XML File Format Converter for Mac do not properly parse OfficeEPSS 26.4%CVE-2007-0214—The HTML Help ActiveX control (Hhctrl.ocx) in Microsoft Windows 2000 SP3, XP SP2 and Professional, 2003 SP1 allows remote attackers to execuEPSS 26.4%CVE-2017-16642—In PHP before 5.6.32, 7.x before 7.0.25, and 7.1.x before 7.1.11, an error in the date extension's timelib_meridian handling of 'front of' aEPSS 26.4%CVE-2014-2817HIGHMicrosoft Internet Explorer 6 through 11 allows remote attackers to gain privileges via a crafted web site, aka "Internet Explorer ElevationEPSS 26.3%KEVCVE-2015-2998—SysAid Help Desk before 15.2 uses a hardcoded encryption key, which makes it easier for remote attackers to obtain sensitive information, asEPSS 26.3%CVE-2016-0705—Double free vulnerability in the dsa_priv_decode function in crypto/dsa/dsa_ameth.c in OpenSSL 1.0.1 before 1.0.1s and 1.0.2 before 1.0.2g aEPSS 26.3%CVE-2022-37130—In D-Link DIR-816 A2_v1.10CNB04, DIR-878 DIR_878_FW1.30B08.img a command injection vulnerability occurs in /goform/Diagnosis, after the condEPSS 26.3%