Vulnerabilities in N/A
159,958 resultsCVE-2020-8196MEDIUMImproper access control in Citrix ADC and Citrix Gateway versions before 13.0-58.30, 12.1-57.18, 12.0-63.21, 11.1-64.14 and 10.5-70.18 and CEPSS 26.3%KEVCVE-2017-5115—Type confusion in V8 in Google Chrome prior to 61.0.3163.79 for Windows allowed a remote attacker to potentially exploit object corruption vEPSS 26.3%CVE-2000-0666—rpc.statd in the nfs-utils package in various Linux distributions does not properly cleanse untrusted format strings, which allows remote atEPSS 26.3%CVE-2008-1544—The setRequestHeader method of the XMLHttpRequest object in Microsoft Internet Explorer 5.01, 6, and 7 does not block dangerous HTTP requestEPSS 26.3%CVE-2016-5636—Integer overflow in the get_data function in zipimport.c in CPython (aka Python) before 2.7.12, 3.x before 3.4.5, and 3.5.x before 3.5.2 allEPSS 26.3%CVE-2006-6311—Microsoft Internet Explorer 6.0.2900.2180 allows remote attackers to cause a denial of service via a style attribute in an HTML table tag wiEPSS 26.3%CVE-2004-0202—IDirectPlay4 Application Programming Interface (API) of Microsoft DirectPlay 7.0a thru 9.0b, as used in Windows Server 2003 and earlier alloEPSS 26.3%CVE-2016-3282—Microsoft Word 2007 SP3, Office 2010 SP2, Word 2010 SP2, Word 2013 SP1, Word 2013 RT SP1, Word 2016, Word for Mac 2011, Word 2016 for Mac, OEPSS 26.3%CVE-2016-3351MEDIUMMicrosoft Internet Explorer 9 through 11 and Microsoft Edge allow remote attackers to obtain sensitive information via a crafted web site, aEPSS 26.3%KEVCVE-2020-24589CRITICALThe Management Console in WSO2 API Manager through 3.1.0 and API Microgateway 2.2.0 allows XML External Entity injection (XXE) attacks.EPSS 26.3%CVE-2004-0197—Buffer overflow in Microsoft Jet Database Engine 4.0 allows remote attackers to execute arbitrary code via a specially-crafted database querEPSS 26.3%CVE-2009-3674—Microsoft Internet Explorer 8 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessiEPSS 26.3%CVE-2016-0037—The forms-based authentication implementation in Active Directory Federation Services (ADFS) 3.0 in Microsoft Windows Server 2012 R2 allows EPSS 26.3%CVE-2006-3442—Unspecified vulnerability in Pragmatic General Multicast (PGM) in Microsoft Windows XP SP2 and earlier allows remote attackers to execute arEPSS 26.2%CVE-2006-3591—Microsoft Internet Explorer 6 allows remote attackers to cause a denial of service (application crash) by accessing the URL property of a TrEPSS 26.2%CVE-2009-0099—The Electronic Messaging System Microsoft Data Base (EMSMDB32) provider in Microsoft Exchange 2000 Server SP3 and Exchange Server 2003 SP2, EPSS 26.2%CVE-2016-1001—Heap-based buffer overflow in Adobe Flash Player before 18.0.0.333 and 19.x through 21.x before 21.0.0.182 on Windows and OS X and before 11EPSS 26.2%CVE-2006-3647—Integer overflow in Microsoft Word 2000, 2002, 2003, 2004 for Mac, and v.X for Mac allows remote user-assisted attackers to execute arbitrarEPSS 26.2%CVE-2011-0663HIGHMultiple integer overflows in the Microsoft (1) JScript 5.6 through 5.8 and (2) VBScript 5.6 through 5.8 scripting engines allow remote attaEPSS 26.2%CVE-2004-0104—Multiple format string vulnerabilities in Metamail 2.7 and earlier allow remote attackers to execute arbitrary code.EPSS 26.2%