Vulnerabilities in N/A

159,958 results
CVE-2005-0564Stack-based buffer overflow in Microsoft Word 2000 and Word 2002, and Microsoft Works Suites 2000 through 2004, might allow remote attackersEPSS 25.7%CVE-2009-0562The Office Web Components ActiveX Control in Microsoft Office XP SP3, Office 2003 SP3, Office XP Web Components SP3, Office 2003 Web ComponeEPSS 25.7%CVE-2004-1560Microsoft SQL Server 7.0 allows remote attackers to cause a denial of service (mssqlserver service halt) via a long request to TCP port 1433EPSS 25.6%CVE-2009-2519The DHTML Editing Component ActiveX control in Microsoft Windows 2000 SP4, XP SP2 and SP3, and Server 2003 SP2 does not properly format HTMLEPSS 25.6%CVE-2007-1278Unspecified vulnerability in the IIS connector in Adobe JRun 4.0 Updater 6, and ColdFusion MX 6.1 and 7.0 Enterprise, when using Microsoft IEPSS 25.6%CVE-2005-2307netman.dll in Microsoft Windows Connections Manager Library allows local users to cause a denial of service (Network Connections Service craEPSS 25.6%CVE-2019-3957Dameware Remote Mini Control version 12.1.0.34 and prior contains an unauthenticated remote buffer over-read due to the server not properly EPSS 25.6%CVE-2015-6086Microsoft Internet Explorer 9 through 11 allows remote attackers to obtain sensitive information from process memory via a crafted web site,EPSS 25.6%CVE-2022-26213Totolink X5000R_Firmware v9.1.0u.6118_B20201102 was discovered to contain a command injection vulnerability in the function setNtpCfg, via tEPSS 25.6%CVE-2007-3892Microsoft Internet Explorer 5.01 through 7 allows remote attackers to spoof the URL address bar and other "trust UI" components via unspecifEPSS 25.6%CVE-2021-25162A remote execution of arbitrary commands vulnerability was discovered in some Aruba Instant Access Point (IAP) products in version(s): ArubaEPSS 25.6%CVE-2005-0420Microsoft Outlook Web Access (OWA), when used with Exchange, allows remote attackers to redirect users to arbitrary URLs for login via a linEPSS 25.6%CVE-2012-4782Use-after-free vulnerability in Microsoft Internet Explorer 9 and 10 allows remote attackers to execute arbitrary code via a crafted web sitEPSS 25.6%CVE-2016-2390The FwdState::connectedToPeer method in FwdState.cc in Squid before 3.5.14 and 4.0.x before 4.0.6 does not properly handle SSL handshake errEPSS 25.6%CVE-2006-5296PowerPoint in Microsoft Office 2003 does not properly handle a container object whose position value exceeds the record length, which allowsEPSS 25.5%CVE-2014-4081Microsoft Internet Explorer 6 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) EPSS 25.5%CVE-2014-4080Microsoft Internet Explorer 10 and 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) viaEPSS 25.5%CVE-2008-4264Microsoft Office Excel 2000 SP3, 2002 SP3, 2003 SP3, and 2007 Gold and SP1; Excel Viewer 2003 Gold and SP3; Excel Viewer; Office CompatibiliEPSS 25.5%CVE-2013-4152The Spring OXM wrapper in Spring Framework before 3.2.4 and 4.0.0.M1, when using the JAXB marshaller, does not disable entity resolution, whEPSS 25.5%CVE-2009-1492The getAnnots Doc method in the JavaScript API in Adobe Reader and Acrobat 9.1, 8.1.4, 7.1.1, and earlier allows remote attackers to cause aEPSS 25.5%