Vulnerabilities in N/A
159,958 resultsCVE-2005-0564—Stack-based buffer overflow in Microsoft Word 2000 and Word 2002, and Microsoft Works Suites 2000 through 2004, might allow remote attackersEPSS 25.7%CVE-2009-0562—The Office Web Components ActiveX Control in Microsoft Office XP SP3, Office 2003 SP3, Office XP Web Components SP3, Office 2003 Web ComponeEPSS 25.7%CVE-2004-1560—Microsoft SQL Server 7.0 allows remote attackers to cause a denial of service (mssqlserver service halt) via a long request to TCP port 1433EPSS 25.6%CVE-2009-2519—The DHTML Editing Component ActiveX control in Microsoft Windows 2000 SP4, XP SP2 and SP3, and Server 2003 SP2 does not properly format HTMLEPSS 25.6%CVE-2007-1278—Unspecified vulnerability in the IIS connector in Adobe JRun 4.0 Updater 6, and ColdFusion MX 6.1 and 7.0 Enterprise, when using Microsoft IEPSS 25.6%CVE-2005-2307—netman.dll in Microsoft Windows Connections Manager Library allows local users to cause a denial of service (Network Connections Service craEPSS 25.6%CVE-2019-3957—Dameware Remote Mini Control version 12.1.0.34 and prior contains an unauthenticated remote buffer over-read due to the server not properly EPSS 25.6%CVE-2015-6086—Microsoft Internet Explorer 9 through 11 allows remote attackers to obtain sensitive information from process memory via a crafted web site,EPSS 25.6%CVE-2022-26213—Totolink X5000R_Firmware v9.1.0u.6118_B20201102 was discovered to contain a command injection vulnerability in the function setNtpCfg, via tEPSS 25.6%CVE-2007-3892—Microsoft Internet Explorer 5.01 through 7 allows remote attackers to spoof the URL address bar and other "trust UI" components via unspecifEPSS 25.6%CVE-2021-25162—A remote execution of arbitrary commands vulnerability was discovered in some Aruba Instant Access Point (IAP) products in version(s): ArubaEPSS 25.6%CVE-2005-0420—Microsoft Outlook Web Access (OWA), when used with Exchange, allows remote attackers to redirect users to arbitrary URLs for login via a linEPSS 25.6%CVE-2012-4782—Use-after-free vulnerability in Microsoft Internet Explorer 9 and 10 allows remote attackers to execute arbitrary code via a crafted web sitEPSS 25.6%CVE-2016-2390—The FwdState::connectedToPeer method in FwdState.cc in Squid before 3.5.14 and 4.0.x before 4.0.6 does not properly handle SSL handshake errEPSS 25.6%CVE-2006-5296—PowerPoint in Microsoft Office 2003 does not properly handle a container object whose position value exceeds the record length, which allowsEPSS 25.5%CVE-2014-4081—Microsoft Internet Explorer 6 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) EPSS 25.5%CVE-2014-4080—Microsoft Internet Explorer 10 and 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) viaEPSS 25.5%CVE-2008-4264—Microsoft Office Excel 2000 SP3, 2002 SP3, 2003 SP3, and 2007 Gold and SP1; Excel Viewer 2003 Gold and SP3; Excel Viewer; Office CompatibiliEPSS 25.5%CVE-2013-4152—The Spring OXM wrapper in Spring Framework before 3.2.4 and 4.0.0.M1, when using the JAXB marshaller, does not disable entity resolution, whEPSS 25.5%CVE-2009-1492—The getAnnots Doc method in the JavaScript API in Adobe Reader and Acrobat 9.1, 8.1.4, 7.1.1, and earlier allows remote attackers to cause aEPSS 25.5%