Vulnerabilities in N/A

159,958 results
CVE-2015-4495HIGHThe PDF reader in Mozilla Firefox before 39.0.3, Firefox ESR 38.x before 38.1.1, and Firefox OS before 2.2 allows remote attackers to bypassEPSS 68.7%KEVCVE-2021-40324Cobbler before 3.3.0 allows arbitrary file write operations via upload_log_data.EPSS 68.6%CVE-2020-6113HIGHAn exploitable vulnerability exists in the object stream parsing functionality of Nitro Software, Inc.’s Nitro Pro 13.13.2.242 when updatingEPSS 68.6%CVE-2015-7611Apache James Server 2.3.2, when configured with file-based user repositories, allows attackers to execute arbitrary system commands via unspEPSS 68.6%CVE-2019-9053An issue was discovered in CMS Made Simple 2.2.8. It is possible with the News module, through a crafted URL, to achieve unauthenticated bliEPSS 68.6%CVE-2009-2227Stack-based buffer overflow in B Labs Bopup Communication Server 3.2.26.5460 allows remote attackers to execute arbitrary code via a craftedEPSS 68.6%CVE-2021-21983Arbitrary file write vulnerability in vRealize Operations Manager API (CVE-2021-21983) prior to 8.4 may allow an authenticated malicious actEPSS 68.6%CVE-1999-0532A DNS server allows zone transfers.EPSS 68.5%CVE-2005-0684Multiple buffer overflows in the web tool for MySQL MaxDB before 7.5.00.26 allows remote attackers to execute arbitrary code via (1) an HTTPEPSS 68.5%CVE-2016-6195SQL injection vulnerability in forumrunner/includes/moderation.php in vBulletin before 4.2.2 Patch Level 5 and 4.2.3 before Patch Level 1 alEPSS 68.5%CVE-2015-3628The iControl API in F5 BIG-IP LTM, AFM, Analytics, APM, ASM, Link Controller, and PEM 11.3.0 before 11.5.3 HF2 and 11.6.0 before 11.6.0 HF6,EPSS 68.5%CVE-2001-0537HTTP server for Cisco IOS 11.3 to 12.2 allows attackers to bypass authentication and execute arbitrary commands, when local authorization isEPSS 68.5%CVE-2012-1195Unrestricted file upload vulnerability in andesk/managementsuite/core/core.anonymous/ServerSetup.asmx in the ServerSetup web service in LenoEPSS 68.4%CVE-2015-7645HIGHAdobe Flash Player 18.x through 18.0.0.252 and 19.x through 19.0.0.207 on Windows and OS X and 11.x through 11.2.202.535 on Linux allows remEPSS 68.4%KEVCVE-2003-0727Multiple buffer overflows in the XML Database (XDB) functionality for Oracle 9i Database Release 2 allow local users to cause a denial of seEPSS 68.4%CVE-2006-0460Multiple buffer overflows in BomberClone before 0.11.6.2 allow remote attackers to execute arbitrary code via long error messages.EPSS 68.4%CVE-2018-11646webkitFaviconDatabaseSetIconForPageURL and webkitFaviconDatabaseSetIconURLForPageURL in UIProcess/API/glib/WebKitFaviconDatabase.cpp in WebKEPSS 68.3%CVE-2015-1486The management console in Symantec Endpoint Protection Manager (SEPM) 12.1 before 12.1-RU6-MP1 allows remote attackers to bypass authenticatEPSS 68.3%CVE-2001-1320Network Associates PGP Keyserver 7.0 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via exEPSS 68.3%CVE-2012-0182Microsoft Word 2007 SP2 and SP3 does not properly handle memory during the parsing of Word documents, which allows remote attackers to execuEPSS 68.3%