Vulnerabilities in N/A
160,147 resultsCVE-2006-2961—Stack-based buffer overflow in CesarFTP 0.99g and earlier allows remote attackers to cause a denial of service (application crash) and possiEPSS 61.7%CVE-2004-1037—The search function in TWiki 20030201 allows remote attackers to execute arbitrary commands via shell metacharacters in a search string.EPSS 61.7%CVE-2014-2323—SQL injection vulnerability in mod_mysql_vhost.c in lighttpd before 1.4.35 allows remote attackers to execute arbitrary SQL commands via theEPSS 61.7%CVE-2020-28019—Exim 4 before 4.94.2 has Improper Initialization that can lead to recursion-based stack consumption or other consequences. This occurs becauEPSS 61.7%CVE-2012-1875—Microsoft Internet Explorer 8 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessiEPSS 61.7%CVE-2016-1209—The Ninja Forms plugin before 2.9.42.1 for WordPress allows remote attackers to conduct PHP object injection attacks via crafted serialized EPSS 61.6%CVE-2015-4133—Unrestricted file upload vulnerability in admin/scripts/FileUploader/php.php in the ReFlex Gallery plugin before 3.1.4 for WordPress allows EPSS 61.6%CVE-2017-8835—SQL injection exists on Peplink Balance 305, 380, 580, 710, 1350, and 2500 devices with firmware before fw-b305hw2_380hw6_580hw2_710hw3_1350EPSS 61.6%CVE-2018-15153—OS command injection occurring in versions of OpenEMR before 5.0.1.4 allows a remote authenticated attacker to execute arbitrary commands byEPSS 61.6%CVE-2005-1825—Multiple stack-based buffer overflows in the nvd_exec function in HP Radia Notify Daemon 3.1.2.0 (formerly by Novadigm), and other versions EPSS 61.5%CVE-2007-3632—Multiple PHP remote file inclusion vulnerabilities in LimeSurvey (aka PHPSurveyor) 1.49RC2 allow remote attackers to execute arbitrary PHP cEPSS 61.5%CVE-2012-4711—Buffer overflow in kingMess.exe 65.20.2003.10300 in WellinTech KingView 6.52, kingMess.exe 65.20.2003.10400 in KingView 6.53, and kingMess.eEPSS 61.5%CVE-2005-2123—Multiple integer overflows in the Graphics Rendering Engine (GDI32.DLL) in Windows 2000 SP4, XP SP1 and SP2, and Server 2003 SP1 allow remotEPSS 61.5%CVE-2014-2206—Stack-based buffer overflow in GetGo Download Manager 4.9.0.1982, 4.8.2.1346, 4.4.5.502, and earlier allows remote attackers to cause a deniEPSS 61.4%CVE-2006-4868—Stack-based buffer overflow in the Vector Graphics Rendering engine (vgx.dll), as used in Microsoft Outlook and Internet Explorer 6.0 on WinEPSS 61.4%CVE-2018-16836—Rubedo through 3.4.0 contains a Directory Traversal vulnerability in the theme component, allowing unauthenticated attackers to read and exeEPSS 61.4%CVE-2015-7755CRITICALJuniper ScreenOS 6.2.0r15 through 6.2.0r18, 6.3.0r12 before 6.3.0r12b, 6.3.0r13 before 6.3.0r13b, 6.3.0r14 before 6.3.0r14b, 6.3.0r15 beforeEPSS 61.4%KEVCVE-2006-1189—Buffer overflow in URLMON.DLL in Microsoft Internet Explorer 5.01 through 6 allows remote attackers to execute arbitrary code via a crafted EPSS 61.4%CVE-2005-2087—Internet Explorer 5.01 SP4 up to 6 on various Windows operating systems, including IE 6.0.2900.2180 on Windows XP, allows remote attackers tEPSS 61.4%CVE-2017-1000119—October CMS build 412 is vulnerable to PHP code execution in the file upload functionality resulting in site compromise and possibly other aEPSS 61.3%