Vulnerabilities in n/a
160,875 resultsCVE-2022-31698MEDIUMThe vCenter Server contains a denial-of-service vulnerability in the content library service. A malicious actor with network access to port EPSS 47.8%CVE-2014-9566—Multiple SQL injection vulnerabilities in the Manage Accounts page in the AccountManagement.asmx service in the Solarwinds Orion Platform 20EPSS 47.7%CVE-2012-3569—Format string vulnerability in VMware OVF Tool 2.1 on Windows, as used in VMware Workstation 8.x before 8.0.5, VMware Player 4.x before 4.0.EPSS 47.7%CVE-2013-2094HIGHThe perf_swevent_init function in kernel/events/core.c in the Linux kernel before 3.8.9 uses an incorrect integer data type, which allows loEPSS 47.7%KEVCVE-2019-14234—An issue was discovered in Django 1.11.x before 1.11.23, 2.1.x before 2.1.11, and 2.2.x before 2.2.4. Due to an error in shallow key transfoEPSS 47.7%CVE-2004-0121—Argument injection vulnerability in Microsoft Outlook 2002 does not sufficiently filter parameters of mailto: URLs when using them as argumeEPSS 47.7%CVE-2005-2118—Windows Shell for Microsoft Windows 2000 SP4, XP SP1 and SP2, and Server 2003 allows remote user-assisted attackers to execute arbitrary comEPSS 47.7%CVE-2005-0063—The document processing application used by the Windows Shell in Microsoft Windows 2000, Windows XP, and Windows Server 2003 allows remote aEPSS 47.6%CVE-2018-1000811—bludit version 3.0.0 contains a Unrestricted Upload of File with Dangerous Type vulnerability in Content Upload in Pages Editor that can resEPSS 47.6%CVE-2021-40407CRITICALAn OS command injection vulnerability exists in the device network settings functionality of reolink RLC-410W v3.0.0.136_20121102. At [1] orEPSS 47.6%KEVCVE-2015-3093—Adobe Flash Player before 13.0.0.289 and 14.x through 17.x before 17.0.0.188 on Windows and OS X and before 11.2.202.460 on Linux, Adobe AIREPSS 47.6%CVE-2015-3089—Adobe Flash Player before 13.0.0.289 and 14.x through 17.x before 17.0.0.188 on Windows and OS X and before 11.2.202.460 on Linux, Adobe AIREPSS 47.6%CVE-2011-0592—Adobe Reader and Acrobat 10.x before 10.0.1, 9.x before 9.4.2, and 8.x before 8.2.6 on Windows and Mac OS X allow remote attackers to executEPSS 47.6%CVE-2011-0591—Adobe Reader and Acrobat 10.x before 10.0.1, 9.x before 9.4.2, and 8.x before 8.2.6 on Windows and Mac OS X allow remote attackers to executEPSS 47.6%CVE-2000-0114—Frontpage Server Extensions allows remote attackers to determine the name of the anonymous account via an RPC POST request to shtml.dll in tEPSS 47.6%CVE-2015-6099—Cross-site scripting (XSS) vulnerability in ASP.NET in Microsoft .NET Framework 4, 4.5, 4.5.1, 4.5.2, and 4.6 allows remote attackers to injEPSS 47.6%CVE-2011-1248—WINS in Microsoft Windows Server 2003 SP2 and Server 2008 Gold, SP2, R2, and R2 SP1 does not properly handle socket send exceptions, which aEPSS 47.6%CVE-2024-23759CRITICALDeserialization of Untrusted Data in Gambio through 4.9.2.0 allows attackers to run arbitrary code via "search" parameter of the ParcelshopfEPSS 47.5%CVE-2021-27964—SonLogger before 6.4.1 is affected by Unauthenticated Arbitrary File Upload. An attacker can send a POST request to /Config/SaveUploadedHotsEPSS 47.5%CVE-2020-28948—Archive_Tar through 1.4.10 allows an unserialization attack because phar: is blocked but PHAR: is not blocked.EPSS 47.5%