Vulnerabilities in n/a

160,875 results
CVE-2022-29298—SolarView Compact ver.6.00 allows attackers to access sensitive files via directory traversal.EPSS 46.8%CVE-2015-6834—Multiple use-after-free vulnerabilities in PHP before 5.4.45, 5.5.x before 5.5.29, and 5.6.x before 5.6.13 allow remote attackers to executeEPSS 46.8%CVE-2010-2590—Heap-based buffer overflow in the CrystalReports12.CrystalPrintControl.1 ActiveX control in PrintControl.dll 12.3.2.753 in SAP Crystal ReporEPSS 46.8%CVE-2024-46938HIGHAn issue was discovered in Sitecore Experience Platform (XP), Experience Manager (XM), and Experience Commerce (XC) 8.0 Initial Release throEPSS 46.8%CVE-2017-16943—The receive_msg function in receive.c in the SMTP daemon in Exim 4.88 and 4.89 allows remote attackers to execute arbitrary code or cause a EPSS 46.7%CVE-2005-0050—The License Logging service for Windows NT Server, Windows 2000 Server, and Windows Server 2003 does not properly validate the length of mesEPSS 46.7%CVE-2007-4677—Heap-based buffer overflow in Apple QuickTime before 7.3 allows remote attackers to execute arbitrary code via an invalid color table size wEPSS 46.7%CVE-2007-4676—Heap-based buffer overflow in Apple QuickTime before 7.3 allows remote attackers to execute arbitrary code via malformed elements when parsiEPSS 46.7%CVE-2000-0505—The Apache 1.3.x HTTP server for Windows platforms allows remote attackers to list directory contents by requesting a URL containing a largeEPSS 46.7%CVE-2020-8958—Guangzhou 1GE ONU V2801RW 1.9.1-181203 through 2.9.0-181024 and V2804RGW 1.9.1-181203 through 2.9.0-181024 devices allow remote attackers toEPSS 46.6%CVE-2019-9879—The WPGraphQL 0.2.3 plugin for WordPress allows remote attackers to register a new user with admin privileges, whenever new user registratioEPSS 46.6%CVE-2007-5000—Cross-site scripting (XSS) vulnerability in the (1) mod_imap module in the Apache HTTP Server 1.3.0 through 1.3.39 and 2.0.35 through 2.0.61EPSS 46.6%CVE-2007-0045—Multiple cross-site scripting (XSS) vulnerabilities in Adobe Acrobat Reader Plugin before 8.0.0, and possibly the plugin distributed with AdEPSS 46.6%CVE-2025-29306CRITICALAn issue in FoxCMS v.1.2.5 allows a remote attacker to execute arbitrary code via the case display page in the index.html component.EPSS 46.6%CVE-2006-5028—Directory traversal vulnerability in filemanager/filemanager.php in SWsoft Plesk 7.5 Reload and Plesk 7.6 for Microsoft Windows allows remotEPSS 46.6%CVE-2005-0051—The Server service (srvsvc.dll) in Windows XP SP1 and SP2 allows remote attackers to obtain sensitive information (users who are accessing rEPSS 46.6%CVE-2002-0597—LANMAN service on Microsoft Windows 2000 allows remote attackers to cause a denial of service (CPU/memory exhaustion) via a stream of malforEPSS 46.6%CVE-2012-6275—Multiple stack-based buffer overflows in AntDS.exe in BigAntSoft BigAnt IM Message Server allow remote attackers to have an unspecified impaEPSS 46.5%CVE-2007-5842—Multiple PHP remote file inclusion vulnerabilities in Vortex Portal 1.0.42 allow remote attackers to execute arbitrary PHP code via a URL inEPSS 46.5%CVE-2020-8771—The Time Capsule plugin before 1.21.16 for WordPress has an authentication bypass. Any request containing IWP_JSON_PREFIX causes the client EPSS 46.5%