Vulnerabilities in n/a
160,997 resultsCVE-2016-4171HIGHUnspecified vulnerability in Adobe Flash Player 21.0.0.242 and earlier allows remote attackers to execute arbitrary code via unknown vectorsEPSS 20.1%KEVCVE-2013-3886—Microsoft Internet Explorer 9 and 10 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via EPSS 20.1%CVE-2013-3882—Microsoft Internet Explorer 10 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafEPSS 20.1%CVE-2013-3873—Microsoft Internet Explorer 10 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafEPSS 20.1%CVE-2013-3874—Microsoft Internet Explorer 9 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a craftEPSS 20.1%CVE-2013-3885—Microsoft Internet Explorer 10 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafEPSS 20.1%CVE-2013-3875—Microsoft Internet Explorer 8 and 9 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via aEPSS 20.1%CVE-2023-34747CRITICALFile upload vulnerability in ujcms 6.0.2 via /api/backend/core/web-file-upload/upload.EPSS 20.0%CVE-2013-3850—Microsoft Word 2003 SP3, 2007 SP3, and 2010 SP1 and SP2; Office Compatibility Pack SP3; and Word Viewer allow remote attackers to execute arEPSS 20.0%CVE-2013-3852—Microsoft Word 2003 SP3, 2007 SP3, and 2010 SP1; Office Compatibility Pack SP3; and Word Viewer allow remote attackers to execute arbitrary EPSS 20.0%CVE-2002-0421—IIS 4.0 allows local users to bypass the "User cannot change password" policy for Windows NT by directly calling .htr password changing progEPSS 20.0%CVE-2010-3187—Buffer overflow in ftpd in IBM AIX 5.3 and earlier allows remote attackers to execute arbitrary code via a long NLST command.EPSS 20.0%CVE-2006-6652—Buffer overflow in the glob implementation (glob.c) in libc in NetBSD-current before 20050914, NetBSD 2.* and 3.* before 20061203, and AppleEPSS 20.0%CVE-2022-36450HIGHObsidian 0.14.x and 0.15.x before 0.15.5 allows obsidian://hook-get-address remote code execution because window.open is used without checkiEPSS 20.0%CVE-2012-1526—Microsoft Internet Explorer 6 and 7 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by aEPSS 20.0%CVE-2016-3586—Unspecified vulnerability in the Oracle WebLogic Server component in Oracle Fusion Middleware 10.3.6.0, 12.1.3.0, and 12.2.1.0 allows remoteEPSS 20.0%CVE-2013-3156—Microsoft Access 2007 SP3, 2010 SP1 and SP2, and 2013 in Microsoft Office allows remote attackers to execute arbitrary code or cause a deniaEPSS 20.0%CVE-2013-3890—Microsoft Excel 2007 SP3, Excel Viewer, and Office Compatibility Pack SP3 allow remote attackers to execute arbitrary code via a crafted OffEPSS 20.0%CVE-2009-4462—Stack-based buffer overflow in the NetBiterConfig utility (NetBiterConfig.exe) 1.3.0 for Intellicom NetBiter WebSCADA allows remote attackerEPSS 20.0%CVE-2012-0020—Microsoft Visio Viewer 2010 Gold and SP1 does not properly handle memory during the parsing of files, which allows remote attackers to execuEPSS 20.0%