Vulnerabilities in n/a
161,012 resultsCVE-2021-3110—The store system in PrestaShop 1.7.7.0 allows time-based boolean SQL injection via the module=productcomments controller=CommentGrade id_proEPSS 18.7%CVE-2002-1148—The default servlet (org.apache.catalina.servlets.DefaultServlet) in Tomcat 4.0.4 and 4.1.10 and earlier allows remote attackers to read souEPSS 18.6%CVE-2011-1256—Microsoft Internet Explorer 6 through 8 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code EPSS 18.6%CVE-2013-3870—Double free vulnerability in Microsoft Outlook 2007 SP3 and 2010 SP1 and SP2 allows remote attackers to execute arbitrary code by including EPSS 18.6%CVE-2010-5278—Directory traversal vulnerability in manager/controllers/default/resource/tvs.php in MODx Revolution 2.0.2-pl, and possibly earlier, when maEPSS 18.6%CVE-2012-0007—The Microsoft Anti-Cross Site Scripting (AntiXSS) Library 3.x and 4.0 does not properly evaluate characters after the detection of a CascadiEPSS 18.6%CVE-2011-1564—Multiple integer overflows in the HMI application in DATAC RealFlex RealWin 2.1 (Build 6.1.10.10) and earlier allow remote attackers to execEPSS 18.6%CVE-2004-1550—Motorola Wireless Router WR850G running firmware 4.03 allows remote attackers to bypass authentication, log on as an administrator, and obtaEPSS 18.6%CVE-2007-6236—Microsoft Windows Media Player (WMP) allows remote attackers to cause a denial of service (application crash) via a certain AIFF file that tEPSS 18.6%CVE-2018-14918—LOYTEC LGATE-902 6.3.2 devices allow Directory Traversal.EPSS 18.6%CVE-2011-1988—Microsoft Excel 2003 SP3 and 2007 SP2; Excel in Office 2007 SP2; Office 2004 and 2008 for Mac; Open XML File Format Converter for Mac; ExcelEPSS 18.6%CVE-2010-1127—Microsoft Internet Explorer 6 and 7 does not initialize certain data structures during execution of the createElement method, which allows rEPSS 18.6%CVE-2005-3653—Heap-based buffer overflow in the iGateway service for various Computer Associates (CA) iTechnology products, in iTechnology iGateway beforeEPSS 18.6%CVE-2023-49237CRITICALAn issue was discovered on TRENDnet TV-IP1314PI 5.5.3 200714 devices. Command injection can occur because the system function is used by davEPSS 18.6%CVE-2001-0902—Microsoft IIS 5.0 allows remote attackers to spoof web log entries via an HTTP request that includes hex-encoded newline or form-feed characEPSS 18.6%CVE-2005-2829—Multiple design errors in Microsoft Internet Explorer 5.01, 5.5, and 6 allow user-assisted attackers to execute arbitrary code by (1) overlaEPSS 18.6%CVE-2009-2994—Buffer overflow in Adobe Reader and Acrobat 7.x before 7.1.4, 8.x before 8.1.7, and 9.x before 9.2 might allow attackers to execute arbitrarEPSS 18.6%CVE-2015-2440—Microsoft XML Core Services 3.0, 5.0, and 6.0 allows remote attackers to bypass the ASLR protection mechanism via a crafted web site, aka "MEPSS 18.6%CVE-2010-0257—Microsoft Office Excel 2002 SP3 does not properly parse the Excel file format, which allows remote attackers to execute arbitrary code via aEPSS 18.6%CVE-2007-5322—Insecure method vulnerability in the FPOLE.OCX 6.0.8450.0 ActiveX control in Microsoft Visual FoxPro 6.0 allows remote attackers to execute EPSS 18.6%