Vulnerabilidades en n/a
160.858 resultadosCVE-2024-38812CRITICALHeap-overflow vulnerabilityEPSS 54.6%KEVCVE-2008-3008—Stack-based buffer overflow in the WMEncProfileManager ActiveX control in wmex.dll in Microsoft Windows Media Encoder 9 Series allows remoteEPSS 54.6%CVE-2022-36267—In Airspan AirSpot 5410 version 0.3.4.1-4 and under there exists a Unauthenticated remote command injection vulnerability. The ping functionEPSS 54.5%CVE-2016-0984HIGHUse-after-free vulnerability in Adobe Flash Player before 18.0.0.329 and 19.x and 20.x before 20.0.0.306 on Windows and OS X and before 11.2EPSS 54.5%KEVCVE-2019-16667—diag_command.php in pfSense 2.4.4-p3 allows CSRF via the txtCommand or txtRecallBuffer field, as demonstrated by executing OS commands. ThisEPSS 54.5%CVE-2010-3863—Apache Shiro before 1.1.0, and JSecurity 0.9.x, does not canonicalize URI paths before comparing them to entries in the shiro.ini file, whicEPSS 54.5%CVE-2009-1730—Multiple directory traversal vulnerabilities in NetMechanica NetDecision TFTP Server 4.2 allow remote attackers to read or modify arbitrary EPSS 54.5%CVE-2016-2056—xymond in Xymon 4.1.x, 4.2.x, and 4.3.x before 4.3.25 allow remote authenticated users to execute arbitrary commands via shell metacharacterEPSS 54.5%CVE-2018-20323—www/soap/application/MCSoap/Logs.php in MailCleaner Community Edition 2018.08 allows remote attackers to execute arbitrary OS commands.EPSS 54.5%CVE-2018-20247—In Foxit Quick PDF Library (all versions prior to 16.12), issue where loading a malformed or malicious PDF containing a recursive page tree EPSS 54.5%CVE-2022-24562—In IOBit IOTransfer 4.3.1.1561, an unauthenticated attacker can send GET and POST requests to Airserv and gain arbitrary read/write access tEPSS 54.5%CVE-2012-0202—Multiple stack-based buffer overflows in tm1admsd.exe in the Admin Server in IBM Cognos TM1 9.4.x and 9.5.x before 9.5.2 FP2 allow remote atEPSS 54.5%CVE-2002-0371—Buffer overflow in gopher client for Microsoft Internet Explorer 5.1 through 6.0, Proxy Server 2.0, or ISA Server 2000 allows remote attackeEPSS 54.4%CVE-2007-3040—Stack-based buffer overflow in agentdpv.dll 2.0.0.3425 in Microsoft Agent on Windows 2000 SP4 allows remote attackers to execute arbitrary cEPSS 54.4%CVE-2021-36356—KRAMER VIAware through August 2021 allows remote attackers to execute arbitrary code because ajaxPages/writeBrowseFilePathAjax.php accepts aEPSS 54.4%CVE-2017-14849—Node.js 8.5.0 before 8.6.0 allows remote attackers to access unintended files, because a change to ".." handling was incompatible with the pEPSS 54.4%CVE-2005-0068—The original design of ICMP does not require authentication for host-generated ICMP error messages, which makes it easier for attackers to fEPSS 54.4%CVE-2001-1217—Directory traversal vulnerability in PL/SQL Apache module in Oracle Oracle 9i Application Server allows remote attackers to access sensitiveEPSS 54.4%CVE-2011-0027—Microsoft Data Access Components (MDAC) 2.8 SP1 and SP2, and Windows Data Access Components (WDAC) 6.0, does not properly validate memory alEPSS 54.4%CVE-2020-29557CRITICALAn issue was discovered on D-Link DIR-825 R1 devices through 3.0.1 before 2020-11-20. A buffer overflow in the web interface allows attackerEPSS 54.3%KEV