Vulnerabilidades en n/a

160.963 resultados
CVE-1999-1538—When IIS 2 or 3 is upgraded to IIS 4, ism.dll is inadvertently left in /scripts/iisadmin, which does not restrict access to the local machinEPSS 25.3%CVE-2013-1322—Microsoft Publisher 2003 SP3 does not properly check table range data, which allows remote attackers to execute arbitrary code via a craftedEPSS 25.3%CVE-2017-12786—Network interfaces of the cliengine and noviengine services, included in the NoviWare software distribution through NW400.2.6 and deployed oEPSS 25.3%CVE-2003-1567HIGHThe undocumented TRACK method in Microsoft Internet Information Services (IIS) 5.0 returns the content of the original request in the body oEPSS 25.2%CVE-2003-0116—Microsoft Internet Explorer 5.01, 5.5 and 6.0 does not properly check the Cascading Style Sheet input parameter for Modal dialogs, which allEPSS 25.2%CVE-2003-0906—Buffer overflow in the rendering for (1) Windows Metafile (WMF) or (2) Enhanced Metafile (EMF) image formats in Microsoft Windows NT 4.0 SP6EPSS 25.2%CVE-2014-0277—Microsoft Internet Explorer 8 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a craftEPSS 25.2%CVE-2022-23046—PhpIPAM v1.4.4 allows an authenticated admin user to inject SQL sentences in the "subnet" parameter while searching a subnet via app/admin/rEPSS 25.2%CVE-2022-30079—Command injection vulnerability was discovered in Netgear R6200 v2 firmware through R6200v2-V1.0.3.12 via binary /sbin/acos_service that couEPSS 25.2%CVE-2003-0661—The NetBT Name Service (NBNS) for NetBIOS in Windows NT 4.0, 2000, XP, and Server 2003 may include random memory in a response to a NBNS queEPSS 25.2%CVE-2020-5801—An attacker can craft and send an OpenNamespace message to port 4241 with valid session-id that triggers an unhandled exception in CFTLDManaEPSS 25.2%CVE-2014-8602—iterator.c in NLnet Labs Unbound before 1.5.1 does not limit delegation chaining, which allows remote attackers to cause a denial of serviceEPSS 25.2%CVE-2012-0165—GDI+ in Microsoft Windows Vista SP2 and Server 2008 SP2 and Office 2003 SP3, 2007 SP2 and SP3, and 2010 Gold and SP1 does not properly validEPSS 25.2%CVE-2008-0454—Cross-zone scripting vulnerability in the Internet Explorer web control in Skype 3.6.0.244, and earlier 3.5.x and 3.6.x versions, on WindowsEPSS 25.2%CVE-2016-7855HIGHUse-after-free vulnerability in Adobe Flash Player before 23.0.0.205 on Windows and OS X and before 11.2.202.643 on Linux allows remote attaEPSS 25.2%KEVCVE-2007-3891—Unspecified vulnerability in Windows Vista Weather Gadgets in Windows Vista allows remote attackers to execute arbitrary code via crafted HTEPSS 25.2%CVE-2021-27691—Command Injection in Tenda G0 routers with firmware versions v15.11.0.6(9039)_CN and v15.11.0.5(5876)_CN , and Tenda G1 and G3 routers with EPSS 25.2%CVE-2018-12900—Heap-based buffer overflow in the cpSeparateBufToContigBuf function in tiffcp.c in LibTIFF 3.9.3, 3.9.4, 3.9.5, 3.9.6, 3.9.7, 4.0.0beta7, 4.EPSS 25.2%CVE-2021-26023—The Favorites component before 1.0.2 for Nagios XI 5.8.0 is vulnerable to XSS.EPSS 25.2%CVE-2007-3823—The Logging Server (Logsrv.exe) in IPSwitch WS_FTP 7.5.29.0 allows remote attackers to cause a denial of service (daemon crash) by sending aEPSS 25.2%