Vulnerabilidades en n/a

160.971 resultados
CVE-2022-40878HIGHIn Exam Reviewer Management System 1.0, an authenticated attacker can upload a web-shell php file in profile page to achieve Remote Code ExeEPSS 23.2%CVE-2008-0639—Stack-based buffer overflow in the EnumPrinters function in the Spooler service (nwspool.dll) in Novell Client 4.91 SP2, SP3, and SP4 for WiEPSS 23.2%CVE-2007-2954—Multiple stack-based buffer overflows in the Spooler service (nwspool.dll) in Novell Client 4.91 SP2 through SP4 for Windows allow remote atEPSS 23.2%CVE-2008-0503—Eval injection vulnerability in admin/op/disp.php in Netwerk Smart Publisher 1.0.1 allows remote attackers to execute arbitrary PHP code viaEPSS 23.2%CVE-2005-0562—GIF file validation error in MSN Messenger 6.2 allows remote attackers in a user's contact list to execute arbitrary code via a GIF image wiEPSS 23.2%CVE-2018-13324—Incorrect access control in nasapi in Buffalo TS5600D1206 version 3.61-0.10 allows attackers to bypass authentication by sending a modified EPSS 23.2%CVE-2009-1960—inc/init.php in DokuWiki 2009-02-14, rc2009-02-06, and rc2009-01-30, when register_globals is enabled, allows remote attackers to include anEPSS 23.2%CVE-2009-1287—Cross-site scripting (XSS) vulnerability in Cisco Subscriber Edge Services Manager (SESM) allows remote attackers to inject arbitrary web scEPSS 23.1%CVE-2022-47949CRITICALThe Nintendo NetworkBuffer class, as used in Animal Crossing: New Horizons before 2.0.6 and other products, allows remote attackers to execuEPSS 23.1%CVE-2011-3406HIGHBuffer overflow in Active Directory, Active Directory Application Mode (ADAM), and Active Directory Lightweight Directory Service (AD LDS) iEPSS 23.1%CVE-2015-1649—Use-after-free vulnerability in Microsoft Word 2007 SP3, Office 2010 SP2, Word 2010 SP2, Word Viewer, Office Compatibility Pack SP3, Word AuEPSS 23.1%CVE-2006-2094—Microsoft Internet Explorer before Windows XP Service Pack 2 and Windows Server 2003 Service Pack 1, when Prompt is configured in Security SEPSS 23.1%CVE-2007-0021—Format string vulnerability in Apple iChat 3.1.6 allows remote attackers to cause a denial of service (null pointer dereference and applicatEPSS 23.1%CVE-2011-1938—Stack-based buffer overflow in the socket_connect function in ext/sockets/sockets.c in PHP 5.3.3 through 5.3.6 might allow context-dependentEPSS 23.1%CVE-2019-11354—The client in Electronic Arts (EA) Origin 10.5.36 on Windows allows template injection in the title parameter of the Origin2 URI handler. ThEPSS 23.1%CVE-2000-0028—Internet Explorer 5.0 and 5.01 allows remote attackers to bypass the cross frame security policy and read files via the external.NavigateAndEPSS 23.1%CVE-2019-7265—Linear eMerge E3-Series devices allow Remote Code Execution (root access over SSH).EPSS 23.1%CVE-2016-0059—The Hyperlink Object Library in Microsoft Internet Explorer 9 through 11 allows remote attackers to obtain sensitive information from procesEPSS 23.1%CVE-2016-4556—Double free vulnerability in Esi.cc in Squid 3.x before 3.5.18 and 4.x before 4.0.10 allows remote servers to cause a denial of service (craEPSS 23.1%CVE-2002-2029—PHP, when installed on Windows with Apache and ScriptAlias for /php/ set to c:/php/, allows remote attackers to read arbitrary files and posEPSS 23.1%