CVE z tagiem dos — 200 wyników. ← Wszystkie tagi

CVE-2012-0507 🔴 Łataj teraz KEV

Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 2 and earlier, 6 Update 30 and earlier, and 5.0 Update 33 and earlier allows remote attackers to affect confidentiality…

9.8 CVSS
93.6% EPSS
sundosexploit 2012-06-07
CVE-2015-5119 🔴 Łataj teraz KEV
os

Use-after-free vulnerability in the ByteArray class in the ActionScript 3 (AS3) implementation in Adobe Flash Player 13.x through 13.0.0.296 and 14.x through 18.0.0.194 on Windows and OS X and 11.x through 11.2.202.468 o…

9.8 CVSS
93.2% EPSS
redhatdosexploit 2015-07-08
CVE-2015-5122 🔴 Łataj teraz KEV

Use-after-free vulnerability in the DisplayObject class in the ActionScript 3 (AS3) implementation in Adobe Flash Player 13.x through 13.0.0.302 on Windows and OS X, 14.x through 18.0.0.203 on Windows and OS X, 11.x thro…

9.8 CVSS
92.8% EPSS
adobedosexploit 2015-07-14
CVE-2011-2462 🔴 Łataj teraz KEV

Unspecified vulnerability in the U3D component in Adobe Reader and Acrobat 10.1.1 and earlier on Windows and Mac OS X, and Adobe Reader 9.x through 9.4.6 on UNIX, allows remote attackers to execute arbitrary code or caus…

9.8 CVSS
91.8% EPSS
adobedos 2011-12-07
CVE-2013-3346 🔴 Łataj teraz KEV

Adobe Reader and Acrobat 9.x before 9.5.5, 10.x before 10.1.7, and 11.x before 11.0.03 allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulne…

9.8 CVSS
89.7% EPSS
adobedos 2013-08-30
CVE-2011-0611 🔴 Łataj teraz KEV

Adobe Flash Player before 10.2.154.27 on Windows, Mac OS X, Linux, and Solaris and 10.2.156.12 and earlier on Android; Adobe AIR before 2.6.19140; and Authplay.dll (aka AuthPlayLib.bundle) in Adobe Reader 9.x before 9.4.…

8.8 CVSS
93.7% EPSS
adobedosexploit 2011-04-13
CVE-2012-1889 🔴 Łataj teraz KEV
appscloud

Microsoft XML Core Services 3.0, 4.0, 5.0, and 6.0 accesses uninitialized memory locations, which allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site.

8.8 CVSS
93.1% EPSS
microsoftdos 2012-06-13
CVE-2015-3043 🔴 Łataj teraz KEV
os

Adobe Flash Player before 13.0.0.281 and 14.x through 17.x before 17.0.0.169 on Windows and OS X and before 11.2.202.457 on Linux allows attackers to execute arbitrary code or cause a denial of service (memory corruption…

9.8 CVSS
87.4% EPSS
redhatdosexploit 2015-04-14
CVE-2016-7201 🔴 Łataj teraz KEV
appscloud

The Chakra JavaScript scripting engine in Microsoft Edge allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Scripting Engine Memory Corruption …

8.8 CVSS
90.1% EPSS
microsoftdosexploit 2016-11-10
CVE-2014-1776 🔴 Łataj teraz KEV
appscloud

Use-after-free vulnerability in Microsoft Internet Explorer 6 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via vectors related to the CMarkup::IsConnectedT…

9.8 CVSS
84.0% EPSS
microsoftdosexploit 2014-04-27
CVE-2010-0188 🔴 Łataj teraz KEV

Unspecified vulnerability in Adobe Reader and Acrobat 8.x before 8.2.1 and 9.x before 9.3.1 allows attackers to cause a denial of service (application crash) or possibly execute arbitrary code via unknown vectors.

7.8 CVSS
93.5% EPSS
adobedos 2010-02-22
CVE-2014-1761 🔴 Łataj teraz KEV
appscloud

Microsoft Word 2003 SP3, 2007 SP3, 2010 SP1 and SP2, 2013, and 2013 RT; Word Viewer; Office Compatibility Pack SP3; Office for Mac 2011; Word Automation Services on SharePoint Server 2010 SP1 and SP2 and 2013; Office Web…

7.8 CVSS
93.3% EPSS
microsoftdos 2014-03-25
CVE-2013-3897 🔴 Łataj teraz KEV
appscloud

Use-after-free vulnerability in the CDisplayPointer class in mshtml.dll in Microsoft Internet Explorer 6 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via c…

8.8 CVSS
88.2% EPSS
microsoftdos 2013-10-09
CVE-2016-7200 🔴 Łataj teraz KEV
appscloud

The Chakra JavaScript scripting engine in Microsoft Edge allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Scripting Engine Memory Corruption …

8.8 CVSS
88.1% EPSS
microsoftdosexploit 2016-11-10
CVE-2012-0754 🔴 Łataj teraz KEV

Adobe Flash Player before 10.3.183.15 and 11.x before 11.1.102.62 on Windows, Mac OS X, Linux, and Solaris; before 11.1.111.6 on Android 2.x and 3.x; and before 11.1.115.6 on Android 4.x allows attackers to execute arbit…

8.1 CVSS
91.5% EPSS
adobedos 2012-02-16
CVE-2010-1297 🔴 Łataj teraz KEV

Adobe Flash Player before 9.0.277.0 and 10.x before 10.1.53.64; Adobe AIR before 2.0.2.12610; and Adobe Reader and Acrobat 9.x before 9.3.3, and 8.x before 8.2.3 on Windows and Mac OS X, allow remote attackers to execute…

7.8 CVSS
92.8% EPSS
adobedosexploit 2010-06-08
CVE-2013-0640 🔴 Łataj teraz KEV
os

Adobe Reader and Acrobat 9.x before 9.5.4, 10.x before 10.1.6, and 11.x before 11.0.02 allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted PDF document, as expl…

7.8 CVSS
92.3% EPSS
redhatdos 2013-02-14
CVE-2011-0609 🔴 Łataj teraz KEV

Unspecified vulnerability in Adobe Flash Player 10.2.154.13 and earlier on Windows, Mac OS X, Linux, and Solaris; 10.1.106.16 and earlier on Android; Adobe AIR 2.5.1 and earlier; and Authplay.dll (aka AuthPlayLib.bundle)…

7.8 CVSS
92.1% EPSS
adobedos 2011-03-15
CVE-2013-3918 🔴 Łataj teraz KEV
appscloud

The InformationCardSigninHelper Class ActiveX control in icardie.dll in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows …

8.8 CVSS
87.0% EPSS
microsoftdos 2013-11-12
CVE-2012-1535 🔴 Łataj teraz KEV
os

Unspecified vulnerability in Adobe Flash Player before 11.3.300.271 on Windows and Mac OS X and before 11.2.202.238 on Linux allows remote attackers to execute arbitrary code or cause a denial of service (application cra…

7.8 CVSS
91.6% EPSS
redhatdos 2012-08-15
CVE-2010-2883 🔴 Łataj teraz KEV

Stack-based buffer overflow in CoolType.dll in Adobe Reader and Acrobat 9.x before 9.4, and 8.x before 8.2.5 on Windows and Mac OS X, allows remote attackers to execute arbitrary code or cause a denial of service (applic…

7.3 CVSS
93.2% EPSS
CVE-2013-3163 🔴 Łataj teraz KEV
appscloud

Microsoft Internet Explorer 8 through 10 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability,"…

8.8 CVSS
84.5% EPSS
microsoftdos 2013-07-10
CVE-2016-0189 🔴 Łataj teraz KEV
appscloud

The Microsoft (1) JScript 5.8 and (2) VBScript 5.7 and 5.8 engines, as used in Internet Explorer 9 through 11 and other products, allow remote attackers to execute arbitrary code or cause a denial of service (memory corr…

7.5 CVSS
90.8% EPSS
microsoftdosexploit 2016-05-11
CVE-2015-4068 🔴 Łataj teraz KEV

Directory traversal vulnerability in Arcserve UDP before 5.0 Update 4 allows remote attackers to obtain sensitive information or cause a denial of service via a crafted file path to the (1) reportFileServlet or (2) expor…

9.1 CVSS
80.4% EPSS
CVE-2012-2539 🔴 Łataj teraz KEV
appscloud

Microsoft Word 2003 SP3, 2007 SP2 and SP3, and 2010 SP1; Word Viewer; Office Compatibility Pack SP2 and SP3; and Office Web Apps 2010 SP1 allow remote attackers to execute arbitrary code or cause a denial of service (mem…

7.8 CVSS
84.4% EPSS
microsoftdosrce 2012-12-12
CVE-2016-4657 🔴 Łataj teraz KEV
os

WebKit in Apple iOS before 9.3.5 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site.

8.8 CVSS
78.3% EPSS
appledosexploit 2016-08-25
CVE-2015-2424 🔴 Łataj teraz KEV
appscloud

Microsoft PowerPoint 2007 SP3, Word 2007 SP3, PowerPoint 2010 SP2, Word 2010 SP2, PowerPoint 2013 SP1, Word 2013 SP1, and PowerPoint 2013 RT SP1 allow remote attackers to execute arbitrary code or cause a denial of servi…

8.8 CVSS
76.5% EPSS
microsoftdos 2015-07-14
CVE-2015-2419 🔴 Łataj teraz KEV
appscloud

JScript 9 in Microsoft Internet Explorer 10 and 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "JScript9 Memory Corruption Vulnerability.…

8.8 CVSS
69.4% EPSS
microsoftdos 2015-07-14
CVE-2010-0232 🔴 Łataj teraz KEV
appscloud

The kernel in Microsoft Windows NT 3.1 through Windows 7, including Windows 2000 SP4, Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista Gold, SP1, and SP2, and Windows Server 2008 Gold and SP2, when access t…

7.8 CVSS
72.6% EPSS
microsoftdosexploit 2010-01-21
CVE-2016-1646 🔴 Łataj teraz KEV
os

The Array.prototype.concat implementation in builtins.cc in Google V8, as used in Google Chrome before 49.0.2623.108, does not properly consider element data types, which allows remote attackers to cause a denial of serv…

8.8 CVSS
66.9% EPSS
redhatdosexploit 2016-03-29
CVE-2016-1019 🔴 Łataj teraz KEV

Adobe Flash Player 21.0.0.197 and earlier allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via unspecified vectors, as exploited in the wild in April 2016.

9.8 CVSS
58.0% EPSS
adobedos 2016-04-07
CVE-2016-4656 🔴 Łataj teraz KEV
os

The kernel in Apple iOS before 9.3.5 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app.

7.8 CVSS
66.7% EPSS
appledosexploit 2016-08-25
CVE-2016-4523 🔴 Łataj teraz KEV

The WAP interface in Trihedral VTScada (formerly VTS) 8.x through 11.x before 11.2.02 allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via unspecified vectors.

7.5 CVSS
67.0% EPSS
trihedraldos 2016-06-09
CVE-2009-1862 🔴 Łataj teraz KEV

Unspecified vulnerability in Adobe Reader and Acrobat 9.x through 9.1.2, and Adobe Flash Player 9.x through 9.0.159.0 and 10.x through 10.0.22.87, allows remote attackers to execute arbitrary code or cause a denial of se…

7.8 CVSS
58.6% EPSS
adobedos 2009-07-23
CVE-2016-0034 🔴 Łataj teraz KEV
appscloud

Microsoft Silverlight 5 before 5.1.41212.0 mishandles negative offsets during decoding, which allows remote attackers to execute arbitrary code or cause a denial of service (object-header corruption) via a crafted web si…

8.8 CVSS
52.8% EPSS
microsoftdosrce 2016-01-13
CVE-2013-1690 🔴 Łataj teraz KEV

Mozilla Firefox before 22.0, Firefox ESR 17.x before 17.0.7, Thunderbird before 17.0.7, and Thunderbird ESR 17.x before 17.0.7 do not properly handle onreadystatechange events in conjunction with page reloading, which al…

8.8 CVSS
47.1% EPSS
susedos 2013-06-26
CVE-2015-5123 🔴 Łataj teraz KEV
os

Use-after-free vulnerability in the BitmapData class in the ActionScript 3 (AS3) implementation in Adobe Flash Player 13.x through 13.0.0.302 on Windows and OS X, 14.x through 18.0.0.203 on Windows and OS X, 11.x through…

9.8 CVSS
41.0% EPSS
redhatdos 2015-07-14
CVE-2017-0149 🔴 Łataj teraz KEV
appscloud

Microsoft Internet Explorer 9 through 11 allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability." …

8.8 CVSS
41.5% EPSS
microsoftdos 2017-03-17
CVE-2014-8439 🔴 Łataj teraz KEV

Adobe Flash Player before 13.0.0.258 and 14.x and 15.x before 15.0.0.239 on Windows and OS X and before 11.2.202.424 on Linux, Adobe AIR before 15.0.0.293, Adobe AIR SDK before 15.0.0.302, and Adobe AIR SDK & Compiler be…

8.8 CVSS
34.4% EPSS
adobedos 2014-11-25
CVE-2015-2425 🔴 Łataj teraz KEV
appscloud

Microsoft Internet Explorer 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a differe…

8.8 CVSS
34.1% EPSS
microsoftdos 2015-07-14
CVE-2014-0196 🔴 Łataj teraz KEV
network

The n_tty_write function in drivers/tty/n_tty.c in the Linux kernel through 3.14.3 does not properly manage tty driver access in the "LECHO & !OPOST" case, which allows local users to cause a denial of service (memory co…

5.5 CVSS
48.6% EPSS
f5dosexploit 2014-05-07
CVE-2015-2502 🔴 Łataj teraz KEV
appscloud

Microsoft Internet Explorer 7 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Memory Corruption Vulnerability," as exploited in t…

8.8 CVSS
22.6% EPSS
microsoftdosexploit 2015-08-19
CVE-2017-12240 🔴 Łataj teraz KEV
network

The DHCP relay subsystem of Cisco IOS 12.2 through 15.6 and Cisco IOS XE Software contains a vulnerability that could allow an unauthenticated, remote attacker to execute arbitrary code and gain full control of an affect…

9.8 CVSS
13.6% EPSS
CVE-2006-1547 🔴 Łataj teraz KEV
apps

ActionForm in Apache Software Foundation (ASF) Struts before 1.2.9 with BeanUtils 1.7 allows remote attackers to cause a denial of service via a multipart/form-data encoded form with a parameter name that references the …

7.5 CVSS
22.2% EPSS
apachedosexploit 2006-03-30
CVE-2015-2360 🔴 Łataj teraz KEV
appscloud

win32k.sys in the kernel-mode drivers in Microsoft Windows Server 2003 SP2 and R2 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, and Wi…

8.8 CVSS
11.6% EPSS
CVE-2017-12233 🔴 Łataj teraz KEV
network

Multiple vulnerabilities in the implementation of the Common Industrial Protocol (CIP) feature in Cisco IOS 12.4 through 15.6 could allow an unauthenticated, remote attacker to cause an affected device to reload, resulti…

7.5 CVSS
11.3% EPSS
ciscodos 2017-09-29
CVE-2017-12234 🔴 Łataj teraz KEV
network

Multiple vulnerabilities in the implementation of the Common Industrial Protocol (CIP) feature in Cisco IOS 12.4 through 15.6 could allow an unauthenticated, remote attacker to cause an affected device to reload, resulti…

7.5 CVSS
11.3% EPSS
ciscodos 2017-09-29
CVE-2017-6627 🔴 Łataj teraz KEV
network

A vulnerability in the UDP processing code of Cisco IOS 15.1, 15.2, and 15.4 and IOS XE 3.14 through 3.18 could allow an unauthenticated, remote attacker to cause the input queue of an affected system to hold UDP packets…

7.5 CVSS
10.8% EPSS
ciscodos 2017-09-07
CVE-2012-2034 🔴 Łataj teraz KEV
os

Adobe Flash Player before 10.3.183.20 and 11.x before 11.3.300.257 on Windows and Mac OS X; before 10.3.183.20 and 11.x before 11.2.202.236 on Linux; before 11.1.111.10 on Android 2.x and 3.x; and before 11.1.115.9 on An…

7.5 CVSS
10.3% EPSS
redhatdos 2012-06-09
CVE-2017-12231 🔴 Łataj teraz KEV
network

A vulnerability in the implementation of Network Address Translation (NAT) functionality in Cisco IOS 12.4 through 15.6 could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an a…

7.5 CVSS
9.3% EPSS
ciscodos 2017-09-29
CVE-2017-12237 🔴 Łataj teraz KEV
network

A vulnerability in the Internet Key Exchange Version 2 (IKEv2) module of Cisco IOS 15.0 through 15.6 and Cisco IOS XE 3.5 through 16.5 could allow an unauthenticated, remote attacker to cause high CPU utilization, traceb…

7.5 CVSS
9.3% EPSS
ciscodos 2017-09-29
CVE-2017-12235 🔴 Łataj teraz KEV
network

A vulnerability in the implementation of the PROFINET Discovery and Configuration Protocol (PN-DCP) for Cisco IOS 12.2 through 15.6 could allow an unauthenticated, remote attacker to cause an affected device to reload, r…

7.5 CVSS
6.5% EPSS
ciscodos 2017-09-29
CVE-2015-2291 🔴 Łataj teraz KEV

(1) IQVW32.sys before 1.3.1.0 and (2) IQVW64.sys before 1.3.1.0 in the Intel Ethernet diagnostics driver for Windows allows local users to cause a denial of service or possibly execute arbitrary code with kernel privileg…

7.8 CVSS
4.7% EPSS
inteldos 2017-08-09
CVE-2010-3035 🔴 Łataj teraz KEV
network

Cisco IOS XR 3.4.0 through 3.9.1, when BGP is enabled, does not properly handle unrecognized transitive attributes, which allows remote attackers to cause a denial of service (peering reset) via a crafted prefix announce…

7.5 CVSS
3.2% EPSS
ciscodos 2010-08-30
CVE-2017-6663 🔴 Łataj teraz KEV
network

A vulnerability in the Autonomic Networking feature of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, adjacent attacker to cause autonomic nodes of an affected system to reload, resulting in…

6.5 CVSS
2.3% EPSS
ciscodos 2017-08-07
CVE-2017-12238 🔴 Łataj teraz KEV
network

A vulnerability in the Virtual Private LAN Service (VPLS) code of Cisco IOS 15.0 through 15.4 for Cisco Catalyst 6800 Series Switches could allow an unauthenticated, adjacent attacker to cause a C6800-16P10G or C6800-16P…

6.5 CVSS
1.0% EPSS
ciscodos 2017-09-29
CVE-2017-12232 🔴 Łataj teraz KEV
network

A vulnerability in the implementation of a protocol in Cisco Integrated Services Routers Generation 2 (ISR G2) Routers running Cisco IOS 15.0 through 15.6 could allow an unauthenticated, adjacent attacker to cause an aff…

6.5 CVSS
1.0% EPSS
ciscodos 2017-09-29
CVE-2004-1464 🔴 Łataj teraz KEV
network

Cisco IOS 12.2(15) and earlier allows remote attackers to cause a denial of service (refused VTY (virtual terminal) connections), via a crafted TCP connection to the Telnet or reverse Telnet port.

5.9 CVSS
2.1% EPSS
ciscodos 2004-12-31
CVE-2009-2055 🔴 Łataj teraz KEV
network

Cisco IOS XR 3.4.0 through 3.8.1 allows remote attackers to cause a denial of service (session reset) via a BGP UPDATE message with an invalid attribute, as demonstrated in the wild on 17 August 2009.

5.9 CVSS
0.4% EPSS
ciscodos 2009-08-19
CVE-2006-5815 🔴 Łataj teraz

Stack-based buffer overflow in the sreplace function in ProFTPD 1.3.0 and earlier allows remote attackers, probably authenticated, to cause a denial of service and execute arbitrary code, as demonstrated by vd_proftpd.pm…

10.0 CVSS
73.4% EPSS
CVE-2022-3602 🟡 Monitoruj

A buffer overrun can be triggered in X.509 certificate verification, specifically in name constraint checking. Note that this occurs after certificate chain signature verification and requires either a CA to have signed …

7.5 CVSS
83.2% EPSS
CVE-2006-5559 🔴 Łataj teraz
appscloud

The Execute method in the ADODB.Connection 2.7 and 2.8 ActiveX control objects (ADODB.Connection.2.7 and ADODB.Connection.2.8) in the Microsoft Data Access Components (MDAC) 2.5 SP3, 2.7 SP1, 2.8, and 2.8 SP1 does not pr…

9.3 CVSS
72.6% EPSS
microsoftdosexploit 2006-10-27
CVE-2010-0557 🟡 Monitoruj

IBM Cognos Express 9.0 allows attackers to obtain unspecified access to the Tomcat Manager component, and cause a denial of service, by leveraging hardcoded credentials.

7.5 CVSS
79.4% EPSS
ibmdos 2010-02-05
CVE-1999-0667 🔴 Łataj teraz

The ARP protocol allows any host to spoof ARP replies and poison the ARP cache to conduct IP address spoofing or a denial of service.

10.0 CVSS
65.0% EPSS
arp_protocoldos 1997-09-19
CVE-2009-4656 🔴 Łataj teraz

Stack-based buffer overflow in E-Soft DJ Studio Pro 4.2 including 4.2.2.7.5, and 5.x including 5.1.4.3.1, allows user-assisted remote attackers to cause a denial of service (application crash) and possibly execute arbitr…

9.3 CVSS
68.4% EPSS
CVE-2010-0304 🟡 Monitoruj

Multiple buffer overflows in the LWRES dissector in Wireshark 0.9.15 through 1.0.10 and 1.2.0 through 1.2.5 allow remote attackers to cause a denial of service (crash) via a malformed packet, as demonstrated using a stac…

7.5 CVSS
74.4% EPSS
CVE-2006-6027 🔴 Łataj teraz

Adobe Reader (Adobe Acrobat Reader) 7.0 through 7.0.8 allows remote attackers to cause a denial of service and possibly execute arbitrary code via a long argument string to the LoadFile method in an AcroPDF ActiveX contr…

9.3 CVSS
64.8% EPSS
adobedosexploit 2006-11-21
CVE-2010-0242 🟡 Monitoruj
appscloud

The TCP/IP implementation in Microsoft Windows Vista Gold, SP1, and SP2 and Server 2008 Gold and SP2 allows remote attackers to cause a denial of service (system hang) via crafted packets with malformed TCP selective ack…

7.8 CVSS
68.4% EPSS
microsoftdos 2010-02-10
CVE-1999-0016 ⚪ Do wiadomości

Land IP denial of service.

5.0 CVSS
81.0% EPSS
hpdos 1997-12-01
CVE-2006-5614 ⚪ Do wiadomości
appscloud

Microsoft Windows NAT Helper Components (ipnathlp.dll) on Windows XP SP2, when Internet Connection Sharing is enabled, allows remote attackers to cause a denial of service (svchost.exe crash) via a malformed DNS query, w…

2.6 CVSS
88.4% EPSS
microsoftdos 2006-10-31
CVE-2010-0022 🟡 Monitoruj
appscloud

The SMB implementation in the Server service in Microsoft Windows 2000 SP4, Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista Gold, SP1, and SP2, Windows Server 2008 Gold, SP2, and R2, and Windows 7 does not…

7.8 CVSS
60.2% EPSS
microsoftdos 2010-02-10
CVE-2010-1119 🔴 Łataj teraz
os

Use-after-free vulnerability in WebKit in Apple Safari before 5.0 on Mac OS X 10.5 through 10.6 and Windows, Safari before 4.1 on Mac OS X 10.4, and Safari on Apple iPhone OS allows remote attackers to execute arbitrary …

10.0 CVSS
45.8% EPSS
appledos 2010-03-25
CVE-2006-4924 🟡 Monitoruj

sshd in OpenSSH before 4.4, when using the version 1 SSH protocol, allows remote attackers to cause a denial of service (CPU consumption) via an SSH packet that contains duplicate blocks, which is not properly handled by…

7.8 CVSS
54.3% EPSS
openbsddosexploit 2006-09-27
CVE-2010-0050 🟠 Łataj w tym tygodniu
os

Use-after-free vulnerability in WebKit in Apple Safari before 4.0.5 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via an HTML document with improperly nested tags.

8.8 CVSS
46.4% EPSS
canonicaldos 2010-03-15
CVE-2006-4689 ⚪ Do wiadomości
appscloud

Unspecified vulnerability in the driver for the Client Service for NetWare (CSNW) in Microsoft Windows 2000 SP4, XP SP2, and Server 2003 up to SP1 allows remote attackers to cause a denial of service (hang and reboot) vi…

5.0 CVSS
65.3% EPSS
microsoftdos 2006-11-14
CVE-2006-5296 ⚪ Do wiadomości
appscloud

PowerPoint in Microsoft Office 2003 does not properly handle a container object whose position value exceeds the record length, which allows user-assisted attackers to cause a denial of service (NULL dereference and appl…

4.3 CVSS
67.8% EPSS
CVE-2009-3301 🔴 Łataj teraz
os

Integer underflow in filter/ww8/ww8par2.cxx in OpenOffice.org (OOo) before 3.2 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted sprmTDefTable table…

9.3 CVSS
42.8% EPSS
canonicaldos 2010-02-16
CVE-2009-3302 🔴 Łataj teraz
os

filter/ww8/ww8par2.cxx in OpenOffice.org (OOo) before 3.2 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted sprmTSetBrc table property modifier in a…

9.3 CVSS
42.8% EPSS
canonicaldos 2010-02-16
CVE-2009-4637 🔴 Łataj teraz

FFmpeg 0.5 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via unknown vectors that trigger a stack-based buffer overflow.

10.0 CVSS
32.9% EPSS
CVE-2010-0010 ⚪ Do wiadomości
apps

Integer overflow in the ap_proxy_send_fb function in proxy/proxy_util.c in mod_proxy in the Apache HTTP Server before 1.3.42 on 64-bit platforms allows remote origin servers to cause a denial of service (daemon crash) or…

6.8 CVSS
47.4% EPSS
CVE-2006-5779 🟡 Monitoruj
os

OpenLDAP before 2.3.29 allows remote attackers to cause a denial of service (daemon crash) via LDAP BIND requests with long authcid names, which triggers an assertion failure.

7.5 CVSS
43.4% EPSS
canonicaldosexploit 2006-11-07
CVE-2006-6026 🔴 Łataj teraz

Heap-based buffer overflow in Real Networks Helix Server and Helix Mobile Server before 11.1.3, and Helix DNA Server 11.0 and 11.1, allows remote attackers to cause a denial of service (application crash) or execute arbi…

10.0 CVSS
30.4% EPSS
CVE-2006-0749 🔴 Łataj teraz

nsHTMLContentSink.cpp in Mozilla Firefox and Thunderbird 1.x before 1.5 and 1.0.x before 1.0.8, Mozilla Suite before 1.7.13, and SeaMonkey before 1.0 allows remote attackers to cause a denial of service (crash) and possi…

9.3 CVSS
31.1% EPSS
mozillados 2006-04-14
CVE-2010-0049 🔴 Łataj teraz
os

Use-after-free vulnerability in WebKit in Apple Safari before 4.0.5 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via HTML elements with right-to-left (RTL) text direc…

9.3 CVSS
30.1% EPSS
appledos 2010-03-15
CVE-2006-5448 🟡 Monitoruj
appscloud

The drmstor.dll ActiveX object in Microsoft Windows Digital Rights Management System (DRM) allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long parameter to the Stor…

7.5 CVSS
38.4% EPSS
CVE-1999-0449 🟡 Monitoruj
appscloud

The ExAir sample site in IIS 4 allows remote attackers to cause a denial of service (CPU consumption) via a direct request to the (1) advsearch.asp, (2) query.asp, or (3) search.asp scripts.

7.8 CVSS
36.2% EPSS
microsoftdos 1999-01-26
CVE-2010-0639 ⚪ Do wiadomości

The htcpHandleTstRequest function in htcp.c in Squid 2.x before 2.6.STABLE24 and 2.7 before 2.7.STABLE8, and htcp.cc in 3.0 before 3.0.STABLE24, allows remote attackers to cause a denial of service (NULL pointer derefere…

5.0 CVSS
49.4% EPSS
squid-cachedos 2010-02-15
CVE-2010-0107 🟠 Łataj w tym tygodniu

Buffer overflow in an ActiveX control (SYMLTCOM.dll) in Symantec N360 1.0 and 2.0; Norton Internet Security, AntiVirus, SystemWorks, and Confidential 2006 through 2008; and Symantec Client Security 3.0.x before 3.1 MR9, …

9.3 CVSS
27.1% EPSS
CVE-2010-1241 🔴 Łataj teraz

Heap-based buffer overflow in the custom heap management system in Adobe Reader and Acrobat 9.x before 9.3.2, and 8.x before 8.2.2 on Windows and Mac OS X, allows remote attackers to execute arbitrary code or cause a den…

9.3 CVSS
26.2% EPSS
CVE-2006-4997 🟡 Monitoruj
os

The clip_mkip function in net/atm/clip.c of the ATM subsystem in Linux kernel allows remote attackers to cause a denial of service (panic) via unknown vectors that cause the ATM subsystem to access the memory of socket b…

7.5 CVSS
35.0% EPSS
canonicaldosexploit 2006-10-10
CVE-2010-0035 ⚪ Do wiadomości
appscloud

The Key Distribution Center (KDC) in Kerberos in Microsoft Windows 2000 SP4, Server 2003 SP2, and Server 2008 Gold and SP2, when a trust relationship with a non-Windows Kerberos realm exists, allows remote authenticated …

6.3 CVSS
40.1% EPSS
microsoftdos 2010-02-10
CVE-2010-0187 ⚪ Do wiadomości

Adobe Flash Player before 10.0.45.2 and Adobe AIR before 1.5.3.9130 allow remote attackers to cause a denial of service (application crash) via a modified SWF file.

4.3 CVSS
48.9% EPSS
adobedosexploit 2010-02-15
CVE-2009-4758 🔴 Łataj teraz

Stack-based buffer overflow in dicas Mpegable Player 2.12 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a long string in a .YUV file.

9.3 CVSS
23.3% EPSS
CVE-1999-1551 ⚪ Do wiadomości

Buffer overflow in Ipswitch IMail Service 5.0 allows an attacker to cause a denial of service (crash) and possibly execute arbitrary commands via a long URL.

5.0 CVSS
44.7% EPSS
CVE-2010-0167 🟠 Łataj w tym tygodniu

The browser engine in Mozilla Firefox 3.0.x before 3.0.18, 3.5.x before 3.5.8, and 3.6.x before 3.6.2; Thunderbird before 3.0.2; and SeaMonkey before 2.0.3 allows remote attackers to cause a denial of service (memory cor…

9.3 CVSS
22.9% EPSS
mozillados 2010-03-25
CVE-2009-2950 🟠 Łataj w tym tygodniu
os

Heap-based buffer overflow in the GIFLZWDecompressor::GIFLZWDecompressor function in filter.vcl/lgif/decode.cxx in OpenOffice.org (OOo) before 3.2 allows remote attackers to cause a denial of service (application crash) …

9.3 CVSS
22.8% EPSS
CVE-2006-5084 🟡 Monitoruj

Format string vulnerability in the NSRunAlertPanel function in eBay Skype for Mac 1.5.*.79 and earlier allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a ma…

7.5 CVSS
30.8% EPSS
CVE-2010-0619 🟡 Monitoruj

Stack-based buffer overflow in the base, IPDS DLE, Forms DLE, Barcode DLE, Prescribe DLE, and Printcryption DLE components on certain Lexmark laser printers and multi-function printers allows remote attackers to execute …

7.3 CVSS
30.8% EPSS
CVE-2010-0040 🟠 Łataj w tym tygodniu
os

Integer overflow in ColorSync in Apple Safari before 4.0.5 on Windows, and iTunes before 9.1, allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via an image with a crafted…

9.3 CVSS
19.8% EPSS
CVE-2006-5646 ⚪ Do wiadomości

Heap-based buffer overflow in Sophos Anti-Virus and Endpoint Security before 6.0.5, Anti-Virus for Linux before 5.0.10, and other platforms before 4.11, when archive scanning is enabled, allows remote attackers to trigge…

5.0 CVSS
41.1% EPSS
CVE-2009-4757 🔴 Łataj teraz

Stack-based buffer overflow in BrotherSoft EW-MusicPlayer 0.8 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a long string in a malformed playlist (.m3u) f…

9.3 CVSS
17.2% EPSS
CVE-2009-4759 🟠 Łataj w tym tygodniu

Buffer overflow in BrotherSoft BMXPlay 0.4.4b allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a long string in a .BMX file.

9.3 CVSS
17.2% EPSS
CVE-1999-0285 🟠 Łataj w tym tygodniu
appscloud

Denial of service in telnet from the Windows NT Resource Kit, by opening then immediately closing a connection.

10.0 CVSS
13.4% EPSS
microsoftdos 1999-01-01
CVE-2010-1042 ⚪ Do wiadomości
appscloud

Microsoft Windows Media Player 11 does not properly perform colorspace conversion, which allows remote attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code via a crafted .AVI file…

4.3 CVSS
41.6% EPSS
microsoftdosexploit 2010-03-23
CVE-2010-1098 🟡 Monitoruj
appscloud

The ANI parser in Microsoft Windows before 7 on the x86 platform, as used in Internet Explorer and other applications, allows remote attackers to cause a denial of service (memory and CPU consumption) via a crafted biClr…

7.1 CVSS
27.2% EPSS
microsoftdosexploit 2010-03-24
CVE-2010-0043 🟠 Łataj w tym tygodniu
os

ImageIO in Apple Safari before 4.0.5 and iTunes before 9.1 on Windows allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted TIFF image.

9.3 CVSS
16.2% EPSS
appledos 2010-03-15
CVE-1999-0226 🟠 Łataj w tym tygodniu
appscloud

Windows NT TCP/IP processes fragmented IP packets improperly, causing a denial of service.

10.0 CVSS
11.7% EPSS
microsoftdos 1999-01-01
CVE-1999-0107 ⚪ Do wiadomości
apps

Buffer overflow in Apache 1.2.5 and earlier allows a remote attacker to cause a denial of service with a large number of GET requests containing a large number of / characters.

5.0 CVSS
35.6% EPSS
CVE-2010-0655 🟠 Łataj w tym tygodniu
cloud

Use-after-free vulnerability in Google Chrome before 4.0.249.78 allows user-assisted remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via vectors involving the display …

9.3 CVSS
13.9% EPSS
googledos 2010-02-18
CVE-2010-0625 ⚪ Do wiadomości

Stack-based buffer overflow in NWFTPD.nlm before 5.10.01 in the FTP server in Novell NetWare 5.1 through 6.5 SP8 allows remote authenticated users to cause a denial of service (daemon crash) or possibly execute arbitrary…

6.5 CVSS
27.6% EPSS
CVE-1999-0385 🟠 Łataj w tym tygodniu
appscloud

The LDAP bind function in Exchange 5.5 has a buffer overflow that allows a remote attacker to conduct a denial of service or execute commands.

10.0 CVSS
9.0% EPSS
CVE-2022-3786 🟡 Monitoruj

A buffer overrun can be triggered in X.509 certificate verification, specifically in name constraint checking. Note that this occurs after certificate chain signature verification and requires either a CA to have signed …

7.5 CVSS
21.4% EPSS
CVE-2010-1176 🔴 Łataj teraz
os

Safari on Apple iPhone OS 3.1.3 for iPod touch allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via vectors related to an array of long strings, an array of IMG …

9.3 CVSS
12.3% EPSS
appledosexploit 2010-03-29
CVE-2010-1180 🔴 Łataj teraz
os

Safari on Apple iPhone OS 3.1.3 for iPod touch allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a long exception string in a throw statement, possibly a rela…

9.3 CVSS
12.3% EPSS
appledosexploit 2010-03-29
CVE-2010-1179 🔴 Łataj teraz
os

Safari on Apple iPhone OS 3.1.3 for iPod touch allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a large integer in the numcolors attribute of a recolorinfo e…

9.3 CVSS
10.8% EPSS
appledosexploit 2010-03-29
CVE-2010-1029 ⚪ Do wiadomości
os

Stack consumption vulnerability in the WebCore::CSSSelector function in WebKit, as used in Apple Safari 4.0.4, Apple Safari on iPhone OS and iPhone OS for iPod touch, and Google Chrome 4.0.249, allows remote attackers to…

5.0 CVSS
32.2% EPSS
appledosexploit 2010-03-19
CVE-2009-4633 🔴 Łataj teraz

vorbis_dec.c in FFmpeg 0.5 uses an assignment operator when a comparison operator was intended, which might allow remote attackers to cause a denial of service and possibly execute arbitrary code via a crafted file that …

10.0 CVSS
6.8% EPSS
CVE-2010-0001 ⚪ Do wiadomości

Integer underflow in the unlzw function in unlzw.c in gzip before 1.4 on 64-bit platforms, as used in ncompress and probably others, allows remote attackers to cause a denial of service (application crash) or possibly ex…

6.8 CVSS
22.6% EPSS
gnudos 2010-01-29
CVE-2010-0416 🟡 Monitoruj

Buffer overflow in the Unescape function in common/util/hxurl.cpp and player/hxclientkit/src/CHXClientSink.cpp in Helix Player 1.0.6 and RealPlayer allows remote attackers to cause a denial of service (application crash)…

7.5 CVSS
18.9% EPSS
CVE-2009-4635 🔴 Łataj teraz

FFmpeg 0.5 allows remote attackers to cause a denial of service and possibly execute arbitrary code via a crafted MOV container with improperly ordered tags that cause (1) mov.c and (2) utils.c to use inconsistent codec …

9.3 CVSS
9.7% EPSS
CVE-2010-0387 🟡 Monitoruj

Multiple heap-based buffer overflows in (1) webservd and (2) the admin server in Sun Java System Web Server 7.0 Update 7 allow remote attackers to cause a denial of service (daemon crash) and possibly have unspecified ot…

7.5 CVSS
18.7% EPSS
CVE-2009-4247 🟠 Łataj w tym tygodniu

Stack-based buffer overflow in protocol/rtsp/rtspclnt.cpp in RealNetworks RealPlayer 10; RealPlayer 10.5 6.0.12.1040 through 6.0.12.1741; RealPlayer 11 11.0.x; RealPlayer SP 1.0.0 and 1.0.1; RealPlayer Enterprise; Mac Re…

9.3 CVSS
9.6% EPSS
CVE-2009-4634 🔴 Łataj teraz

Multiple integer underflows in FFmpeg 0.5 allow remote attackers to cause a denial of service and possibly execute arbitrary code via a crafted file that (1) bypasses a validation check in vorbis_dec.c and triggers a wra…

10.0 CVSS
6.0% EPSS
ffmpegdosexploit 2010-02-10
CVE-2010-0408 ⚪ Do wiadomości
apps

The ap_proxy_ajp_request function in mod_proxy_ajp.c in mod_proxy_ajp in the Apache HTTP Server 2.2.x before 2.2.15 does not properly handle certain situations in which a client sends no request body, which allows remote…

5.0 CVSS
30.7% EPSS
apachedos 2010-03-05
CVE-2010-0046 🟠 Łataj w tym tygodniu
os

The Cascading Style Sheets (CSS) implementation in WebKit in Apple Safari before 4.0.5 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via crafted …

9.3 CVSS
9.0% EPSS
appledos 2010-03-15
CVE-2010-1177 🔴 Łataj teraz
os

Safari on Apple iPhone OS 3.1.3 for iPod touch allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via vectors involving document.write calls with long crafted stri…

9.3 CVSS
8.7% EPSS
appledosexploit 2010-03-29
CVE-2010-0160 🟠 Łataj w tym tygodniu

The Web Worker functionality in Mozilla Firefox 3.0.x before 3.0.18 and 3.5.x before 3.5.8, and SeaMonkey before 2.0.3, does not properly handle array data types for posted messages, which allows remote attackers to caus…

10.0 CVSS
5.2% EPSS
mozillados 2010-02-22
CVE-1999-1199 🟠 Łataj w tym tygodniu
apps

Apache WWW server 1.3.1 and earlier allows remote attackers to cause a denial of service (resource exhaustion) via a large number of MIME headers with the same name, aka the "sioux" vulnerability.

10.0 CVSS
5.1% EPSS
apachedos 1998-08-07
CVE-2010-0052 🟠 Łataj w tym tygodniu
os

Use-after-free vulnerability in WebKit in Apple Safari before 4.0.5 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via vectors related to "callbacks for HTML elements."

9.3 CVSS
8.5% EPSS
appledos 2010-03-15
CVE-2010-0054 🟠 Łataj w tym tygodniu
os

Use-after-free vulnerability in WebKit in Apple Safari before 4.0.5 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via vectors involving HTML IMG elements.

9.3 CVSS
8.5% EPSS
appledos 2010-03-15
CVE-1999-1046 🔴 Łataj teraz

Buffer overflow in IMonitor in IMail 5.0 allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long string to port 8181.

10.0 CVSS
4.6% EPSS
CVE-1999-1581 ⚪ Do wiadomości
appscloud

Memory leak in Simple Network Management Protocol (SNMP) agent (snmp.exe) for Windows NT 4.0 before Service Pack 4 allows remote attackers to cause a denial of service (memory consumption) via a large number of SNMP pack…

5.0 CVSS
29.4% EPSS
microsoftdos 1997-12-23
CVE-2010-0047 🟠 Łataj w tym tygodniu
os

Use-after-free vulnerability in WebKit in Apple Safari before 4.0.5 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via vectors related to "HTML object element fallback …

8.8 CVSS
10.3% EPSS
appledos 2010-03-15
CVE-2006-4182 🟡 Monitoruj

Integer overflow in ClamAV 0.88.1 and 0.88.4, and other versions before 0.88.5, allows remote attackers to cause a denial of service (scanning service crash) and execute arbitrary code via a crafted Portable Executable (…

7.5 CVSS
16.6% EPSS
CVE-2010-0173 🟠 Łataj w tym tygodniu

Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 3.5.9 and 3.6.x before 3.6.2, Thunderbird before 3.0.4, and SeaMonkey before 2.0.4 allow remote attackers to cause a denial of service …

9.3 CVSS
7.6% EPSS
mozillados 2010-04-05
CVE-2010-0164 🔴 Łataj teraz

Use-after-free vulnerability in the imgContainer::InternalAddFrameHelper function in src/imgContainer.cpp in libpr0n in Mozilla Firefox 3.6 before 3.6.2 allows remote attackers to cause a denial of service (heap memory c…

9.3 CVSS
7.5% EPSS
mozilladosexploit 2010-03-25
CVE-2009-4245 🟠 Łataj w tym tygodniu

Heap-based buffer overflow in RealNetworks RealPlayer 10, RealPlayer 10.5 6.0.12.1040 through 6.0.12.1741, RealPlayer 11 11.0.0 through 11.0.4, RealPlayer Enterprise, Mac RealPlayer 10 and 10.1, Linux RealPlayer 10, and …

9.3 CVSS
7.4% EPSS
CVE-2009-4248 🟠 Łataj w tym tygodniu

Buffer overflow in the RTSPProtocol::HandleSetParameterRequest function in client/core/rtspprotocol.cpp in RealNetworks RealPlayer 10, RealPlayer 10.5 6.0.12.1040 through 6.0.12.1741, RealPlayer 11 11.0.0 through 11.0.4,…

9.3 CVSS
7.4% EPSS
CVE-2010-0174 🟠 Łataj w tym tygodniu

Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 3.0.19, 3.5.x before 3.5.9, and 3.6.x before 3.6.2; Thunderbird before 3.0.4; and SeaMonkey before 2.0.4 allow remote attackers to caus…

10.0 CVSS
3.5% EPSS
mozillados 2010-04-05
CVE-2010-0175 🟠 Łataj w tym tygodniu

Use-after-free vulnerability in the nsTreeSelection implementation in Mozilla Firefox before 3.0.19 and 3.5.x before 3.5.9, Thunderbird before 3.0.4, and SeaMonkey before 2.0.4 allows remote attackers to execute arbitrar…

9.3 CVSS
6.7% EPSS
mozillados 2010-04-05
CVE-2010-0177 🟠 Łataj w tym tygodniu

Mozilla Firefox before 3.0.19, 3.5.x before 3.5.9, and 3.6.x before 3.6.2, and SeaMonkey before 2.0.4, frees the contents of the window.navigator.plugins array while a reference to an array element is still active, which…

9.3 CVSS
6.7% EPSS
mozillados 2010-04-05
CVE-2006-5552 🟡 Monitoruj

Multiple heap-based buffer overflows in RevilloC MailServer 1.21 and earlier allow remote attackers to cause a denial of service (CPU consumption or application crash) or execute arbitrary code via a long argument to the…

7.5 CVSS
15.6% EPSS
CVE-2010-0159 🟠 Łataj w tym tygodniu
os

The browser engine in Mozilla Firefox 3.0.x before 3.0.18 and 3.5.x before 3.5.8, Thunderbird before 3.0.2, and SeaMonkey before 2.0.3 allows remote attackers to cause a denial of service (memory corruption and applicati…

10.0 CVSS
2.5% EPSS
canonicaldos 2010-02-22
CVE-2010-0053 🟠 Łataj w tym tygodniu
os

Use-after-free vulnerability in WebKit in Apple Safari before 4.0.5 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via vectors related to the run-in Cascading Style She…

9.3 CVSS
5.6% EPSS
appledos 2010-03-15
CVE-2006-5177 🟠 Łataj w tym tygodniu

The NTLM authentication in MailEnable Professional 2.0 and Enterprise 2.0 allows remote attackers to (1) execute arbitrary code via unspecified vectors involving crafted base64 encoded NTLM Type 3 messages, or (2) cause …

9.3 CVSS
5.4% EPSS
mailenabledos 2006-10-10
CVE-2010-0048 🟡 Monitoruj
os

Use-after-free vulnerability in WebKit in Apple Safari before 4.0.5 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted XML document.

8.8 CVSS
7.9% EPSS
appledos 2010-03-15
CVE-1999-0288 ⚪ Do wiadomości
appscloud

The WINS server in Microsoft Windows NT 4.0 before SP4 allows remote attackers to cause a denial of service (process termination) via invalid UDP frames to port 137 (NETBIOS Name Service), as demonstrated via a flood of …

5.0 CVSS
26.6% EPSS
microsoftdos 1998-08-01
CVE-2006-5295 ⚪ Do wiadomości

Unspecified vulnerability in ClamAV before 0.88.5 allows remote attackers to cause a denial of service (scanning service crash) via a crafted Compressed HTML Help (CHM) file that causes ClamAV to "read an invalid memory …

5.0 CVSS
26.6% EPSS
clam_anti-virusdos 2006-10-16
CVE-2010-1127 ⚪ Do wiadomości
appscloud

Microsoft Internet Explorer 6 and 7 does not initialize certain data structures during execution of the createElement method, which allows remote attackers to cause a denial of service (NULL pointer dereference and appli…

5.0 CVSS
26.6% EPSS
microsoftdosexploit 2010-03-26
CVE-2006-4811 ⚪ Do wiadomości

Integer overflow in Qt 3.3 before 3.3.7, 4.1 before 4.1.5, and 4.2 before 4.2.1, as used in the KDE khtml library, kdelibs 3.1.3, and possibly other packages, allows remote attackers to cause a denial of service (crash) …

6.8 CVSS
17.4% EPSS
qtdos 2006-10-18
CVE-1999-0919 🔴 Łataj teraz

A memory leak in a Motorola CableRouter allows remote attackers to conduct a denial of service via a large number of telnet connections.

10.0 CVSS
1.2% EPSS
motoroladosexploit 1998-05-10
CVE-2010-1122 🟠 Łataj w tym tygodniu

Unspecified vulnerability in Mozilla Firefox 3.5.x through 3.5.8 allows remote attackers to cause a denial of service (memory corruption and application crash) and possibly have unknown other impact via vectors that migh…

10.0 CVSS
0.9% EPSS
mozillados 2010-03-25
CVE-1999-0513 ⚪ Do wiadomości
os

ICMP messages to broadcast addresses are allowed, allowing for a Smurf attack that can cause a denial of service.

5.0 CVSS
25.6% EPSS
freebsddos 1998-01-05
CVE-1999-0250 🟠 Łataj w tym tygodniu

Denial of service in Qmail through long SMTP commands.

10.0 CVSS
0.6% EPSS
dan_bernsteindos 1997-07-01
CVE-1999-1138 🟠 Łataj w tym tygodniu

SCO UNIX System V/386 Release 3.2, and other SCO products, installs the home directories (1) /tmp for the dos user, and (2) /usr/tmp for the asg user, which allows other users to gain access to those accounts since /tmp …

10.0 CVSS
0.5% EPSS
scodos 1993-09-17
CVE-1999-0214 🟠 Łataj w tym tygodniu

Denial of service by sending forged ICMP unreachable packets.

10.0 CVSS
0.5% EPSS
sundos 1992-07-21
CVE-1999-0213 🟠 Łataj w tym tygodniu

libnsl in Solaris allowed an attacker to perform a denial of service of rpcbind.

10.0 CVSS
0.5% EPSS
sundos 1998-07-15
CVE-1999-0698 🟠 Łataj w tym tygodniu

Denial of service in IP protocol logger (ippl) on Red Hat and Debian Linux.

10.0 CVSS
0.5% EPSS
dos 1999-01-01
CVE-1999-0220 🟠 Łataj w tym tygodniu

Attackers can do a denial of service of IRC by crashing the server.

10.0 CVSS
0.5% EPSS
dos 1999-01-01
CVE-2023-5241 🟠 Łataj w tym tygodniu

The AI ChatBot for WordPress is vulnerable to Directory Traversal in versions up to, and including, 4.8.9 as well as 4.9.2 via the qcld_openai_upload_pagetraining_file function. This allows subscriber-level attackers to …

9.6 CVSS
2.5% EPSS
CVE-2010-0658 🟠 Łataj w tym tygodniu
cloud

Multiple integer overflows in Skia, as used in Google Chrome before 4.0.249.78, allow remote attackers to execute arbitrary code in the Chrome sandbox or cause a denial of service (memory corruption and application crash…

9.3 CVSS
3.9% EPSS
googledos 2010-02-18
CVE-2009-4653 🔴 Łataj teraz
appscloud

Stack-based buffer overflow in the dhost module in Novell eDirectory 8.8 SP5 for Windows allows remote authenticated users to cause a denial of service (dhost.exe crash) and possibly execute arbitrary code via a long str…

9.0 CVSS
5.1% EPSS
CVE-2009-4631 🔴 Łataj teraz

Off-by-one error in the VP3 decoder (vp3.c) in FFmpeg 0.5 allows remote attackers to cause a denial of service and possibly execute arbitrary code via a crafted VP3 file that triggers an out-of-bounds read and possibly m…

9.3 CVSS
3.6% EPSS
ffmpegdosexploit 2010-02-10
CVE-2026-33054 🔴 Łataj teraz

Mesop is a Python-based UI framework that allows users to build web applications. Versions 1.2.2 and below contain a Path Traversal vulnerability that allows any user supplying an untrusted state_token through the UI str…

10.0 CVSS
0.0% EPSS
CVE-2010-0165 🟠 Łataj w tym tygodniu

The TraceRecorder::traverseScopeChain function in js/src/jstracer.cpp in the browser engine in Mozilla Firefox 3.6 before 3.6.2 allows remote attackers to cause a denial of service (memory corruption and application cras…

9.3 CVSS
3.5% EPSS
mozillados 2010-03-25
CVE-2026-31027 🔴 Łataj teraz

TOTOlink A3600R v5.9c.4959 contains a buffer overflow vulnerability in the setAppEasyWizardConfig interface of /lib/cste_modules/app.so. The vulnerability occurs because the rootSsid parameter is not properly validated f…

9.8 CVSS
0.8% EPSS
CVE-2026-20147 🟠 Łataj w tym tygodniu

A vulnerability in Cisco ISE and Cisco ISE-PIC could allow an authenticated, remote attacker to execute arbitrary commands on the underlying operating system of an affected device. To exploit this vulnerability, the atta…

9.9 CVSS
0.2% EPSS
dos 2026-04-15
CVE-2026-20186 🟠 Łataj w tym tygodniu

A vulnerability in Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker to execute arbitrary commands on the underlying operating system of an affected device. To exploit this vulnerability,…

9.9 CVSS
0.2% EPSS
dos 2026-04-15
CVE-2026-20180 🟠 Łataj w tym tygodniu

A vulnerability in Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker to execute arbitrary commands on the underlying operating system of an affected device. To exploit this vulnerability,…

9.9 CVSS
0.2% EPSS
dos 2026-04-15
CVE-2010-0529 🟠 Łataj w tym tygodniu
os

Heap-based buffer overflow in QuickTime.qts in Apple QuickTime before 7.6.6 on Windows allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a PICT image with a BkPixPat o…

9.3 CVSS
3.1% EPSS
CVE-2006-5647 ⚪ Do wiadomości

Sophos Anti-Virus and Endpoint Security before 6.0.5, Anti-Virus for Linux before 5.0.10, and other platforms before 4.11 allows remote attackers to cause a denial of service (memory corruption) and possibly execute arbi…

6.4 CVSS
17.6% EPSS
sophosdos 2006-11-01
CVE-2026-33945 🟠 Łataj w tym tygodniu

Incus is a system container and virtual machine manager. Incus instances have an option to provide credentials to systemd in the guest. For containers, this is handled through a shared directory. Prior to version 6.23.0,…

9.9 CVSS
0.1% EPSS
CVE-2017-20224 🔴 Łataj teraz

Telesquare SKT LTE Router SDT-CS3B1 version 1.2.0 contains an arbitrary file upload vulnerability that allows unauthenticated attackers to upload malicious content by exploiting enabled WebDAV HTTP methods. Attackers can…

9.8 CVSS
0.3% EPSS
CVE-2026-25823 🟠 Łataj w tym tygodniu

HMS Networks Ewon Flexy with firmware before 15.0s4, Cosy+ with firmware 22.xx before 22.1s6, and Cosy+ with firmware 23.xx before 23.0s3 have a stack buffer overflow that leads to a Denial of Service, which can also be …

9.8 CVSS
0.3% EPSS
CVE-2026-0545 🔴 Łataj teraz

In mlflow/mlflow, the FastAPI job endpoints under `/ajax-api/3.0/jobs/*` are not protected by authentication or authorization when the `basic-auth` app is enabled. This vulnerability affects the latest version of the rep…

9.8 CVSS
0.3% EPSS
CVE-2018-25223 🟠 Łataj w tym tygodniu

Crashmail 1.6 contains a stack-based buffer overflow vulnerability that allows remote attackers to execute arbitrary code by sending malicious input to the application. Attackers can craft payloads with ROP chains to ach…

9.8 CVSS
0.2% EPSS
buffer-overflowdos 2026-03-28
CVE-2026-0558 🔴 Łataj teraz

A vulnerability in parisneo/lollms, up to and including version 2.2.0, allows unauthenticated users to upload and process files through the `/api/files/extract-text` endpoint. This endpoint does not enforce authenticatio…

9.8 CVSS
0.1% EPSS
lollmsdosexploit 2026-03-29
CVE-2024-47613 🟠 Łataj w tym tygodniu

GStreamer is a library for constructing graphs of media-handling components. A null pointer dereference vulnerability has been identified in `gst_gdk_pixbuf_dec_flush` within `gstgdkpixbufdec.c`. This function invokes `m…

9.8 CVSS
0.1% EPSS
gstreamerdos 2024-12-12
CVE-2018-25237 🟠 Łataj w tym tygodniu

Hirschmann HiSecOS devices versions prior to 05.3.03 contain a buffer overflow vulnerability in the HTTPS login interface when RADIUS authentication is enabled that allows remote attackers to crash the device or execute …

9.8 CVSS
0.1% EPSS
CVE-2006-5445 🟡 Monitoruj

Unspecified vulnerability in the SIP channel driver (channels/chan_sip.c) in Asterisk 1.2.x before 1.2.13 and 1.4.x before 1.4.0-beta3 allows remote attackers to cause a denial of service (resource consumption) via unspe…

7.8 CVSS
10.0% EPSS
digiumdos 2006-10-23
CVE-2026-29649 🟠 Łataj w tym tygodniu

NEMU contains an implementation flaw in its RISC-V Hypervisor CSR handling where henvcfg[7:4] (CBIE/CBCFE/CBZE-related fields) is incorrectly masked/updated based on menvcfg[7:4], so a machine-mode write to menvcfg can i…

9.8 CVSS
0.0% EPSS
xiangshandos 2026-04-20
CVE-2010-0528 🟠 Łataj w tym tygodniu
os

Apple QuickTime before 7.6.6 on Windows allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via crafted color tables in a movie file, related to malfor…

9.3 CVSS
2.4% EPSS
appledos 2010-03-31
CVE-1999-0349 🟡 Monitoruj
appscloud

A buffer overflow in the FTP list (ls) command in IIS allows remote attackers to conduct a denial of service and, in some cases, execute arbitrary commands.

7.5 CVSS
11.2% EPSS
CVE-2010-0536 🟠 Łataj w tym tygodniu
os

Apple QuickTime before 7.6.6 on Windows allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted BMP image.

9.3 CVSS
2.1% EPSS
appledos 2010-03-31
CVE-2010-0527 🟠 Łataj w tym tygodniu
os

Integer overflow in Apple QuickTime before 7.6.6 on Windows allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted PICT image.

9.3 CVSS
2.0% EPSS
appledos 2010-03-31
CVE-2010-0168 🟡 Monitoruj

The nsDocument::MaybePreLoadImage function in content/base/src/nsDocument.cpp in the image-preloading implementation in Mozilla Firefox 3.6 before 3.6.2 does not apply scheme restrictions and policy restrictions to the i…

7.6 CVSS
9.9% EPSS
mozillados 2010-03-25
CVE-2025-49796 🟠 Łataj w tym tygodniu

A vulnerability was found in libxml2. Processing certain sch:name elements from the input XML file can trigger a memory corruption issue. This flaw allows an attacker to craft a malicious XML input file that can lead lib…

9.1 CVSS
1.8% EPSS
dos 2025-06-16
CVE-2006-5464 ⚪ Do wiadomości

Multiple unspecified vulnerabilities in the layout engine in Mozilla Firefox before 1.5.0.8, Thunderbird before 1.5.0.8, and SeaMonkey before 1.0.6 allow remote attackers to cause a denial of service (crash) via unspecif…

5.0 CVSS
22.1% EPSS
mozillados 2006-11-08
CVE-2010-0649 🟠 Łataj w tym tygodniu
cloud

Integer overflow in the CrossCallParamsEx::CreateFromBuffer function in sandbox/src/crosscall_server.cc in Google Chrome before 4.0.249.89 allows attackers to leverage renderer access to cause a denial of service (heap m…

9.3 CVSS
0.5% EPSS
googledos 2010-02-18
CVE-2006-5403 ⚪ Do wiadomości

Stack-based buffer overflow in an ActiveX control used in Symantec Automated Support Assistant, as used in Norton AntiVirus, Internet Security, and System Works 2005 and 2006, allows user-assisted remote attackers to cau…

5.1 CVSS
21.4% EPSS
CVE-2006-5826 ⚪ Do wiadomości

Buffer overflow in Texas Imperial Software WFTPD Pro Server 3.23.1.1 allows remote authenticated users to execute arbitrary code or cause a denial of service (application crash) via crafted APPE commands that contain "/"…

5.8 CVSS
17.4% EPSS
CVE-2010-0553 ⚪ Do wiadomości

Geo++ GNCASTER 1.4.0.7 and earlier allows remote authenticated users to cause a denial of service (application crash) and possibly execute arbitrary code via a long NMEA data sentence.

6.5 CVSS
13.5% EPSS
geoppdosexploit 2010-02-04
CVE-2020-28466 🟡 Monitoruj

This affects all versions of package github.com/nats-io/nats-server/server. Untrusted accounts are able to crash the server using configs that represent a service export/import cycles. Disclaimer from the maintainers: Ru…

7.5 CVSS
8.4% EPSS
linuxfoundationdos 2021-03-07
CVE-2026-33689 🟠 Łataj w tym tygodniu

xrdp is an open source RDP server. Versions through 0.10.5 have an out-of-bounds read vulnerability in the pre-authentication RDP message parsing logic. A remote, unauthenticated attacker can trigger this flaw by sending…

9.1 CVSS
0.2% EPSS
neutrinolabsdos 2026-04-17
CVE-2026-33516 🟠 Łataj w tym tygodniu

xrdp is an open source RDP server. Versions through 0.10.5 contain an out-of-bounds read vulnerability during the RDP capability exchange phase. The issue occurs when memory is accessed before validating the remaining bu…

9.1 CVSS
0.2% EPSS
neutrinolabsdos 2026-04-17
CVE-2026-31886 🔴 Łataj teraz

Dagu is a workflow engine with a built-in Web user interface. Prior to 2.2.4, the dagRunId request field accepted by the inline DAG execution endpoints is passed directly into filepath.Join to construct a temporary direc…

9.1 CVSS
0.1% EPSS
dagudosexploit 2026-03-13
CVE-2025-69808 🟠 Łataj w tym tygodniu

An out-of-bounds memory access (OOB) in p2r3 Bareiron commit 8e4d40 allows unauthenticated attackers to access sensitive information and cause a Denial of Service (DoS) via supplying a crafted packet.

9.1 CVSS
0.1% EPSS
p2r3dos 2026-03-16
CVE-2024-47775 🟠 Łataj w tym tygodniu

GStreamer is a library for constructing graphs of media-handling components. An OOB-read vulnerability has been found in the parse_ds64 function within gstwavparse.c. The parse_ds64 function does not check that the buffe…

9.1 CVSS
0.1% EPSS
gstreamerdos 2024-12-12
CVE-2024-47776 🟠 Łataj w tym tygodniu

GStreamer is a library for constructing graphs of media-handling components. An OOB-read has been discovered in gst_wavparse_cue_chunk within gstwavparse.c. The vulnerability happens due to a discrepancy between the size…

9.1 CVSS
0.1% EPSS
gstreamerdos 2024-12-12
CVE-2006-5196 🟡 Monitoruj

The HTTP interface in the Motorola SURFboard SB4200 Cable Modem allows remote attackers to cause a denial of service (device crash) via a request with MfcISAPICommand set to SecretProc and a long string in the Secret par…

7.8 CVSS
6.5% EPSS
motoroladosexploit 2006-10-10