Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
HIGH 10.0
CVE-2010-1663EPSS 54%
The Google URL Parsing Library (aka google-url or GURL) in Google Chrome before 4.1.249.1064 allows remote attackers to bypass the Same Origin Policy…
Chrome
after 4.1.249.1063
HIGH 7.2
CVE-2009-4832
The dlpcrypt.sys kernel driver 0.1.1.27 in DESlock+ 4.0.2 allows local users to gain privileges via a crafted IOCTL 0x80012010 request to the DLPCryp…
Deslock\+
No fix yet
MEDIUM 5.0
CVE-2010-1429EPSS 54%
Red Hat JBoss Enterprise Application Platform (aka JBoss EAP or JBEAP) 4.2 before 4.2.0.CP09 and 4.3 before 4.3.0.CP08 allows remote attackers to obt…
Jboss Enterprise Application Platform
after 4.3.0
MEDIUM 5.0
CVE-2009-4825
8pixel.net Blog 4 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a datab…
Simple Blog
No fix yet
MEDIUM 5.0
CVE-2009-4820
Angelo-Emlak 1.0 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a databa…
Angelo Emlak
No fix yet
HIGH 10.0
CVE-2010-1505
Google Chrome before 4.1.249.1059 does not prevent pages from loading with the New Tab page's privileges, which has unknown impact and attack vectors.
Chrome
after 4.1.249.1058
MEDIUM 5.0
CVE-2009-4799
Diskos CMS 6.x stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database…
Diskos Cms
No fix yet
HIGH 9.0
CVE-2010-0593
The Cisco RVS4000 4-port Gigabit Security Router before 1.3.2.0, PVC2300 Business Internet Video Camera before 1.1.2.6, WVC200 Wireless-G PTZ Interne…
Pvc2300
after 1.3.1.0
MEDIUM 6.4
CVE-2010-0812EPSS 17%
Microsoft Windows XP SP2 and SP3, Server 2003 SP2, Vista Gold, SP1, and SP2, and Server 2008 Gold and SP2 allow remote attackers to bypass intended I…
Windows Xp
Mitigation only
MEDIUM 5.0
CVE-2009-4765
CNR Hikaye Portal 2.0 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a d…
Hikaye Portal
No fix yet
MEDIUM 5.0
CVE-2009-4766
YP Portal MS-Pro Surumu (aka MS-Pro Portal Scripti) 1.0 and 1.2 stores sensitive information under the web root with insufficient access control, whi…
Ms Pro Portal Scripti
No fix yet
MEDIUM 6.9
CVE-2010-1140
The USB service in VMware Workstation 7.0 before 7.0.1 build 227600 and VMware Player 3.0 before 3.0.1 build 227600 on Windows might allow host OS us…
Workstation
Patch available
HIGH 8.5
CVE-2010-1141
VMware Tools in VMware Workstation 6.5.x before 6.5.4 build 246459; VMware Player 2.5.x before 2.5.4 build 246459; VMware ACE 2.5.x before 2.5.4 buil…
Workstation
Patch available
HIGH 8.5
CVE-2010-1142
VMware Tools in VMware Workstation 6.5.x before 6.5.4 build 246459; VMware Player 2.5.x before 2.5.4 build 246459; VMware ACE 2.5.x before 2.5.4 buil…
Workstation
Patch available
MEDIUM 6.9
CVE-2010-1146
The Linux kernel 2.6.33.2 and earlier, when a ReiserFS filesystem exists, does not restrict read or write access to the .reiserfs_priv directory, whi…
Linux Kernel
after 2.6.33.2
HIGH 7.2
CVE-2010-1347
Director Agent 6.1 before 6.1.2.3 in IBM Systems Director on AIX and Linux uses incorrect permissions for the (1) diruninstall and (2) opt/ibm/direct…
Director Agent
Mitigation only
MEDIUM 6.8
CVE-2009-2822
AirPort Utility before 5.5.1 for Apple AirPort Base Station does not properly distribute MAC address ACLs to network extenders, which allows remote a…
Airport Utility
after 5.4.2
MEDIUM 6.9
CVE-2008-3279
Untrusted search path vulnerability in libbrlttybba.so in brltty 3.7.2 allows local users to gain privileges via a crafted library, related to an inc…
Brltty
Mitigation only
MEDIUM 5.0
CVE-2010-1238
MoinMoin 1.7.1 allows remote attackers to bypass the textcha protection mechanism by modifying the textcha-question and textcha-answer fields to have…
Moinmoin
Mitigation only
HIGH 9.3
CVE-2010-1240EPSS 74%
Adobe Reader and Acrobat 9.x before 9.3.3, and 8.x before 8.2.3 on Windows and Mac OS X, do not restrict the contents of one text field in the Launch…
Acrobat Reader
No fix yet
HIGH 7.5
CVE-2000-1245
Multiple unspecified vulnerabilities in NWFTPD.nlm before 5.01o in the FTP server in Novell NetWare 5.1 SP3 allow remote attackers to bypass intended…
Netware Ftp Server
after 5.01i
HIGH 7.5
CVE-2003-1593
NWFTPD.nlm in the FTP server in Novell NetWare 6.0 before SP4 and 6.5 before SP1 does not enforce domain-name login restrictions, which allows remote…
Netware Ftp Server
Mitigation only
HIGH 7.5
CVE-2003-1594
NWFTPD.nlm before 5.04.05 in the FTP server in Novell NetWare 6.5 does not properly enforce FTPREST.TXT settings, which allows remote attackers to by…
Netware Ftp Server
Mitigation only
HIGH 10.0
CVE-2003-1595
NWFTPD.nlm before 5.04.05 in the FTP server in Novell NetWare 6.5 does not properly perform "intruder detection," which has unspecified impact and at…
Netware Ftp Server
No fix yet
HIGH 7.5
CVE-2003-1596
NWFTPD.nlm before 5.03.12 in the FTP server in Novell NetWare does not properly restrict filesystem use by anonymous users with NFS Gateway home dire…
Netware Ftp Server
after 5.03b
HIGH 7.5
CVE-2007-6735
NWFTPD.nlm before 5.08.06 in the FTP server in Novell NetWare does not properly handle partial matches for container names in the FTPREST.TXT file, w…
Netware Ftp Server
Mitigation only
HIGH 9.3
CVE-2010-1225EPSS 28%
The memory-management implementation in the Virtual Machine Monitor (aka VMM or hypervisor) in Microsoft Virtual PC 2007 Gold and SP1, Virtual Server…
Virtual Pc
No fix yet
HIGH 9.0
CVE-2010-0522
Server Admin in Apple Mac OS X Server 10.5.8 does not properly determine the privileges of users who had former membership in the admin group, which …
Mac Os X Server
Patch available
HIGH 7.5
CVE-2010-0524
The default configuration of the FreeRADIUS server in Apple Mac OS X Server before 10.6.3 permits EAP-TLS authenticated connections on the basis of a…
Mac Os X
Mitigation only
MEDIUM 6.5
CVE-2010-0535
Dovecot in Apple Mac OS X 10.6 before 10.6.3, when Kerberos is enabled, does not properly enforce the service access control list (SACL) for sending …
Mac Os X
Mitigation only