Vulnerability index

Browse CVEs

3,672 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Command InjectionCWE-77 × clear
HIGH 7.5 CVE-2014-8517EPSS 69% The fetch_url function in usr.bin/ftp/fetch.c in tnftp, as used in NetBSD 5.1 through 5.1.4, 5.2 through 5.2.2, 6.0 through 6.0.6, and 6.1 through 6.… Mac Os X Patch available Fix from $1,9502014-11-17 HIGH 9.3 CVE-2014-3524EPSS 15% Apache OpenOffice before 4.1.1 allows remote attackers to execute arbitrary commands and possibly have other unspecified impact via a crafted Calc sp… Openoffice 4.1.1 / 4.2.6+ Fix from $1,9502014-08-26 MEDIUM 5.8 CVE-2014-4336 The generate_local_queue function in utils/cups-browsed.c in cups-browsed in cups-filters before 1.0.53 allows remote IPP printers to execute arbitra… Cups Filters after 1.0.52 Fix from $1,6002014-06-22 HIGH 7.5 CVE-2014-0773 The BWOCXRUN.BwocxrunCtrl.1 control contains a method named “CreateProcess.” This method contains validation to ensure an attacker cannot run arbit… Advantech Webaccess after 7.1 Fix from $1,9502014-04-12 MEDIUM 5.1 CVE-2012-4086 A setup script for fabric interconnect devices in Cisco Unified Computing System (UCS) allows remote attackers to execute arbitrary commands via inva… Unified Computing System Mitigation only Fix from $1,6002013-09-25 CRITICAL 9.8 CVE-2012-1823 KEVEPSS 100% sapi/cgi/cgi_main.c in PHP before 5.3.12 and 5.4.x before 5.4.2, when configured as a CGI script (aka php-cgi), does not properly handle query string… PHP 5.3.12 / 5.4.2+ Fix from $2,3002012-05-11 HIGH 7.8 CVE-2010-4345 KEVEPSS 18% Exim 4.72 and earlier allows local users to gain privileges by leveraging the ability of the exim user account to specify an alternate configuration … Debian Linux after 4.72 Fix from $1,9502010-12-14 HIGH 9.3 CVE-2010-0136EPSS 8% OpenOffice.org (OOo) 2.0.4, 2.4.1, and 3.1.1 does not properly enforce Visual Basic for Applications (VBA) macro security settings, which allows remo… Openoffice Mitigation only Fix from $1,9502010-02-16 CRITICAL 9.8 CVE-2007-3010 KEVEPSS 97% masterCGI in the Unified Maintenance Tool in Alcatel OmniPCX Enterprise Communication Server R7.1 and earlier allows remote attackers to execute arbi… Omnipcx Enterprise Communication Server after 7.1 Fix from $2,3002007-09-18 CRITICAL 9.8 CVE-2005-2773 KEVEPSS 74% HP OpenView Network Node Manager 6.2 through 7.50 allows remote attackers to execute arbitrary commands via shell metacharacters in the (1) node para… Openview Network Node Manager after 7.50 Fix from $2,3002005-09-02 HIGH 7.5 CVE-2005-2793 PHP remote file inclusion vulnerability in welcome.php in phpLDAPadmin 0.9.6 and 0.9.7 allows remote attackers to execute arbitrary PHP code via the … Phpldapadmin No fix yet Fix from $1,9502005-09-02 HIGH 7.3 CVE-1999-0039EPSS 16% webdist CGI program (webdist.cgi) in SGI IRIX allows remote attackers to execute arbitrary commands via shell metacharacters in the distloc parameter. Irix Mitigation only Fix from $1,9501997-05-06