Vulnerability index

Browse CVEs

6,062 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Code InjectionCWE-94 × clear
Office Powerpoint HIGH 9.3
CVE-2009-0202EPSS 24%

Array index error in FL21WIN.DLL in the PowerPoint Freelance Windows 2.1 Translator in Microsoft PowerPoint 2000 and 2002 allows remote attackers to …

Mitigation only
Fix from $1,950 2009-06-11
Office HIGH 9.3
CVE-2009-0549EPSS 28%

Excel in Microsoft Office 2000 SP3, Office XP SP3, Office 2003 SP3, and Office 2004 and 2008 for Mac; Open XML File Format Converter for Mac; and Mic…

Mitigation only
Fix from $1,950 2009-06-10
Office HIGH 7.8
CVE-2009-0557 KEVEPSS 59%

Excel in Microsoft Office 2000 SP3, Office XP SP3, Office 2003 SP3, and Office 2004 and 2008 for Mac; Excel in 2007 Microsoft Office System SP1 and S…

Patch available
Fix from $1,950 2009-06-10
Office HIGH 9.3
CVE-2009-0558EPSS 31%

Array index error in Excel in Microsoft Office 2000 SP3 and Office 2004 and 2008 for Mac, and Open XML File Format Converter for Mac, allows remote a…

Mitigation only
Fix from $1,950 2009-06-10
Office HIGH 9.3
CVE-2009-0559EPSS 29%

Stack-based buffer overflow in Excel in Microsoft Office 2000 SP3 and Office XP SP3 allows remote attackers to execute arbitrary code via a crafted E…

Mitigation only
Fix from $1,950 2009-06-10
Office HIGH 9.3
CVE-2009-1134EPSS 36%

Excel in 2007 Microsoft Office System SP1 and SP2; Microsoft Office Excel Viewer; and Microsoft Office Compatibility Pack for Word, Excel, and PowerP…

Mitigation only
Fix from $1,950 2009-06-10
Safari HIGH 9.3
CVE-2009-1698EPSS 8%

WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, and iPhone OS for iPod touch 1.1 through 2.2.1 does not initialize a pointer during h…

Fix: after 3.2.2
Fix from $1,950 2009-06-10
Safari HIGH 9.3
CVE-2009-1704

CFNetwork in Apple Safari before 4.0 misinterprets downloaded image files as local HTML documents in unspecified circumstances, which allows remote a…

Fix: after 4.0_beta
Fix from $1,950 2009-06-10
Safari HIGH 9.3
CVE-2009-1712EPSS 8%

WebKit in Apple Safari before 4.0 does not prevent remote loading of local Java applets, which allows remote attackers to execute arbitrary code, gai…

Fix: after 4.0_beta
Fix from $1,950 2009-06-10
Dokuwiki HIGH 9.3
CVE-2009-1960EPSS 23%

inc/init.php in DokuWiki 2009-02-14, rc2009-02-06, and rc2009-01-30, when register_globals is enabled, allows remote attackers to include and execute…

Patch available
Fix from $1,950 2009-06-08
Adaptbb MEDIUM 6.8
CVE-2009-1946

PHP remote file inclusion vulnerability in latestposts.php in AdaptBB 1.0, when register_globals is enabled, allows remote attackers to execute arbit…

No fix yet
Fix from $1,600 2009-06-05
Com Artforms HIGH 7.5
CVE-2009-1822

Multiple PHP remote file inclusion vulnerabilities in the InterJoomla ArtForms (com_artforms) component 2.1b7 for Joomla! allow remote attackers to e…

No fix yet
Fix from $1,950 2009-05-29
Bitweaver MEDIUM 6.5
CVE-2009-1677

Multiple static code injection vulnerabilities in the saveFeed function in rss/feedcreator.class.php in Bitweaver 2.6 and earlier allow (1) remote au…

Fix: after 2.6
Fix from $1,600 2009-05-18
Squirrelmail MEDIUM 6.8
CVE-2009-1579

The map_yp_alias function in functions/imap_general.php in SquirrelMail before 1.4.18 and NaSMail before 1.7 allows remote attackers to execute arbit…

Fix: after 1.4.17
Fix from $1,600 2009-05-14
Safari HIGH 9.3
CVE-2009-0945EPSS 9%

Array index error in the insertItemBefore method in WebKit, as used in Apple Safari before 3.2.3 and 4 Public Beta, iPhone OS 1.0 through 2.2.1, iPho…

Fix: after 3.2.2
Fix from $1,950 2009-05-13
Mac Os X MEDIUM 6.8
CVE-2009-0145EPSS 5%

CoreGraphics in Apple Mac OS X 10.4.11 and 10.5 before 10.5.7, iPhone OS 1.0 through 2.2.1, and iPhone OS for iPod touch 1.1 through 2.2.1 allows rem…

Patch available
Fix from $1,600 2009-05-13
Mac Os X MEDIUM 6.8
CVE-2009-0160

QuickDraw Manager in Apple Mac OS X 10.4.11 and 10.5 before 10.5.7 allows remote attackers to execute arbitrary code or cause a denial of service (ap…

Patch available
Fix from $1,600 2009-05-13
Mac Os X MEDIUM 6.8
CVE-2009-0944

The Microsoft Office Spotlight Importer in Spotlight in Apple Mac OS X 10.4.11 and 10.5 before 10.5.7 does not properly validate Microsoft Office fil…

Patch available
Fix from $1,600 2009-05-13
Office Powerpoint HIGH 9.3
CVE-2009-0222EPSS 32%

Microsoft Office PowerPoint 2000 SP3, 2002 SP3, and 2003 SP3 allows remote attackers to execute arbitrary code via crafted sound data in a file that …

Mitigation only
Fix from $1,950 2009-05-12
Office Powerpoint HIGH 9.3
CVE-2009-0223EPSS 28%

Microsoft Office PowerPoint 2000 SP3, 2002 SP3, and 2003 SP3 allows remote attackers to execute arbitrary code via crafted sound data in a file that …

Mitigation only
Fix from $1,950 2009-05-12
Compatibility Pack Word Excel Powerpoint HIGH 9.3
CVE-2009-0224EPSS 30%

Microsoft Office PowerPoint 2000 SP3, 2002 SP3, 2003 SP3, and 2007 SP1 and SP2; PowerPoint Viewer 2003 and 2007 SP1 and SP2; PowerPoint in Microsoft …

Mitigation only
Fix from $1,950 2009-05-12
Office Powerpoint HIGH 9.3
CVE-2009-0225EPSS 31%

Microsoft Office PowerPoint 2002 SP3 allows remote attackers to execute arbitrary code via crafted sound data in a file that uses a PowerPoint 95 nat…

Mitigation only
Fix from $1,950 2009-05-12
Office Powerpoint HIGH 9.3
CVE-2009-1128EPSS 27%

Microsoft Office PowerPoint 2000 SP3, 2002 SP3, and 2003 SP3 allows remote attackers to execute arbitrary code via crafted sound data in a file that …

Mitigation only
Fix from $1,950 2009-05-12
Osprey HIGH 7.5
CVE-2008-6807

PHP remote file inclusion vulnerability in ListRecords.php in osprey 1.0a4.1 allows remote attackers to execute arbitrary PHP code via a URL in the x…

No fix yet
Fix from $1,950 2009-05-12
Quickteam HIGH 7.5
CVE-2009-1551EPSS 27%

Multiple PHP remote file inclusion vulnerabilities in Qt quickteam 2 allow remote attackers to execute arbitrary PHP code via a URL in the (1) qte_we…

No fix yet
Fix from $1,950 2009-05-06
Openview Network Node Manager HIGH 10.0
CVE-2009-0720EPSS 10%

Unspecified vulnerability in HP OpenView Network Node Manager (OV NNM) 7.01, 7.51, and 7.53 allows remote attackers to execute arbitrary code via unk…

Patch available
Fix from $1,950 2009-05-05
X Forum MEDIUM 6.5
CVE-2009-1512

Static code injection vulnerability in X-Forum 0.6.2 allows remote authenticated administrators to inject arbitrary PHP code into Config.php via the …

No fix yet
Fix from $1,600 2009-05-01
Mini File Host MEDIUM 6.8
CVE-2008-6785

Unrestricted file upload vulnerability in Mini File Host 1.5 allows remote attackers to execute arbitrary code by uploading a file with an executable…

No fix yet
Fix from $1,600 2009-05-01
Yourplace MEDIUM 6.5
CVE-2008-6773

Static code injection vulnerability in user/internettoolbar/edit.php in YourPlace 1.0.2 and earlier allows remote authenticated users to execute arbi…

Fix: after 1.0.2
Fix from $1,600 2009-04-29
Antivirus HIGH 10.0
CVE-2009-1429EPSS 88%

The Intel LANDesk Common Base Agent (CBA) in Symantec Alert Management System 2 (AMS2), as used in Symantec System Center (SSS); Symantec AntiVirus S…

Fix: after 11.0
Fix from $1,950 2009-04-29