Vulnerability index

Browse CVEs

6,062 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Code InjectionCWE-94 × clear
HIGH 9.3 CVE-2010-0257EPSS 19% Microsoft Office Excel 2002 SP3 does not properly parse the Excel file format, which allows remote attackers to execute arbitrary code via a crafted … Excel Mitigation only Fix from $1,9502010-03-10 HIGH 9.3 CVE-2010-0260EPSS 23% Heap-based buffer overflow in Microsoft Office Excel 2007 SP1 and SP2; Office Excel Viewer SP1 and SP2; and Office Compatibility Pack for Word, Excel… Excel Mitigation only Fix from $1,9502010-03-10 HIGH 9.3 CVE-2010-0262EPSS 21% Microsoft Office Excel 2007 SP1 and SP2 and Office 2004 for Mac do not properly parse the Excel file format, which allows remote attackers to execute… Excel Mitigation only Fix from $1,9502010-03-10 HIGH 9.3 CVE-2010-0263EPSS 26% Microsoft Office Excel 2007 SP1 and SP2; Office 2008 for Mac; Open XML File Format Converter for Mac; Office Excel Viewer SP1 and SP2; Office Compati… Excel Mitigation only Fix from $1,9502010-03-10 HIGH 9.3 CVE-2010-0264EPSS 21% Microsoft Office Excel 2002 SP3, Office 2004 and 2008 for Mac, and Open XML File Format Converter for Mac do not properly parse the Excel file format… Excel Mitigation only Fix from $1,9502010-03-10 HIGH 7.5 CVE-2009-4693 Multiple PHP remote file inclusion vulnerabilities in GraFX MiniCWB 2.3.0 allow remote attackers to execute arbitrary PHP code via a URL in the LANG … Minicwb No fix yet Fix from $1,9502010-03-10 HIGH 9.3 CVE-2010-0103EPSS 27% UsbCharger.dll in the Energizer DUO USB battery charger software contains a backdoor that is implemented through the Arucer.dll file in the %WINDIR%\… Duo Usb No fix yet Fix from $1,9502010-03-10 HIGH 7.5 CVE-2009-4666 Multiple PHP remote file inclusion vulnerabilities in Webradev Download Protect 1.0 allow remote attackers to execute arbitrary PHP code via a URL in… Download Protect No fix yet Fix from $1,9502010-03-05 HIGH 7.6 CVE-2010-0483EPSS 86% vbscript.dll in VBScript 5.1, 5.6, 5.7, and 5.8 in Microsoft Windows 2000 SP4, XP SP2 and SP3, and Server 2003 SP2, when Internet Explorer is used, a… Windows 2000 No fix yet Fix from $1,9502010-03-03 HIGH 7.5 CVE-2010-0755 PHP remote file inclusion vulnerability in include/WBmap.php in WikyBlog 1.7.3 rc2 allows remote attackers to execute arbitrary PHP code via a URL in… Wikyblog No fix yet Fix from $1,9502010-02-27 MEDIUM 6.8 CVE-2010-0678 PHP remote file inclusion vulnerability in includes/moderation.php in Katalog Stron Hurricane 1.3.5, and possibly earlier, when register_globals is e… Katalog Stron Hurricane No fix yet Fix from $1,6002010-02-22 HIGH 10.0 CVE-2009-1571EPSS 6% Use-after-free vulnerability in the HTML parser in Mozilla Firefox 3.0.x before 3.0.18 and 3.5.x before 3.5.8, Thunderbird before 3.0.2, and SeaMonke… Firefox Mitigation only Fix from $1,9502010-02-22 HIGH 9.0 CVE-2009-4646 Static code injection vulnerability in the administrative web interface in Accellion Secure File Transfer Appliance allows remote authenticated admin… Secure File Transfer Appliance No fix yet Fix from $1,9502010-02-19 HIGH 9.3 CVE-2010-0647 WebKit before r53525, as used in Google Chrome before 4.0.249.89, allows remote attackers to execute arbitrary code in the Chrome sandbox via a malfo… Chrome after 4.0.249.78 Fix from $1,9502010-02-18 HIGH 9.3 CVE-2009-3302EPSS 12% filter/ww8/ww8par2.cxx in OpenOffice.org (OOo) before 3.2 allows remote attackers to cause a denial of service (application crash) or possibly execut… Openoffice 3.2.0+ Fix from $1,9502010-02-16 HIGH 9.3 CVE-2009-3735EPSS 6% The ActiveScan Installer ActiveX control in as2stubie.dll before 1.3.3.0 in PandaActiveScan Installer 2.0 in Panda ActiveScan downloads software in a… Panda Activescan Mitigation only Fix from $1,9502010-02-11 HIGH 9.3 CVE-2010-0031EPSS 21% Array index error in Microsoft Office PowerPoint 2002 SP3 and 2003 SP3, and PowerPoint in Office 2004 for Mac, allows remote attackers to execute arb… Office Mitigation only Fix from $1,9502010-02-10 HIGH 9.3 CVE-2010-0032EPSS 21% Use-after-free vulnerability in Microsoft Office PowerPoint 2002 SP3 and 2003 SP3 allows remote attackers to execute arbitrary code via a crafted Pow… Powerpoint Mitigation only Fix from $1,9502010-02-10 HIGH 9.3 CVE-2010-0252EPSS 29% The Microsoft Data Analyzer ActiveX control (aka the Office Excel ActiveX control for Data Analysis) in max3activex.dll in Microsoft Windows 2000 SP4… Windows 2000 Mitigation only Fix from $1,9502010-02-10 HIGH 9.0 CVE-2010-0020EPSS 32% The SMB implementation in the Server service in Microsoft Windows 2000 SP4, Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista Gold, SP1,… Windows 2000 Mitigation only Fix from $1,9502010-02-10 HIGH 9.3 CVE-2009-4635EPSS 8% FFmpeg 0.5 allows remote attackers to cause a denial of service and possibly execute arbitrary code via a crafted MOV container with improperly order… Ffmpeg No fix yet Fix from $1,9502010-02-10 HIGH 10.0 CVE-2009-4273EPSS 18% stap-server in SystemTap before 1.1 allows remote attackers to execute arbitrary commands via shell metacharacters in stap command-line arguments in … Systemtap after 1.0 Fix from $1,9502010-01-26 HIGH 9.3 CVE-2010-0027EPSS 34% The URL validation functionality in Microsoft Internet Explorer 5.01, 6, 6 SP1, 7 and 8, and the ShellExecute API function in Windows 2000 SP4, XP SP… Internet Explorer Mitigation only Fix from $1,9502010-01-22 HIGH 7.5 CVE-2010-0367 Multiple PHP remote file inclusion vulnerabilities in BitScripts Bits Video Script 2.05 Gold Beta, and possibly 2.04, allow remote attackers to execu… Bits Video Script No fix yet Fix from $1,9502010-01-21 HIGH 7.5 CVE-2009-4614 Multiple PHP remote file inclusion vulnerabilities in Moa Gallery 1.2.0 and earlier allow remote attackers to execute arbitrary PHP code via a URL in… Moa Gallery after 1.2.0 Fix from $1,9502010-01-18 HIGH 7.5 CVE-2009-4622 PHP remote file inclusion vulnerability in admin/admin_news_bot.php in Drunken:Golem Gaming Portal 0.5.1 alpha 2 allows remote attackers to execute a… Drunken\ No fix yet Fix from $1,9502010-01-18 HIGH 7.5 CVE-2009-4623EPSS 10% Multiple PHP remote file inclusion vulnerabilities in Advanced Comment System 1.0 allow remote attackers to execute arbitrary PHP code via a URL in t… Advanced Comment System No fix yet Fix from $1,9502010-01-18 CRITICAL 9.8 CVE-2009-4491EPSS 13% thttpd 2.25b0 writes data to a log file without sanitizing non-printable characters, which might allow remote attackers to modify a window's title, o… Thttpd No fix yet Fix from $2,3002010-01-13 HIGH 10.0 CVE-2009-3954EPSS 9% The 3D implementation in Adobe Reader and Acrobat 9.x before 9.3, and 8.x before 8.2 on Windows and Mac OS X, might allow attackers to execute arbitr… Acrobat after 9.2 Fix from $1,9502010-01-13 HIGH 7.5 CVE-2009-4604 PHP remote file inclusion vulnerability in mamboleto.php in the Fernando Soares Mamboleto (com_mamboleto) component 2.0 RC3 for Joomla! allows remote… Com Mamboleto No fix yet Fix from $1,9502010-01-12