Top technology
Linux 13140
Google 12530
Microsoft 12379
Oracle 6737
Apple 6692
Adobe 6387
Ibm 6330
Cisco 5757
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
MEDIUM 6.5
CVE-2013-7331 KEVEPSS 58%
The Microsoft.XMLDOM ActiveX control in Microsoft Windows 8.1 and earlier allows remote attackers to determine the existence of local pathnames, UNC …
Internet Explorer
Patch available
HIGH 8.8
CVE-2014-0502 KEVEPSS 24%
Double free vulnerability in Adobe Flash Player before 11.7.700.269 and 11.8.x through 12.0.x before 12.0.0.70 on Windows and Mac OS X and before 11.…
Enterprise Linux Desktop
4.0.0.1628 / 11.2.202.341+
HIGH 8.8
CVE-2014-0322 KEVEPSS 85%
Use-after-free vulnerability in Microsoft Internet Explorer 9 and 10 allows remote attackers to execute arbitrary code via vectors involving crafted …
Internet Explorer
Patch available
CRITICAL 9.8
CVE-2014-0497 KEVEPSS 100%
Integer underflow in Adobe Flash Player before 11.7.700.261 and 11.8.x through 12.0.x before 12.0.0.44 on Windows and Mac OS X, and before 11.2.202.3…
Chrome
11.2.202.336 / 11.7.700.261+
HIGH 8.8
CVE-2014-0496 KEVEPSS 40%
Use-after-free vulnerability in Adobe Reader and Acrobat 10.x before 10.1.9 and 11.x before 11.0.06 on Windows and Mac OS X allows attackers to execu…
Acrobat
10.1.9 / 11.0.6+
MEDIUM 5.5
CVE-2013-3900 KEVEPSS 45%
Why is Microsoft republishing a CVE from 2013?
We are republishing CVE-2013-3900 in the Security Update Guide to update the Security Updates table an…
Windows 10 1507
Patch available
HIGH 7.8
CVE-2013-5065 KEVEPSS 35%
NDProxy.sys in the kernel in Microsoft Windows XP SP2 and SP3 and Server 2003 SP2 allows local users to gain privileges via a crafted application, as…
Windows 2003 Server
Patch available
HIGH 8.8
CVE-2013-6282 KEVEPSS 40%
The (1) get_user and (2) put_user API functions in the Linux kernel before 3.5.5 on the v6k and v7 ARM platforms do not validate certain addresses, w…
Linux Kernel
3.2.54 / 3.4.12+
MEDIUM 5.4
CVE-2013-5223 KEVEPSS 34%
Multiple cross-site scripting (XSS) vulnerabilities in D-Link DSL-2760U Gateway (Rev. E1) allow remote authenticated users to inject arbitrary web sc…
Dsl 2760u Firmware
1.12+
HIGH 8.8
CVE-2013-3918 KEVEPSS 74%
The InformationCardSigninHelper Class ActiveX control in icardie.dll in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP2,…
Windows 7
Patch available
HIGH 7.8
CVE-2013-3906 KEVEPSS 85%
GDI+ in Microsoft Windows Vista SP2 and Server 2008 SP2; Office 2003 SP3, 2007 SP3, and 2010 SP1 and SP2; Office Compatibility Pack SP3; and Lync 201…
Excel Viewer
Patch available
HIGH 8.8
CVE-2013-3897 KEVEPSS 77%
Use-after-free vulnerability in the CDisplayPointer class in mshtml.dll in Microsoft Internet Explorer 6 through 11 allows remote attackers to execut…
Internet Explorer
Patch available
MEDIUM 5.5
CVE-2013-3896 KEVEPSS 70%
Microsoft Silverlight 5 before 5.1.20913.0 does not properly validate pointers during access to Silverlight elements, which allows remote attackers t…
Silverlight
5.1.20913.0+
HIGH 8.8
CVE-2013-3893 KEVEPSS 86%
Use-after-free vulnerability in the SetMouseCapture implementation in mshtml.dll in Microsoft Internet Explorer 6 through 11 allows remote attackers …
Internet Explorer
Mitigation only
CRITICAL 9.8
CVE-2013-4810 KEVEPSS 79%
HP ProCurve Manager (PCM) 3.20 and 4.0, PCM+ 3.20 and 4.0, Identity Driven Manager (IDM) 4.0, and Application Lifecycle Management allow remote attac…
Application Lifecycle Management
Mitigation only
CRITICAL 9.8
CVE-2013-3346 KEVEPSS 79%
Adobe Reader and Acrobat 9.x before 9.5.5, 10.x before 10.1.7, and 11.x before 11.0.03 allow attackers to execute arbitrary code or cause a denial of…
Acrobat
9.5.5 / 10.1.7+
CRITICAL 9.8
CVE-2013-2251 KEVEPSS 100%
Apache Struts 2.0.0 through 2.3.15 allows remote attackers to execute arbitrary OGNL expressions via a parameter with a crafted (1) action:, (2) redi…
Archiva
1.3.8+
HIGH 8.8
CVE-2013-3163 KEVEPSS 71%
Microsoft Internet Explorer 8 through 10 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a cra…
Internet Explorer
Patch available
HIGH 8.8
CVE-2013-1690 KEVEPSS 69%
Mozilla Firefox before 22.0, Firefox ESR 17.x before 17.0.7, Thunderbird before 17.0.7, and Thunderbird ESR 17.x before 17.0.7 do not properly handle…
Firefox
17.0.7 / 22.0+
CRITICAL 9.8
CVE-2013-2465 KEVEPSS 99%
Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 21 and earlier, 6 Update 45 and earlier, and 5.0…
Jre
Patch available
HIGH 7.8
CVE-2013-1331 KEVEPSS 82%
Buffer overflow in Microsoft Office 2003 SP3 and Office 2011 for Mac allows remote attackers to execute arbitrary code via crafted PNG data in an Off…
Office
Patch available
HIGH 7.8
CVE-2013-3660 KEVEPSS 40%
The EPATHOBJ::pprFlattenRec function in win32k.sys in the kernel-mode drivers in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows V…
Windows 7
Patch available
CRITICAL 9.8
CVE-2013-2729 KEVEPSS 67%
Integer overflow in Adobe Reader and Acrobat 9.x before 9.5.5, 10.x before 10.1.7, and 11.x before 11.0.03 allows attackers to execute arbitrary code…
Enterprise Linux Desktop
9.5.5 / 10.1.7+
MEDIUM 6.5
CVE-2013-1675 KEVEPSS 7%
Mozilla Firefox before 21.0, Firefox ESR 17.x before 17.0.6, Thunderbird before 17.0.6, and Thunderbird ESR 17.x before 17.0.6 do not properly initia…
Firefox
17.0.6 / 21.0+
HIGH 8.4
CVE-2013-2094 KEVEPSS 48%
The perf_swevent_init function in kernel/events/core.c in the Linux kernel before 3.8.9 uses an incorrect integer data type, which allows local users…
Linux Kernel
3.0.75 / 3.2.45+
HIGH 8.8
CVE-2013-1347 KEVEPSS 78%
Microsoft Internet Explorer 8 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessing an obj…
Internet Explorer
Patch available
HIGH 7.8
CVE-2013-2596 KEV
Integer overflow in the fb_mmap function in drivers/video/fbmem.c in the Linux kernel before 3.8.9, as used in a certain Motorola build of Android 4.…
Linux Kernel
3.0.75 / 3.2.45+
HIGH 7.8
CVE-2013-0074 KEVEPSS 82%
Microsoft Silverlight 5, and 5 Developer Runtime, before 5.1.20125.0 does not properly validate pointers during HTML object rendering, which allows r…
Silverlight
5.1.20125.0+
HIGH 8.8
CVE-2013-2551 KEVEPSS 74%
Use-after-free vulnerability in Microsoft Internet Explorer 6 through 10 allows remote attackers to execute arbitrary code via a crafted web site tha…
Internet Explorer
Patch available
HIGH 8.8
CVE-2013-0648 KEVEPSS 11%
Unspecified vulnerability in the ExternalInterface ActionScript functionality in Adobe Flash Player before 10.3.183.67 and 11.x before 11.6.602.171 o…
Enterprise Linux Desktop
10.3.183.67 / 11.2.202.273+