Skip to content
COOEY
LIVE FEED
1602 events · 13 sources · newest first
2022-03-03 CISA KEV
An access of resource using incompatible type vulnerability exists within Adobe Flash Player that allows an attacker to perform remote code execution.
2022-03-03 CISA KEV
A use-after-free vulnerability exists within the ActionScript 3 ByteArray class in Adobe Flash Player that allows an attacker to perform remote code execution.
2022-03-03 CISA KEV
Unspecified vulnerability in Oracle Java SE allows remote attackers to affect integrity via Unknown vectors related to deployment.
2022-03-03 CISA KEV
A memory corruption vulnerability exists in Adobe Flash Player that allows an attacker to perform remote code execution.
2022-03-03 CISA KEV
An unspecified vulnerability exists within Oracle Java Runtime Environment that allows an attacker to perform remote code execution.
2022-03-03 CISA KEV
Microsoft Office allows remote attackers to execute arbitrary code via a crafted EPS image.
2022-03-03 CISA KEV
Microsoft PowerPoint allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted Office document.
2022-03-03 CISA KEV
Microsoft Office contains a memory corruption vulnerability that allows remote attackers to execute arbitrary code via a crafted document.
2022-03-03 CISA KEV
A vulnerability exists in Windows Object Linking & Embedding (OLE) that could allow remote code execution if a user opens a file that contains a specially crafted OLE object.
2022-03-03 CISA KEV
Adobe Reader and Acrobat contain a use-after-free vulnerability which can allow for code execution.
2022-03-03 CISA KEV
Microsoft Windows NDProxy.sys in the kernel contains an improper input validation vulnerability which can allow a local attacker to escalate privileges.
2022-03-03 CISA KEV
A use-after-free vulnerability exists within CDisplayPointer in Microsoft Internet Explorer that allows an attacker to remotely execute arbitrary code.
2022-03-03 CISA KEV
Adobe Reader and Acrobat contain a memory corruption vulnerability which can allow attackers to execute arbitrary code or cause a denial of service.
2022-03-03 CISA KEV
Mozilla Firefox does not properly initialize data structures for the nsDOMSVGZoomEvent::mPreviousScale and nsDOMSVGZoomEvent::mNewScale functions, which allows remote attackers to obtain sensitive information from...
2022-03-03 CISA KEV
This vulnerability may corrupt memory in a way that could allow an attacker to execute arbitrary code in the context of the current user within Internet Explorer.
2022-03-03 CISA KEV
A buffer overflow vulnerability exists in Adobe Reader which allows an attacker to perform remote code execution.
2022-03-03 CISA KEV
An memory corruption vulnerability exists in the acroform.dll in Adobe Reader that allows an attacker to perform remote code execution.
2022-03-03 CISA KEV
An authentication bypass vulnerability exists in Adobe ColdFusion which could result in an unauthorized user gaining administrative access.
2022-03-03 CISA KEV
The TabStrip ActiveX control in the Common Controls in MSCOMCTL.OCX in Microsoft Office allows remote attackers to execute arbitrary code via a crafted (1) document or (2) web page that triggers system-state corruption.
2022-03-03 CISA KEV
Unspecified vulnerability in Adobe Flash Player allows remote attackers to execute arbitrary code or cause a denial of service via crafted SWF content.
2022-03-03 CISA KEV
An access control vulnerability exists in the Applet Rhino Script Engine component of Oracle's Java Runtime Environment allows an attacker to remotely execute arbitrary code.
2022-03-03 CISA KEV
A remote code execution vulnerability exists in the Forefront Threat Management Gateway (TMG) Firewall Client Winsock provider that could allow code execution in the security context of the client application.
2022-03-03 CISA KEV
Adobe Flash Player contains a vulnerability that allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via crafted Flash content.
2022-03-03 CISA KEV
A stack-based buffer overflow vulnerability exists in the parsing of RTF data in Microsoft Office and earlier allows an attacker to perform remote code execution.
2022-03-03 CISA KEV
The kernel in Microsoft Windows, when access to 16-bit applications is enabled on a 32-bit x86 platform, does not properly validate certain BIOS calls, which allows local users to gain privileges.
2022-03-03 CISA KEV
Microsoft Office Excel allows remote attackers to execute arbitrary code via a spreadsheet with a FEATHEADER record containing an invalid cbHdrData size element that affects a pointer offset.
2022-03-03 CISA KEV
The kernel in Microsoft Windows does not properly validate changes to unspecified kernel objects, which allows local users to gain privileges via a crafted application.
2022-03-03 CISA KEV
An input validation vulnerability exists in the VBoxDrv.sys driver of Sun xVM VirtualBox which allows attackers to locally execute arbitrary code.
2022-03-03 CISA KEV
A privilege elevation vulnerability exists in the POSIX subsystem. This vulnerability could allow a logged on user to take complete control of the system.
2022-03-03 CISA KEV
smss.exe debugging subsystem in Microsoft Windows does not properly authenticate programs that connect to other programs, which allows local users to gain administrator or SYSTEM privileges.
2022-03-03 CISA KEV
The Treck TCP/IP stack contains an IPv6 out-of-bounds read vulnerability.
2022-03-03 CISA KEV
Apache Tomcat Improper Privilege Management Vulnerability HIGH ◈ 2 sources · orig. NVD CVE
Apache Tomcat treats Apache JServ Protocol (AJP) connections as having higher trust than, for example, a similar HTTP connection. If such connections are available to an attacker, they can be exploited.
2022-02-25 CISA KEV
A remote code execution vulnerability exists when Internet Explorer improperly accesses objects in memory.
2022-02-25 CISA KEV
A remote code execution vulnerability exists in Microsoft Office software when it fails to properly handle objects in memory.
2022-02-25 CISA KEV
Microsoft Windows allow remote attackers to execute arbitrary code via a crafted OLE object.
2022-02-22 CISA KEV
Unsafe client-side session storage leading to authentication bypass/instance takeover via Zabbix Frontend with configured SAML.
2022-02-22 CISA KEV
Malicious actors can pass step checks and potentially change the configuration of Zabbix Frontend.
2022-02-15 CISA KEV
Microsoft Word contains a memory corruption vulnerability which when exploited could allow for remote code execution.
2022-02-15 CISA KEV
Adobe Commerce and Magento Open Source contain an improper input validation vulnerability which can allow for arbitrary code execution.
2022-02-15 CISA KEV
Google Chromium Animation contains a use-after-free vulnerability that allows a remote attacker to potentially exploit heap corruption via a crafted HTML page. This vulnerability could affect multiple web browsers...
◀ PREV PAGE 33 / 41 NEXT ▶