CSV
14,794 results for "vulnerability" Page 113
CVE-2019-9670 CRITICAL KEV Exploit

mailboxd component in Synacor Zimbra Collaboration Suite 8.7.x before 8.7.11p10 has an XML External Entity injection (XXE) vulnerability, as demonstrated by Autodiscover/Autodiscover.xml.

May 29, 2019 11 affected product(s) NVD
9.8
CVSS
100.0%
EPSS
⚡ 99.2
CVE-2019-11580 CRITICAL KEV Exploit

Atlassian Crowd and Crowd Data Center had the pdkinstall development plugin incorrectly enabled in release builds. Attackers who can send unauthenticated or authenticated requests to a Crowd or Crowd Data Center instance can exploit this vulnerability to install arbitrary plugins, which permits remote code execution on systems running a vulnerable version of Crowd or Crowd Data Center. All versions of Crowd from version 2.1.0 before 3.0.5 (the fixed version for 3.0.x), from version 3.1.0 before 3.1.6 (the fixed version for 3.1.x), from version 3.2.0 before 3.2.8 (the fixed version for 3.2.x), from version 3.3.0 before 3.3.5 (the fixed version for 3.3.x), and from version 3.4.0 before 3.4.4 (the fixed version for 3.4.x) are affected by this vulnerability.

Jun 3, 2019 5 affected product(s) NVD
9.8
CVSS
95.4%
EPSS
⚡ 97.8
CVE-2019-11945 CRITICAL Exploit

A remote code execution vulnerability was identified in HPE Intelligent Management Center (IMC) PLAT earlier than version 7.3 E0506P09.

Jun 5, 2019 9 affected product(s) NVD
9.8
CVSS
78.6%
EPSS
⚡ 72.8
CVE-2019-7091 CRITICAL

ColdFusion versions Update 1 and earlier, Update 7 and earlier, and Update 15 and earlier have a deserialization of untrusted data vulnerability. Successful exploitation could lead to arbitrary code execution.

May 24, 2019 26 affected product(s) NVD
9.8
CVSS
25.7%
EPSS
⚡ 46.9
CVE-2019-11944 CRITICAL

A remote code execution vulnerability was identified in HPE Intelligent Management Center (IMC) PLAT earlier than version 7.3 E0506P09.

Jun 5, 2019 9 affected product(s) NVD
9.8
CVSS
13.3%
EPSS
⚡ 43.2
CVE-2019-7095 CRITICAL

Adobe Digital Editions versions 4.5.10.185749 and below have a heap overflow vulnerability. Successful exploitation could lead to arbitrary code execution.

May 24, 2019 1 affected product(s) NVD
9.8
CVSS
8.7%
EPSS
⚡ 41.8
CVE-2018-7124 CRITICAL

A remote code execution vulnerability was identified in HPE Intelligent Management Center (IMC) PLAT earlier than version 7.3 E0506P09.

Jun 5, 2019 9 affected product(s) NVD
9.8
CVSS
8.0%
EPSS
⚡ 41.6
CVE-2018-7121 CRITICAL

A remote code execution vulnerability was identified in HPE Intelligent Management Center (IMC) PLAT earlier than version 7.3 E0506P09.

Jun 5, 2019 9 affected product(s) NVD
9.8
CVSS
7.6%
EPSS
⚡ 41.5
CVE-2019-7094 CRITICAL

Adobe Photoshop CC 19.1.7 and earlier, and 20.0.2 and earlier have a heap corruption vulnerability. Successful exploitation could lead to arbitrary code execution.

May 24, 2019 2 affected product(s) NVD
9.8
CVSS
6.4%
EPSS
⚡ 41.1
CVE-2019-6742 CRITICAL

This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Samsung Galaxy S9 prior to 1.4.20.2. Authentication is not required to exploit this vulnerability. The specific flaw exists within the handling of the GameServiceReceiver update mechanism. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-7477.

Jun 3, 2019 1 affected product(s) NVD
9.8
CVSS
5.9%
EPSS
⚡ 41
CVE-2019-7085 CRITICAL

Adobe Acrobat and Reader versions 2019.010.20069 and earlier, 2019.010.20069 and earlier, 2017.011.30113 and earlier version, and 2015.006.30464 and earlier have a buffer errors vulnerability. Successful exploitation could lead to arbitrary code execution .

May 24, 2019 6 affected product(s) NVD
9.8
CVSS
5.6%
EPSS
⚡ 40.9
CVE-2019-7040 CRITICAL

Adobe Acrobat and Reader versions 2019.010.20069 and earlier, 2019.010.20069 and earlier, 2017.011.30113 and earlier version, and 2015.006.30464 and earlier have an use after free vulnerability. Successful exploitation could lead to arbitrary code execution .

May 24, 2019 6 affected product(s) NVD
9.8
CVSS
5.5%
EPSS
⚡ 40.8
CVE-2019-5347 CRITICAL

A remote authentication bypass vulnerability was identified in HPE Intelligent Management Center (IMC) PLAT earlier than version 7.3 E0506P09.

Jun 5, 2019 9 affected product(s) NVD
9.8
CVSS
5.4%
EPSS
⚡ 40.8
CVE-2019-7054 CRITICAL

Adobe Acrobat and Reader versions 2019.010.20069 and earlier, 2019.010.20069 and earlier, 2017.011.30113 and earlier version, and 2015.006.30464 and earlier have an untrusted pointer dereference vulnerability. Successful exploitation could lead to arbitrary code execution .

May 24, 2019 6 affected product(s) NVD
9.8
CVSS
5.0%
EPSS
⚡ 40.7
CVE-2019-7060 CRITICAL

Adobe Acrobat and Reader versions 2019.010.20069 and earlier, 2019.010.20069 and earlier, 2017.011.30113 and earlier version, and 2015.006.30464 and earlier have an out-of-bounds write vulnerability. Successful exploitation could lead to arbitrary code execution .

May 24, 2019 6 affected product(s) NVD
9.8
CVSS
4.6%
EPSS
⚡ 40.6
CVE-2019-7080 CRITICAL

Adobe Acrobat and Reader versions 2019.010.20069 and earlier, 2019.010.20069 and earlier, 2017.011.30113 and earlier version, and 2015.006.30464 and earlier have a double free vulnerability. Successful exploitation could lead to arbitrary code execution .

May 24, 2019 6 affected product(s) NVD
9.8
CVSS
4.8%
EPSS
⚡ 40.6
CVE-2019-7046 CRITICAL

Adobe Acrobat and Reader versions 2019.010.20069 and earlier, 2019.010.20069 and earlier, 2017.011.30113 and earlier version, and 2015.006.30464 and earlier have an untrusted pointer dereference vulnerability. Successful exploitation could lead to arbitrary code execution .

May 24, 2019 6 affected product(s) NVD
9.8
CVSS
4.4%
EPSS
⚡ 40.5
CVE-2019-7050 CRITICAL

Adobe Acrobat and Reader versions 2019.010.20069 and earlier, 2019.010.20069 and earlier, 2017.011.30113 and earlier version, and 2015.006.30464 and earlier have an use after free vulnerability. Successful exploitation could lead to arbitrary code execution .

May 24, 2019 6 affected product(s) NVD
9.8
CVSS
4.4%
EPSS
⚡ 40.5
CVE-2019-7051 CRITICAL

Adobe Acrobat and Reader versions 2019.010.20069 and earlier, 2019.010.20069 and earlier, 2017.011.30113 and earlier version, and 2015.006.30464 and earlier have an untrusted pointer dereference vulnerability. Successful exploitation could lead to arbitrary code execution .

May 24, 2019 6 affected product(s) NVD
9.8
CVSS
4.4%
EPSS
⚡ 40.5
CVE-2019-7062 CRITICAL

Adobe Acrobat and Reader versions 2019.010.20069 and earlier, 2019.010.20069 and earlier, 2017.011.30113 and earlier version, and 2015.006.30464 and earlier have an use after free vulnerability. Successful exploitation could lead to arbitrary code execution .

May 24, 2019 6 affected product(s) NVD
9.8
CVSS
4.4%
EPSS
⚡ 40.5