VulnSea

CWE-119

CVEs classified under CWE-119, newest first.

290 CVEsRSS

CVE-2021-33627High· 8.2
4y ago

An issue was discovered in Insyde InsydeH2O Kernel 5.0 before 05.09.11, 5.1 before 05.17.11, 5.2 before 05.27.11, 5.3 before 05.36.11, 5.4 before 05.44.11, and 5.5 before 05.52.11 affecting FwBlockServiceSmm

An issue was discovered in Insyde InsydeH2O Kernel 5.0 before 05.09.11, 5.1 before 05.17.11, 5.2 before 05.27.11, 5.3 before 05.36.11, 5.4 before 05.44.11, and 5.5 before 05.52.11 affecting FwBlockServiceSmm. Software SMI services that u…

▾ Twilightinsyde · insydeh2oEPSS 0.33%via NVD
CVE-2021-33625High· 7.5
4y ago

An issue was discovered in Kernel 5.x in Insyde InsydeH2O, affecting HddPassword

An issue was discovered in Kernel 5.x in Insyde InsydeH2O, affecting HddPassword. Software SMI services that use the Communicate() function of the EFI_SMM_COMMUNICATION_PROTOCOL do not check whether the address of the buffer is valid, wh…

▾ Twilightinsyde · insydeh2oEPSS 0.32%via NVD
CVE-2021-31979High· 7.8CISA KEV0day
5y ago

Windows Kernel Elevation of Privilege Vulnerability

Windows Kernel Elevation of Privilege Vulnerability

▾ Abyssalmicrosoft · windows_10_1507EPSS 4.5%via NVD
CVE-2021-1402High· 8.6
5y ago

A vulnerability in the software-based SSL/TLS message handler of Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to trigger a reload of an affected device, resulting in a denial of service (D…

A vulnerability in the software-based SSL/TLS message handler of Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to trigger a reload of an affected device, resulting in a denial of service (D…

▾ Twilightcisco · secure_firewall_threat_defenseEPSS 1.4%via NVD
CVE-2020-3562High· 8.6
5y ago

A vulnerability in the SSL/TLS inspection of Cisco Firepower Threat Defense (FTD) Software for Cisco Firepower 2100 Series firewalls could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affec…

A vulnerability in the SSL/TLS inspection of Cisco Firepower Threat Defense (FTD) Software for Cisco Firepower 2100 Series firewalls could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affec…

▾ Twilightcisco · secure_firewall_threat_defenseEPSS 1.8%via NVD
CVE-2019-15992High· 7.2
6y ago

A vulnerability in the implementation of the Lua interpreter integrated in Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an authenticated, remote attacker to execute arbitr…

A vulnerability in the implementation of the Lua interpreter integrated in Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an authenticated, remote attacker to execute arbitr…

▾ Twilightcisco · adaptive_security_applianceEPSS 4.1%via NVD
CVE-2020-3283High· 8.6
6y ago

A vulnerability in the Secure Sockets Layer (SSL)/Transport Layer Security (TLS) handler of Cisco Firepower Threat Defense (FTD) Software when running on the Cisco Firepower 1000 Series platform could allow an unauthenticated, remote att…

A vulnerability in the Secure Sockets Layer (SSL)/Transport Layer Security (TLS) handler of Cisco Firepower Threat Defense (FTD) Software when running on the Cisco Firepower 1000 Series platform could allow an unauthenticated, remote att…

▾ Twilightcisco · secure_firewall_threat_defenseEPSS 2.0%via NVD
CVE-2020-0796Critical· 10.0CISA KEVPoC
6y ago

A remote code execution vulnerability exists in the way that the Microsoft Server Message Block 3.1.1 (SMBv3) protocol handles certain requests, aka 'Windows SMBv3 Client/Server Remote Code Execution Vulnerability'.

A remote code execution vulnerability exists in the way that the Microsoft Server Message Block 3.1.1 (SMBv3) protocol handles certain requests, aka 'Windows SMBv3 Client/Server Remote Code Execution Vulnerability'.

▾ Hadalmicrosoft · windows_10_1903EPSS 100%via NVD
CVE-2019-12673High· 7.5
6y ago

A vulnerability in the FTP inspection engine of Cisco Adaptive Security (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an a…

A vulnerability in the FTP inspection engine of Cisco Adaptive Security (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an a…

▾ Twilightcisco · adaptive_security_applianceEPSS 1.8%via NVD
CVE-2018-18861Critical· 9.8
7y ago

Buffer overflow in PCMan FTP Server 2.0.7 allows for remote code execution via the APPE command.

Buffer overflow in PCMan FTP Server 2.0.7 allows for remote code execution via the APPE command.

▾ Midnightpcman · ftp_serverEPSS 4.5%via NVD
CVE-2017-13734Medium· 6.5
9y ago

There is an illegal address access in the _nc_safe_strcat function in strings.c in ncurses 6.0 that will lead to a remote denial of service attack.

There is an illegal address access in the _nc_safe_strcat function in strings.c in ncurses 6.0 that will lead to a remote denial of service attack.

▾ Sunlitinvisible-island · ncursesEPSS 2.1%via NVD
CVE-2017-13733Medium· 6.5
9y ago

There is an illegal address access in the fmt_entry function in progs/dump_entry.c in ncurses 6.0 that might lead to a remote denial of service attack.

There is an illegal address access in the fmt_entry function in progs/dump_entry.c in ncurses 6.0 that might lead to a remote denial of service attack.

▾ Sunlitinvisible-island · ncursesEPSS 2.8%via NVD
CVE-2017-13732Medium· 6.5
9y ago

There is an illegal address access in the function dump_uses() in progs/dump_entry.c in ncurses 6.0 that might lead to a remote denial of service attack.

There is an illegal address access in the function dump_uses() in progs/dump_entry.c in ncurses 6.0 that might lead to a remote denial of service attack.

▾ Sunlitinvisible-island · ncursesEPSS 2.9%via NVD
CVE-2017-13731Medium· 6.5
9y ago

There is an illegal address access in the function postprocess_termcap() in parse_entry.c in ncurses 6.0 that will lead to a remote denial of service attack.

There is an illegal address access in the function postprocess_termcap() in parse_entry.c in ncurses 6.0 that will lead to a remote denial of service attack.

▾ Sunlitinvisible-island · ncursesEPSS 2.9%via NVD
CVE-2017-13730Medium· 6.5
9y ago

There is an illegal address access in the function _nc_read_entry_source() in progs/tic.c in ncurses 6.0 that might lead to a remote denial of service attack.

There is an illegal address access in the function _nc_read_entry_source() in progs/tic.c in ncurses 6.0 that might lead to a remote denial of service attack.

▾ Sunlitinvisible-island · ncursesEPSS 2.9%via NVD
CVE-2017-13729Medium· 6.5
9y ago

There is an illegal address access in the _nc_save_str function in alloc_entry.c in ncurses 6.0

There is an illegal address access in the _nc_save_str function in alloc_entry.c in ncurses 6.0. It will lead to a remote denial of service attack.

▾ Sunlitinvisible-island · ncursesEPSS 2.9%via NVD
CVE-2017-10684Critical· 9.8
9y ago

In ncurses 6.0, there is a stack-based buffer overflow in the fmt_entry function

In ncurses 6.0, there is a stack-based buffer overflow in the fmt_entry function. A crafted input will lead to a remote arbitrary code execution attack.

▾ Midnightinvisible-island · ncursesEPSS 4.9%via NVD
CVE-2015-2546High· 8.2CISA KEV0dayPoC
11y ago

The kernel-mode driver in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT Gold and 8.1, and Windows 10 allows local users to gain privile…

The kernel-mode driver in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT Gold and 8.1, and Windows 10 allows local users to gain privile…

▾ Abyssalmicrosoft · windows_10_1507EPSS 10%via NVD
CVE-2013-4730Critical· 10.0PoC
12y ago

Buffer overflow in PCMan's FTP Server 2.0.7 allows remote attackers to execute arbitrary code via a long string in a USER command.

Buffer overflow in PCMan's FTP Server 2.0.7 allows remote attackers to execute arbitrary code via a long string in a USER command.

▾ Abyssalpcman · ftp_serverEPSS 66%via NVD
CVE-2011-4045Medium· 4.3PoC
14y ago

Buffer overflow in an unspecified ActiveX control in aipgctl.ocx in ARC Informatique PcVue 6.0 through 10.0, FrontVue, and PlantVue allows remote attackers to cause a denial of service via a crafted HTML document.

Buffer overflow in an unspecified ActiveX control in aipgctl.ocx in ARC Informatique PcVue 6.0 through 10.0, FrontVue, and PlantVue allows remote attackers to cause a denial of service via a crafted HTML document.

▾ Twilightarcinformatique · frontvueEPSS 3.7%via NVD
CWE-119 vulnerabilities (CVEs) — page 10 · VulnSea