7.8

CVSS3.1

CVE-2026-0662 - Untrusted Search Path Vulnerability when opening max Files

A maliciously crafted project directory, when opening a max file in Autodesk 3ds Max, could lead to execution of arbitrary code in the context of the current process due to an Untrusted Search Path being utilized.

πŸ“… Published: Feb. 4, 2026, 4:28 p.m. πŸ”„ Last Modified: April 17, 2026, 11:30 p.m.

7.8

CVSS3.1

CVE-2026-0660 - Stack Based Buffer Overflow in GIF File Parsing

A maliciously crafted GIF file, when parsed through Autodesk 3ds Max, can cause a Stack-Based Buffer Overflow vulnerability. A malicious actor can leverage this vulnerability to execute arbitrary code in the context of the current process.

πŸ“… Published: Feb. 4, 2026, 4:27 p.m. πŸ”„ Last Modified: April 17, 2026, 11:30 p.m.

7.8

CVSS3.1

CVE-2026-0661 - Out-of-Bounds Write in RGB File Parsing

A maliciously crafted RGB file, when parsed through Autodesk 3ds Max, can force a Memory Corruption vulnerability. A malicious actor can leverage this vulnerability to execute arbitrary code in the context of the current process.

πŸ“… Published: Feb. 4, 2026, 4:27 p.m. πŸ”„ Last Modified: April 17, 2026, 11:30 p.m.

7.8

CVSS3.1

CVE-2026-0537 - RGB File Parsing Memory Corruption

A maliciously crafted RGB file, when parsed through Autodesk 3ds Max, can force a Memory Corruption vulnerability. A malicious actor can leverage this vulnerability to execute arbitrary code in the context of the current process.

πŸ“… Published: Feb. 4, 2026, 4:26 p.m. πŸ”„ Last Modified: April 17, 2026, 11:30 p.m.

7.8

CVSS3.1

CVE-2026-0538 - GIF File Parsing Out-of-Bounds Write

A maliciously crafted GIF file, when parsed through Autodesk 3ds Max, can force an Out-of-Bounds Write vulnerability. A malicious actor can leverage this vulnerability to execute arbitrary code in the context of the current process.

πŸ“… Published: Feb. 4, 2026, 4:24 p.m. πŸ”„ Last Modified: April 17, 2026, 11:30 p.m.

7.5

CVSS3.1

CVE-2026-20119 - Cisco TelePresence Collaboration Endpoint Software and RoomOS Software Denial of Service Vulnerabil…

A vulnerability in the text rendering subsystem of Cisco TelePresence Collaboration Endpoint (CE) Software and Cisco RoomOS Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to insufficient valid…

πŸ“… Published: Feb. 4, 2026, 4:12 p.m. πŸ”„ Last Modified: April 18, 2026, 2 p.m.

4.8

CVSS3.1

CVE-2026-20111 - Cisco Prime Infrastructure Stored Cross-Site Scripting Vulnerability

A vulnerability in the web-based management interface of Cisco Prime Infrastructure could allow an authenticated, remote attacker to conduct a stored cross-site scripting (XSS) attack against users of the interface of an affected system. This vulnerability exists because the web-based management…

πŸ“… Published: Feb. 4, 2026, 4:11 p.m. πŸ”„ Last Modified: April 18, 2026, 2 p.m.

4.3

CVSS3.1

CVE-2026-20123 - Cisco Prime Infrastructure and Evolved Programmable Network Manager Open Redirect Vulnerability

A vulnerability in the web-based management interface of Cisco Evolved Programmable Network Manager (EPNM) and Cisco Prime Infrastructure could allow an unauthenticated, remote attacker to redirect a user to a malicious web page. This vulnerability is due to improper input validation of the para…

πŸ“… Published: Feb. 4, 2026, 4:11 p.m. πŸ”„ Last Modified: April 17, 2026, 11:30 p.m.

8.8

CVSS3.1

CVE-2026-20098 - Cisco Meeting Management Arbitrary File Upload Vulnerability

A vulnerability in the Certificate Management feature of Cisco Meeting Management could allow an authenticated, remote attacker to upload arbitrary files, execute arbitrary commands, and elevate privileges to root on an affected system. This vulnerability is due to improper input validation in c…

πŸ“… Published: Feb. 4, 2026, 4:11 p.m. πŸ”„ Last Modified: April 17, 2026, 11:30 p.m.

4

CVSS3.1

CVE-2026-20056 - Cisco Secure Web Appliance TBD Bypass Vulnerability

A vulnerability in the Dynamic Vectoring and Streaming (DVS) Engine implementation of Cisco AsyncOS Software for Cisco Secure Web Appliance could allow an unauthenticated, remote attacker to bypass the anti-malware scanner, allowing malicious archive files to be downloaded. This vulnerability is…

πŸ“… Published: Feb. 4, 2026, 4:11 p.m. πŸ”„ Last Modified: April 17, 2026, 11:30 p.m.
Total resulsts: 347945
Page 1680 of 34,795
Β« previous page Β» next page
Filters