8.6

CVSS4.0

CVE-2018-25217 - PDF Explorer 1.5.66.2 Structured Exception Handler Local Code Execution

PDF Explorer 1.5.66.2 contains a structured exception handler (SEH) overflow vulnerability that allows local attackers to execute arbitrary code by overwriting SEH records with malicious data. Attackers can craft a payload with buffer overflow, NSEH jump, and ROP gadget chains that execute when the…

πŸ“… Published: March 26, 2026, 1:24 p.m. πŸ”„ Last Modified: March 27, 2026, 8:26 p.m.

6.9

CVSS4.0

CVE-2018-25216 - AnyBurn 4.3 Denial of Service Local Buffer Overflow

AnyBurn 4.3 contains a local buffer overflow vulnerability that allows local attackers to crash the application by supplying an excessively long string in the image file name field. Attackers can paste a 10000-byte payload into the 'Image file name' parameter during the 'Copy disk to Image' operati…

πŸ“… Published: March 26, 2026, 1:24 p.m. πŸ”„ Last Modified: March 27, 2026, 8:26 p.m.

6.8

CVSS4.0

CVE-2018-25215 - Excel Password Recovery Professional 8.2.0.0 Local Buffer Overflow DoS

Excel Password Recovery Professional 8.2.0.0 contains a local buffer overflow vulnerability that allows attackers to cause a denial of service by supplying an excessively long string to the 'E-Mail and Registrations Code' field. Attackers can paste a crafted payload containing 5000 bytes of data in…

πŸ“… Published: March 26, 2026, 1:24 p.m. πŸ”„ Last Modified: March 31, 2026, 8:09 p.m.

6.9

CVSS4.0

CVE-2018-25214 - MegaPing Local Buffer Overflow Denial of Service

MegaPing contains a local buffer overflow vulnerability that allows local attackers to crash the application by supplying an oversized payload to the Destination Address List field in the Finger function. Attackers can paste a crafted buffer exceeding expected input limits into the vulnerable field…

πŸ“… Published: March 26, 2026, 1:24 p.m. πŸ”„ Last Modified: March 27, 2026, 8:26 p.m.

8.6

CVSS4.0

CVE-2018-25213 - Nsauditor 3.0.28.0 Local SEH Buffer Overflow

Nsauditor 3.0.28.0 contains a structured exception handling buffer overflow vulnerability that allows local attackers to execute arbitrary code by supplying malicious input to the DNS Lookup tool. Attackers can craft a payload with SEH chain overwrite and inject shellcode through the DNS Query fiel…

πŸ“… Published: March 26, 2026, 1:24 p.m. πŸ”„ Last Modified: March 27, 2026, 8:26 p.m.

8.6

CVSS4.0

CVE-2018-25212 - Boxoft wav-wma Converter 1.0 Local Buffer Overflow SEH

Boxoft wav-wma Converter 1.0 contains a local buffer overflow vulnerability in structured exception handling that allows attackers to execute arbitrary code by crafting malicious WAV files. Attackers can create a specially crafted WAV file with excessive data and ROP gadgets to overwrite the SEH ch…

πŸ“… Published: March 26, 2026, 1:24 p.m. πŸ”„ Last Modified: March 31, 2026, 8:09 p.m.

8.5

CVSS4.0

CVE-2018-25211 - Allok Video Splitter 3.1.1217 Buffer Overflow via License Name

Allok Video Splitter 3.1.1217 contains a buffer overflow vulnerability that allows local attackers to cause a denial of service or execute arbitrary code by supplying an oversized string in the License Name field. Attackers can craft a malicious payload exceeding 780 bytes, paste it into the Licens…

πŸ“… Published: March 26, 2026, 1:24 p.m. πŸ”„ Last Modified: March 27, 2026, 8:26 p.m.

0

CVSS3.1

CVE-2026-33343 - etcd: Nested etcd transactions bypass RBAC authorization checks

etcd is a distributed key-value store for the data of a distributed system. Prior to versions 3.4.42, 3.5.28, and 3.6.9, an authenticated user with RBAC restricted permissions on key ranges can use nested transactions to bypass all key-level authorization. This allows any authenticated user with di…

πŸ“… Published: March 26, 2026, 1:23 p.m. πŸ”„ Last Modified: March 27, 2026, 3:47 p.m.

8.1

CVSS3.1

CVE-2025-55261 - HCL Aftermarket DPC is affected by Missing Functional Level Access Control

HCL Aftermarket DPC is affected by Missing Functional Level Access Control which will allow attacker to escalate his privileges and may compromise the application and may steal and manipulate the data.

πŸ“… Published: March 26, 2026, 1:10 p.m. πŸ”„ Last Modified: March 27, 2026, 9:28 a.m.

8.3

CVSS3.1

CVE-2025-55262 - HCL Aftermarket DPC is affected by SQL Injection

HCL Aftermarket DPC is affected by SQL Injection which allows attacker to exploit this vulnerability to retrieve sensitive information from the database.

πŸ“… Published: March 26, 2026, 1:07 p.m. πŸ”„ Last Modified: March 27, 2026, 9:28 a.m.
Total resulsts: 349182
Page 859 of 34,919
Β« previous page Β» next page
Filters