Vulnerabilities > Critical

DATE CVE VULNERABILITY TITLE RISK
2014-04-12 CVE-2014-0349 Remote Code Execution vulnerability in J2K-Codec
Multiple unspecified vulnerabilities in J2k-Codec allow remote attackers to execute arbitrary code via a crafted JPEG 2000 file.
network
low complexity
j2k-codec
critical
10.0
2014-04-11 CVE-2014-1209 Improper Input Validation vulnerability in VMWare Vsphere Client
VMware vSphere Client 4.0, 4.1, 5.0 before Update 3, and 5.1 before Update 2 does not properly validate updates to Client files, which allows remote attackers to trigger the downloading and execution of an arbitrary program via unspecified vectors.
network
vmware CWE-20
critical
9.3
2014-04-08 CVE-2014-1760 Buffer Errors vulnerability in Microsoft Internet Explorer 11
Microsoft Internet Explorer 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability."
network
microsoft CWE-119
critical
9.3
2014-04-08 CVE-2014-1759 Remote Code Execution vulnerability in Microsoft Publisher 2003/2007
pubconv.dll in Microsoft Publisher 2003 SP3 and 2007 SP3 allows remote attackers to execute arbitrary code or cause a denial of service (incorrect pointer dereference and application crash) via a crafted .pub file, aka "Arbitrary Pointer Dereference Vulnerability."
network
microsoft
critical
9.3
2014-04-08 CVE-2014-1758 Buffer Errors vulnerability in Microsoft Word 2003
Stack-based buffer overflow in Microsoft Word 2003 SP3 allows remote attackers to execute arbitrary code via a crafted document, aka "Microsoft Word Stack Overflow Vulnerability."
network
microsoft CWE-119
critical
9.3
2014-04-08 CVE-2014-1757 Buffer Errors vulnerability in Microsoft Office Compatibility Pack and Word
Microsoft Word 2007 SP3 and 2010 SP1 and SP2, and Office Compatibility Pack SP3, allocates memory incorrectly for file conversions from a binary (aka .doc) format to a newer format, which allows remote attackers to execute arbitrary code via a crafted document, aka "Microsoft Office File Format Converter Vulnerability."
network
microsoft CWE-119
critical
9.3
2014-04-08 CVE-2014-1755 Buffer Errors vulnerability in Microsoft Internet Explorer 9
Microsoft Internet Explorer 9 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2014-0235 and CVE-2014-1751.
network
microsoft CWE-119
critical
9.3
2014-04-08 CVE-2014-1753 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Microsoft Internet Explorer
Microsoft Internet Explorer 6 through 9 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability."
network
microsoft CWE-119
critical
9.3
2014-04-08 CVE-2014-1752 Buffer Errors vulnerability in Microsoft Internet Explorer 6/7
Microsoft Internet Explorer 6 and 7 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability."
network
microsoft CWE-119
critical
9.3
2014-04-08 CVE-2014-1751 Buffer Errors vulnerability in Microsoft Internet Explorer 9
Microsoft Internet Explorer 9 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2014-0235 and CVE-2014-1755.
network
microsoft CWE-119
critical
9.3