Vulnerabilities > Critical

DATE CVE VULNERABILITY TITLE RISK
2013-07-31 CVE-2013-1377 Buffer Errors vulnerability in Adobe Digital Editions 2.0.0
Adobe Digital Editions 2.x before 2.0.1 allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors.
network
low complexity
adobe CWE-119
critical
10.0
2013-07-29 CVE-2013-0723 Buffer Errors vulnerability in Kingsoft Spreadsheets 2012 8.1.0.3030
Multiple heap-based buffer overflows in etxrw.dll in Kingsoft Spreadsheets 2012 8.1.0.3030 allow remote attackers to cause a denial of service (memory corruption and crash) or possibly execute arbitrary code via a crafted spreadsheet file.
network
kingsoft CWE-119
critical
9.3
2013-07-29 CVE-2013-4800 Remote Code Execution vulnerability in HP LoadRunner
Unspecified vulnerability in HP LoadRunner before 11.52 allows remote attackers to execute arbitrary code via unknown vectors, aka ZDI-CAN-1735.
network
hp
critical
9.3
2013-07-29 CVE-2013-4798 Remote Code Execution vulnerability in HP LoadRunner
Unspecified vulnerability in HP LoadRunner before 11.52 allows remote attackers to execute arbitrary code via unknown vectors, aka ZDI-CAN-1705.
network
low complexity
hp
critical
10.0
2013-07-26 CVE-2013-4937 Unspecified vulnerability in Asus products
Multiple unspecified vulnerabilities in the AiCloud feature on the ASUS RT-AC66U, RT-N66U, RT-N65U, RT-N14U, RT-N16, RT-N56U, and DSL-N55U with firmware before 3.0.4.372 have unknown impact and attack vectors.
network
low complexity
asus
critical
10.0
2013-07-25 CVE-2013-3430 Improper Authentication vulnerability in Cisco Video Surveillance Manager
Cisco Video Surveillance Manager (VSM) before 7.0.0 allows remote attackers to obtain sensitive configuration, archive, and log information via unspecified vectors, related to the Cisco_VSBWT (aka Broadware sample code) package, aka Bug ID CSCsv37288.
network
low complexity
cisco CWE-287
critical
9.0
2013-07-23 CVE-2013-3012 Arbitrary Code Execution vulnerability in IBM Java
Unspecified vulnerability in the Java Runtime Environment (JRE) in IBM Java 1.4.2 before 1.4.2 SR13-FP18, 5.0 before 5.0 SR16-FP3, 6 before 6 SR14, 6.0.1 before 6.0.1 SR6, and 7 before 7 SR5 allows remote attackers to affect confidentiality, availability, and integrity via unknown vectors, a different vulnerability than CVE-2013-3009 and CVE-2013-3011.
network
ibm
critical
9.3
2013-07-23 CVE-2013-3011 Arbitrary Code Execution vulnerability in IBM Java
Unspecified vulnerability in the Java Runtime Environment (JRE) in IBM Java 1.4.2 before 1.4.2 SR13-FP18, 5.0 before 5.0 SR16-FP3, 6 before 6 SR14, 6.0.1 before 6.0.1 SR6, and 7 before 7 SR5 allows remote attackers to affect confidentiality, availability, and integrity via unknown vectors, a different vulnerability than CVE-2013-3009 and CVE-2013-3012.
network
ibm
critical
9.3
2013-07-23 CVE-2013-3010 Arbitrary Code Execution vulnerability in IBM Java
Unspecified vulnerability in the Java Runtime Environment (JRE) in IBM Java 6.0.1 before 6.0.1 SR6 and 7 before 7 SR5 allows remote attackers to affect confidentiality, availability, and integrity via unknown vectors, a different vulnerability than CVE-2013-3007.
network
ibm
critical
9.3
2013-07-23 CVE-2013-3009 Arbitrary Code Execution vulnerability in IBM Java
The com.ibm.CORBA.iiop.ClientDelegate class in IBM Java 1.4.2 before 1.4.2 SR13-FP18, 5.0 before 5.0 SR16-FP3, 6 before 6 SR14, 6.0.1 before 6.0.1 SR6, and 7 before 7 SR5 improperly exposes the invoke method of the java.lang.reflect.Method class, which allows remote attackers to call setSecurityManager and bypass a sandbox protection mechanism via vectors related to the AccessController doPrivileged block.
network
ibm
critical
9.3