Vulnerabilities > Critical

DATE CVE VULNERABILITY TITLE RISK
2011-05-13 CVE-2011-2089 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Iconics Bizviz and Genesis32
Stack-based buffer overflow in the SetActiveXGUID method in the VersionInfo ActiveX control in GenVersion.dll 8.0.138.0 in the WebHMI subsystem in ICONICS BizViz 9.x before 9.22 and GENESIS32 9.x before 9.22 allows remote attackers to execute arbitrary code via a long string in the argument.
network
iconics CWE-119
critical
9.3
2011-05-13 CVE-2011-1854 Resource Management Errors vulnerability in HP Intelligent Management Center 5.0
Use-after-free vulnerability in HP Intelligent Management Center (IMC) 5.0 before E0101L02 allows remote attackers to execute arbitrary code via a long syslog packet, related to an exception handler.
network
low complexity
hp CWE-399
critical
10.0
2011-05-13 CVE-2011-1853 Improper Input Validation vulnerability in HP Intelligent Management Center 5.0
tftpserver.exe in HP Intelligent Management Center (IMC) 5.0 before E0101L02 allows remote attackers to execute arbitrary code via a (1) large or (2) invalid opcode field, related to a function pointer table.
network
low complexity
hp CWE-20
critical
10.0
2011-05-13 CVE-2011-1852 Buffer Errors vulnerability in HP Intelligent Management Center 5.0
Multiple stack-based buffer overflows in tftpserver.exe in HP Intelligent Management Center (IMC) 5.0 before E0101L02 allow remote attackers to execute arbitrary code via crafted packet content accompanying a (1) DATA or (2) ERROR opcode.
network
low complexity
hp CWE-119
critical
10.0
2011-05-13 CVE-2011-1851 Buffer Errors vulnerability in HP Intelligent Management Center 5.0
Stack-based buffer overflow in tftpserver.exe in HP Intelligent Management Center (IMC) 5.0 before E0101L02 allows remote attackers to execute arbitrary code via a long mode field.
network
low complexity
hp CWE-119
critical
10.0
2011-05-13 CVE-2011-1850 Buffer Errors vulnerability in HP Intelligent Management Center 5.0
Stack-based buffer overflow in the logging functionality in dbman.exe in HP Intelligent Management Center (IMC) 5.0 before E0101L02 allows remote attackers to execute arbitrary code via vectors related to a received action.
network
low complexity
hp CWE-119
critical
10.0
2011-05-13 CVE-2011-1849 Improper Input Validation vulnerability in HP Intelligent Management Center 5.0
tftpserver.exe in HP Intelligent Management Center (IMC) 5.0 before E0101L02 allows remote attackers to create or overwrite files, and subsequently execute arbitrary code, via a crafted WRQ request.
network
low complexity
hp CWE-20
critical
10.0
2011-05-13 CVE-2011-1848 Buffer Errors vulnerability in HP Intelligent Management Center 5.0
Stack-based buffer overflow in img.exe in HP Intelligent Management Center (IMC) 5.0 before E0101L02 allows remote attackers to execute arbitrary code via a crafted length field in a packet.
network
low complexity
hp CWE-119
critical
10.0
2011-05-13 CVE-2011-1270 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Microsoft Powerpoint 2002/2003
Buffer overflow in Microsoft PowerPoint 2002 SP3 and 2003 SP3 allows remote attackers to execute arbitrary code via a crafted PowerPoint document, aka "Presentation Buffer Overrun RCE Vulnerability."
network
microsoft CWE-119
critical
9.3
2011-05-13 CVE-2011-1269 Improper Input Validation vulnerability in Microsoft products
Microsoft PowerPoint 2002 SP3, 2003 SP3, and 2007 SP2; Office 2004 and 2008 for Mac; Open XML File Format Converter for Mac; and Office Compatibility Pack for Word, Excel, and PowerPoint 2007 File Formats SP2 make unspecified function calls during file parsing without proper handling of memory, which allows remote attackers to execute arbitrary code via a crafted PowerPoint document, aka "Presentation Memory Corruption RCE Vulnerability."
network
microsoft CWE-20
critical
9.3