Vulnerabilities > High

DATE CVE VULNERABILITY TITLE RISK
2018-02-08 CVE-2014-4145 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Microsoft Internet Explorer 11
Microsoft Internet Explorer 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2014-2810, CVE-2014-2811, CVE-2014-2822, CVE-2014-2823, CVE-2014-4057, and CVE-2014-8985.
network
high complexity
microsoft CWE-119
7.5
2018-02-08 CVE-2014-4112 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Microsoft Internet Explorer 11
Microsoft Internet Explorer 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2014-0304.
network
high complexity
microsoft CWE-119
7.5
2018-02-08 CVE-2014-4066 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Microsoft Internet Explorer 11
Microsoft Internet Explorer 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2014-2787, CVE-2014-2790, CVE-2014-2802, and CVE-2014-2806.
network
high complexity
microsoft CWE-119
7.5
2018-02-08 CVE-2013-3553 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Nitropdf Nitro PRO and Nitro Reader
Nitro Pro 7.5.0.22 and earlier and Nitro Reader 2.5.0.36 and earlier allow remote attackers to execute arbitrary code via a crafted PDF file.
local
low complexity
nitropdf CWE-119
7.8
2018-02-08 CVE-2013-3552 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Nitropdf Nitro PRO and Nitro Reader
Nitro Pro 7.5.0.29 and earlier and Nitro Reader 2.5.0.45 and earlier allow remote attackers to execute arbitrary code via a crafted PDF file.
local
low complexity
nitropdf CWE-119
7.8
2018-02-08 CVE-2013-2830 Use After Free vulnerability in Sumatrapdfreader Sumatrapdf
Use-after-free vulnerability in SumatraPDF Reader 2.x before 2.2.1 allows remote attackers to execute arbitrary code via a crafted PDF file.
local
low complexity
sumatrapdfreader CWE-416
7.8
2018-02-08 CVE-2012-5360 Improper Input Validation vulnerability in Ffmpeg
Libavcodec in FFmpeg before 0.11 allows remote attackers to execute arbitrary code via a crafted QT file.
network
low complexity
ffmpeg CWE-20
8.8
2018-02-08 CVE-2012-5359 Improper Input Validation vulnerability in Ffmpeg
Libavcodec in FFmpeg before 0.11 allows remote attackers to execute arbitrary code via a crafted ASF file.
network
low complexity
ffmpeg CWE-20
8.8
2018-02-08 CVE-2018-1162 Unspecified vulnerability in Quest Netvault Backup 11.2.0.13
This vulnerability allows remote attackers to create a denial-of-service condition on vulnerable installations of Quest NetVault Backup 11.2.0.13.
network
low complexity
quest
8.1
2018-02-08 CVE-2017-7351 SQL Injection vulnerability in Vanderbilt Redcap 7.0.0
A SQL injection issue exists in a file upload handler in REDCap 7.x before 7.0.11 via a trailing substring to SendITController:upload.
network
low complexity
vanderbilt CWE-89
8.8