High Severity Vulnerabilities

111.5K CVEs classified as high severity

HIGH
Total CVEs
111.5K
Vulnerabilities
Avg CVSS
8.4
High
Max CVSS
10.0
Highest
Min CVSS
7.2
Lowest

Browse by Severity

High Severity CVEs

Page 4627 of 4645
CVSS:10.0(Critical)

Buffer overflow in WU-FTPD and related FTP servers allows remote attackers to gain root privileges via macro variables in a message file.

CVSS:10.0(Critical)

Buffer overflow in WU-FTPD and related FTP servers allows remote attackers to gain root privileges via MAPPING_CHDIR.

CVSS:10.0(Critical)

Buffer overflow in Internet Explorer 4.0 via EMBED tag.

CVSS:7.5(High)

DHCP clients with ICMP Router Discovery Protocol (IRDP) enabled allow remote attackers to modify their default routes.

CWE-161999
CVSS:10.0(Critical)

Buffer overflow in IIS 4.0 allows remote attackers to cause a denial of service via a malformed request for files with .HTR, .IDC, or .STM extensions.

CVSS:7.2(High)

Buffer overflow in Vixie cron allows local users to gain root access via a long MAILTO environment variable in a crontab file.

CVSS:7.2(High)

ucbmail allows remote attackers to execute commands via shell metacharacters that are passed to it from INN.

CVSS:7.2(High)

Buffer overflow in UnixWare xauto program allows local users to gain root privilege.

CVSS:7.2(High)

UnixWare programs that dump core allow a local user to modify files via a symlink attack on the ./core.pid file.

CVSS:10.0(Critical)

Buffer overflow in Netscape Enterprise Server and Netscape FastTrack Server allows remote attackers to gain privileges via the HTTP Basic Authentication procedure.

CVSS:7.2(High)

IBM WebSphere sets permissions that allow a local user to modify a deinstallation script or its data files stored in /usr/bin.

CVSS:7.2(High)

Buffer overflow in SCO su program allows local users to gain root access via a long username.

CVSS:7.2(High)

Buffer overflow in CDE mailtool allows local users to gain root privileges via a long MIME Content-Type.

CVSS:7.2(High)

Buffer overflow in CDE dtmail and dtmailpr programs allows local users to gain privileges via a long -f option.

CVSS:7.2(High)

Windows NT Task Scheduler installed with Internet Explorer 5 allows a user to gain privileges by modifying the job after it has been scheduled.

CVSS:10.0(Critical)

UnixWare uidadmin allows local users to modify arbitrary files via a symlink attack.

CVSS:10.0(Critical)

Buffer overflow in RSAREF2 via the encryption and decryption functions in the RSAREF library.

CVSS:10.0(Critical)

Buffer overflow in NFS server on Linux allows attackers to execute commands via a long pathname.