Total CVEs

140,303

Critical Severity

3,711

High Severity

13,344

Last 7 Days

1,803
Quick preset (or use dates below)
Clear Filters
Showing 5,481 - 5,500 of 13,878 CVEs
CVE-2026-7044 MEDIUM - 6.3

A vulnerability was found in GreenCMS up to 2.3. Affected is the function themeadd of the file /index.php?m=admin&c=custom&a=themeadd. The manipulation results in unrestricted upload. The attack can be launched remotely. The exploit has been made public and could be used. This vulnerability ...

Published: Apr 26, 2026
Source: NVD
CVE-2026-7043 MEDIUM - 6.3

A vulnerability has been found in GreenCMS up to 2.3. This impacts the function pluginAddLocal of the file /index.php?m=admin&c=custom&a=pluginadd. The manipulation leads to unrestricted upload. The attack can be initiated remotely. The exploit has been disclosed to the public and may be use...

Published: Apr 26, 2026
Source: NVD
CVE-2018-25297 MEDIUM - 6.2

Wansview 1.0.2 contains a buffer overflow vulnerability that allows local attackers to crash the application by supplying oversized input strings. Attackers can inject 2000-byte payloads into the Camera name and DID number fields during camera addition to trigger application crashes.

Vendor: Wansview
Product: Wansview
Published: Apr 26, 2026
Source: NVD
CVE-2018-25296 MEDIUM - 5.5

P10 Central Management Software 1.4.13 contains a buffer overflow vulnerability in the login password field that allows local attackers to crash the application by submitting an oversized input string. Attackers can paste a 2000-byte payload into the password field and click login to trigger an appl...

Vendor: P10
Product: Central Management Software
Published: Apr 26, 2026
Source: NVD
CVE-2018-25295 MEDIUM - 6.2

ObserverIP Scan Tool 1.4.0.1 contains a denial of service vulnerability that allows local attackers to crash the application by submitting an excessively long string in the IP input field. Attackers can paste a 2000-byte buffer of repeated characters into the IP field and trigger a search operation ...

Vendor: P10
Product: ObserverIP Scan Tool
Published: Apr 26, 2026
Source: NVD
CVE-2018-25293 MEDIUM - 6.2

Prime95 29.4b7 contains a buffer overflow vulnerability in the PrimeNet connection dialog that allows local attackers to crash the application by supplying an excessively long string in the optional proxy password field. Attackers can trigger a denial of service by entering a 6000-byte payload into ...

Vendor: Mersenne
Product: Prime95
Published: Apr 26, 2026
Source: NVD
CVE-2018-25292 MEDIUM - 6.2

Bome Restorator 1793 contains a buffer overflow vulnerability that allows local attackers to crash the application by supplying an excessively long string in the Name field. Attackers can create a malicious payload exceeding 4000 bytes and paste it into the Name input field to trigger an application...

Vendor: Bome
Product: Restorator
Published: Apr 26, 2026
Source: NVD
CVE-2018-25291 MEDIUM - 6.2

Project64 2.3.2 contains a buffer overflow vulnerability in the Plugin Directory settings field that allows local attackers to crash the application by supplying an excessively long string. Attackers can input a 6000-byte payload into the Plugin Directory field through the Options > Settings >...

Vendor: Pj64-Emu
Product: Project64
Published: Apr 26, 2026
Source: NVD
CVE-2018-25290 MEDIUM - 6.2

Easyboot 6.6.0 contains a buffer overflow vulnerability in the Replace Text function that allows local attackers to crash the application by supplying an oversized string. Attackers can trigger the vulnerability by accessing File > Tools > Replace Text and pasting a 7000-byte payload into the ...

Vendor: Ezbsystems
Product: Easyboot
Published: Apr 26, 2026
Source: NVD
CVE-2018-25289 MEDIUM - 6.2

Softdisk 3.0.3 contains a buffer overflow vulnerability in the registration code dialog that allows local attackers to crash the application by supplying an oversized string. Attackers can trigger the vulnerability by entering a 6000-byte payload in the Registration Name field through the Help menu&...

Vendor: Ezbsystems
Product: Softdisk
Published: Apr 26, 2026
Source: NVD
CVE-2018-25288 MEDIUM - 6.2

StyleWriter 1.0 contains a buffer overflow vulnerability that allows local attackers to crash the application by supplying an excessively long string. Attackers can paste a 6000-byte payload into the Pattern to Find or Advice Message fields in the Add Pattern dialog to trigger a denial of service co...

Vendor: Editorsoftware
Product: StyleWriter
Published: Apr 26, 2026
Source: NVD
CVE-2018-25287 MEDIUM - 5.5

Drive Power Manager 1.10 contains a buffer overflow vulnerability that allows local attackers to crash the application by supplying an excessively long string in the Name field. Attackers can paste a 6000-byte payload into the Name field and click Register to trigger a denial of service condition.

Vendor: Hdtune
Product: Drive Power Manager
Published: Apr 26, 2026
Source: NVD
CVE-2018-25286 MEDIUM - 6.2

Easy PhotoResQ 1.0 contains a buffer overflow vulnerability that allows local attackers to crash the application by supplying an excessively long string in the Folder/filename field. Attackers can input a 6000-byte payload through the File Options dialog to trigger a denial of service condition.

Vendor: Hdtune
Product: Easy PhotoResQ
Published: Apr 26, 2026
Source: NVD
CVE-2018-25285 MEDIUM - 5.5

Fathom 2.4 contains a buffer overflow vulnerability in the Authorization Code field that allows local attackers to crash the application by submitting an oversized input string. Attackers can paste a 6000-byte payload into the Authorization Code field and click Activate to trigger a denial of servic...

Vendor: Fathom
Product: Fathom
Published: Apr 26, 2026
Source: NVD
CVE-2018-25284 MEDIUM - 6.2

HD Tune Pro 5.70 contains a buffer overflow vulnerability that allows local attackers to crash the application by supplying an excessively long string in the folder/file name field. Attackers can trigger a denial of service by entering a 6000-byte payload through the File > Options > Save dial...

Vendor: Hdtune
Product: HD Tune Pro
Published: Apr 26, 2026
Source: NVD
CVE-2018-25282 MEDIUM - 6.2

Nmap 7.70 contains a denial of service vulnerability that allows local attackers to crash the application by processing malicious XML files with exponential entity expansion. Attackers can create a crafted XML file with nested entity definitions and open it through ZenMap's scan import function...

Vendor: ZenMap
Product: ZenMap
Published: Apr 26, 2026
Source: NVD
CVE-2018-25281 MEDIUM - 5.5

iCash 7.6.5 contains a buffer overflow vulnerability that allows local attackers to crash the application by supplying an oversized payload through the Connect to Server dialog. Attackers can paste a 7000-byte string into the Host field and click Connect to trigger an application crash.

Vendor: Maxprog
Product: iCash
Published: Apr 26, 2026
Source: NVD
CVE-2018-25280 MEDIUM - 5.5

Infiltrator Network Security Scanner 4.6 contains a buffer overflow vulnerability that allows local attackers to crash the application by supplying an oversized input string. Attackers can paste a 6000-byte payload into the Scan Target field and trigger a denial of service condition when the Scan bu...

Vendor: Infiltration-Systems
Product: Infiltrator Network Security Scanner
Published: Apr 26, 2026
Source: NVD
CVE-2018-25279 MEDIUM - 6.2

jiNa OCR Image to Text 1.0 contains a denial of service vulnerability that allows local attackers to crash the application by processing a malformed PNG file. Attackers can create a specially crafted PNG file with an oversized buffer and trigger the crash when the application attempts to convert the...

Vendor: Convertimagetotext
Product: jiNa OCR Image to Text
Published: Apr 26, 2026
Source: NVD
CVE-2018-25278 MEDIUM - 6.2

PicaJet FX 2.6.5 contains a denial of service vulnerability that allows local attackers to crash the application by submitting oversized input to registration fields. Attackers can paste a 6000-byte buffer into the Registration Name and Registration Key fields via the Help menu's Register PicaJ...

Vendor: Picajet
Product: PicaJet FX
Published: Apr 26, 2026
Source: NVD