Latest CVE Feed
-
1.7
LOWCVE-2025-30218
Next.js is a React framework for building full-stack web applications. To mitigate CVE-2025-29927, Next.js validated the x-middleware-subrequest-id which persisted across multiple incoming requests. However, this subrequest ID is sent to all requests, eve... Read more
Affected Products : next.js- Published: Apr. 02, 2025
- Modified: Apr. 07, 2025
-
1.7
LOWCVE-2013-1499
Unspecified vulnerability in Oracle Sun Solaris 11 allows local users to affect availability via unknown vectors related to Network Configuration.... Read more
- EPSS Score: %0.05
- Published: Apr. 17, 2013
- Modified: Apr. 11, 2025
-
1.7
LOWCVE-2012-0174
Windows Firewall in tcpip.sys in Microsoft Windows Vista SP2, Windows Server 2008 SP2, R2, and R2 SP1, and Windows 7 Gold and SP1 does not properly enforce firewall rules for outbound broadcast packets, which allows remote attackers to obtain potentially ... Read more
- EPSS Score: %0.96
- Published: May. 09, 2012
- Modified: Apr. 11, 2025
-
1.7
LOWCVE-2015-4792
Unspecified vulnerability in Oracle MySQL Server 5.5.45 and earlier and 5.6.26 and earlier allows remote authenticated users to affect availability via unknown vectors related to Server : Partition, a different vulnerability than CVE-2015-4802.... Read more
Affected Products : ubuntu_linux fedora debian_linux enterprise_linux_desktop enterprise_linux_server enterprise_linux_workstation leap enterprise_linux_server_aus enterprise_linux_server_tus mysql +5 more products- EPSS Score: %1.02
- Published: Oct. 21, 2015
- Modified: Apr. 12, 2025
-
1.7
LOWCVE-2007-3700
Sun Java System Access Manager (formerly Java System Identity Server) before 20070710, when the message debug level is configured in the com.iplanet.services.debug.level property in AMConfig.properties, logs cleartext login passwords, which allows local u... Read more
Affected Products : java_system_access_manager- EPSS Score: %0.06
- Published: Jul. 11, 2007
- Modified: Apr. 09, 2025
-
1.7
LOWCVE-2016-0609
Unspecified vulnerability in Oracle MySQL 5.5.46 and earlier, 5.6.27 and earlier, and 5.7.9 and MariaDB before 5.5.47, 10.0.x before 10.0.23, and 10.1.x before 10.1.10 allows remote authenticated users to affect availability via unknown vectors related to... Read more
Affected Products : ubuntu_linux enterprise_linux debian_linux enterprise_linux_desktop enterprise_linux_server enterprise_linux_workstation leap enterprise_linux_server_aus enterprise_linux_server_eus mysql +6 more products- EPSS Score: %0.86
- Published: Jan. 21, 2016
- Modified: Apr. 12, 2025
-
1.7
LOWCVE-2006-0554
Linux kernel 2.6 before 2.6.15.5 allows local users to obtain sensitive information via a crafted XFS ftruncate call, which may return stale data.... Read more
Affected Products : linux_kernel- EPSS Score: %0.11
- Published: Mar. 07, 2006
- Modified: Apr. 03, 2025
-
1.7
LOWCVE-2011-2240
Unspecified vulnerability in the Oracle Universal Installer component in Oracle Database Server 10.1.0.5 allows local users to affect confidentiality via unknown vectors.... Read more
Affected Products : database_server- EPSS Score: %0.39
- Published: Jul. 20, 2011
- Modified: Apr. 11, 2025
-
1.7
LOWCVE-2011-0790
Unspecified vulnerability in Oracle Solaris 9 and 10 allows local users to affect confidentiality via unknown vectors related to wbem.... Read more
- EPSS Score: %0.05
- Published: Apr. 20, 2011
- Modified: Apr. 11, 2025
-
1.7
LOWCVE-2006-5749
The isdn_ppp_ccp_reset_alloc_state function in drivers/isdn/isdn_ppp.c in the Linux 2.4 kernel before 2.4.34-rc4 does not call the init_timer function for the ISDN PPP CCP reset state timer, which has unknown attack vectors and results in a system crash.... Read more
Affected Products : linux_kernel- EPSS Score: %0.08
- Published: Dec. 31, 2006
- Modified: Apr. 09, 2025
-
1.7
LOWCVE-2013-5865
Unspecified vulnerability in Oracle Solaris 11.1 allows local users to affect availability via unknown vectors related to Utility/User administration.... Read more
- EPSS Score: %0.13
- Published: Oct. 16, 2013
- Modified: Apr. 11, 2025
-
1.7
LOWCVE-2006-6510
An unspecified ActiveX control in SiteKiosk before 6.5.150 is installed "safe for scripting", which allows local users to bypass security protections and read arbitrary files via certain functions.... Read more
Affected Products : sitekiosk- EPSS Score: %0.08
- Published: Dec. 14, 2006
- Modified: Apr. 09, 2025
-
1.7
LOWCVE-2010-3406
Unspecified vulnerability in sa_snap in the bos.esagent fileset in IBM AIX 5.3 allows local users to leverage system group membership and delete files via unknown vectors.... Read more
Affected Products : aix- EPSS Score: %0.06
- Published: Sep. 16, 2010
- Modified: Apr. 11, 2025
-
1.7
LOWCVE-2005-2993
Unspecified vulnerability in the FTP Daemon (ftpd) for HP Tru64 UNIX 4.0F PK8 and other versions up to HP Tru64 UNIX 5.1B-3, and HP-UX B.11.00, B.11.04, B.11.11, and B.11.23, allows remote authenticated users to cause a denial of service (hang).... Read more
- EPSS Score: %0.18
- Published: Sep. 20, 2005
- Modified: Apr. 03, 2025
-
1.7
LOWCVE-2008-1754
Symantec Altiris Deployment Solution before 6.9.164 stores the Deployment Solution Agent (aka AClient) password in cleartext in memory, which allows local users to obtain sensitive information by dumping the AClient.exe process memory.... Read more
Affected Products : altiris_deployment_solution- EPSS Score: %0.08
- Published: Apr. 11, 2008
- Modified: Apr. 09, 2025
-
1.7
LOWCVE-2011-2312
Unspecified vulnerability in Oracle Solaris 10 allows local users to affect confidentiality, related to ZFS.... Read more
Affected Products : solaris- EPSS Score: %0.15
- Published: Oct. 18, 2011
- Modified: Apr. 11, 2025
-
1.7
LOWCVE-2003-0986
Various routines for the ppc64 architecture on Linux kernel 2.6 prior to 2.6.2 and 2.4 prior to 2.4.24 do not use the copy_from_user function when copying data from userspace to kernelspace, which crosses security boundaries and allows local users to caus... Read more
- EPSS Score: %0.06
- Published: Dec. 31, 2003
- Modified: Apr. 03, 2025
-
1.7
LOWCVE-2006-6286
Palm Desktop 4.1.4 and earlier stores user data with weak permissions under the application directory, which allows local users to obtain sensitive information (address books, calendar files, and todo lists of other users) via unspecified vectors. NOTE: ... Read more
Affected Products : palm_desktop- EPSS Score: %0.05
- Published: Dec. 04, 2006
- Modified: Apr. 09, 2025
-
1.7
LOWCVE-2009-1990
Unspecified vulnerability in the Business Intelligence Enterprise Edition component in Oracle Application Server 10.1.3.4.1 allows local users to affect confidentiality via unknown vectors.... Read more
Affected Products : application_server- EPSS Score: %0.11
- Published: Oct. 22, 2009
- Modified: Apr. 09, 2025
-
1.7
LOWCVE-2008-3973
Unspecified vulnerability in the SQL*Plus Windows GUI component in Oracle Database allows local users to affect confidentiality via unknown vectors.... Read more
- EPSS Score: %0.09
- Published: Jan. 14, 2009
- Modified: Apr. 09, 2025