Latest CVE Feed

Following is the list of latest published vulnerabilities. You can filter the list based on the severity of the vulnerability, whether it is actively exploited (also known as CISA KEV List) or remotely exploitable. You can also sort the list based on the published date, last updated date, or CVSS score.
  • 10.0

    HIGH
    CVE-2013-7442

    GE Healthcare Centricity PACS Workstation 4.0 and 4.0.1 has a password of (1) CANal1 for the Administrator user and (2) iis for the IIS user, which has unspecified impact and attack vectors related to TimbuktuPro. NOTE: it is not clear whether this passw... Read more

    • EPSS Score: %0.62
    • Published: Aug. 04, 2015
    • Modified: Apr. 12, 2025
  • 10.0

    CRITICAL
    CVE-2021-2244

    Vulnerability in the Hyperion Analytic Provider Services product of Oracle Hyperion (component: JAPI) and Essbase Analytic Provider Services product of Oracle Essbase (component: JAPI). Supported versions that are affected are Hyperion Analytic Provider S... Read more

    • EPSS Score: %2.07
    • Published: Apr. 22, 2021
    • Modified: Nov. 21, 2024
  • 10.0

    HIGH
    CVE-2018-15890

    An issue was discovered in EthereumJ 1.8.2. There is Unsafe Deserialization in ois.readObject in mine/Ethash.java and decoder.readObject in crypto/ECKey.java. When a node syncs and mines a new block, arbitrary OS commands can be run on the server.... Read more

    Affected Products : ethereumj
    • EPSS Score: %0.78
    • Published: Jun. 20, 2019
    • Modified: Nov. 21, 2024
  • 10.0

    HIGH
    CVE-2019-20025

    Certain builds of NEC SV9100 software could allow an unauthenticated, remote attacker to log into a device running an affected release with a hardcoded username and password, aka a Static Credential Vulnerability. The vulnerability is due to an undocument... Read more

    Affected Products : sv9100_firmware sv9100
    • EPSS Score: %2.00
    • Published: Jul. 29, 2020
    • Modified: Nov. 21, 2024
  • 10.0

    CRITICAL
    CVE-2021-2317

    Vulnerability in the Oracle Cloud Infrastructure Storage Gateway product of Oracle Storage Gateway (component: Management Console). The supported version that is affected is Prior to 1.4. Easily exploitable vulnerability allows unauthenticated attacker wi... Read more

    • EPSS Score: %2.09
    • Published: Apr. 22, 2021
    • Modified: Nov. 21, 2024
  • 10.0

    HIGH
    CVE-2011-3143

    Use-after-free vulnerability in Control Microsystems ClearSCADA 2005, 2007, and 2009 before R2.3 and R1.4, as used in SCX before 67 R4.5 and 68 R3.9, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via unsp... Read more

    Affected Products : clearscada scx_67 scx_68
    • EPSS Score: %1.93
    • Published: Aug. 16, 2011
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2020-11137

    Integer multiplication overflow resulting in lower buffer size allocation than expected causes memory access out of bounds resulting in possible device instability in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, S... Read more

    Affected Products : apq8009 apq8009w apq8017 apq8030 apq8037 apq8052 apq8053 apq8056 apq8062 apq8064 +481 more products
    • EPSS Score: %0.33
    • Published: Jan. 21, 2021
    • Modified: Nov. 21, 2024
  • 10.0

    HIGH
    CVE-2016-10386

    In all Qualcomm products with Android releases from CAF using the Linux kernel, an array index out of bounds vulnerability exists in LPP.... Read more

    Affected Products : android
    • EPSS Score: %0.25
    • Published: Aug. 18, 2017
    • Modified: Apr. 20, 2025
  • 10.0

    HIGH
    CVE-2016-10392

    In all Qualcomm products with Android releases from CAF using the Linux kernel, a driver can potentially leak kernel memory.... Read more

    Affected Products : android
    • EPSS Score: %0.25
    • Published: Aug. 18, 2017
    • Modified: Apr. 20, 2025
  • 10.0

    CRITICAL
    CVE-2022-1517

    LRM utilizes elevated privileges. An unauthenticated malicious actor can upload and execute code remotely at the operating system level, which can allow an attacker to change settings, configurations, software, or access sensitive data on the affected pro... Read more

    • EPSS Score: %0.25
    • Published: Jun. 24, 2022
    • Modified: Nov. 21, 2024
  • 10.0

    HIGH
    CVE-2020-11168

    u'Null-pointer dereference can occur while accessing data buffer beyond its size that leads to access the buffer beyond its range' in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Vo... Read more

    • EPSS Score: %0.28
    • Published: Nov. 12, 2020
    • Modified: Nov. 21, 2024
  • 10.0

    HIGH
    CVE-2011-3322

    Core Server HMI Service (Coreservice.exe) in Scadatec Limited Procyon SCADA 1.06, and other versions before 1.14, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long password to the Telnet (TCP/23) p... Read more

    Affected Products : procyon_scada
    • EPSS Score: %79.23
    • Published: Sep. 15, 2011
    • Modified: Apr. 11, 2025
  • 10.0

    HIGH
    CVE-2016-10436

    In Android before 2018-04-05 or earlier security patch level on Qualcomm Small Cell SoC, Snapdragon Mobile, and Snapdragon Wear FSM9055, IPQ4019, IPQ8064, MDM9206, MDM9607, MDM9635M, MDM9640, MDM9650, MSM8909W, QCA4531, QCA9980, SD 210/SD 212/SD 205, SD 4... Read more

    • EPSS Score: %0.22
    • Published: Apr. 18, 2018
    • Modified: Nov. 21, 2024
  • 10.0

    HIGH
    CVE-2005-1131

    Unknown vulnerability in Veritas i3 Focalpoint Server 7.1 and earlier has unknown attack vectors and unknown but "critical" impact.... Read more

    Affected Products : i3_focalpoint_server
    • EPSS Score: %0.67
    • Published: May. 02, 2005
    • Modified: Apr. 03, 2025
  • 10.0

    HIGH
    CVE-2019-20584

    An issue was discovered on Samsung mobile devices with O(8.x) and P(9.0) (with TEEGRIS) software. There is type confusion in the HDCP Trustlet, leading to arbitrary code execution. The Samsung ID is SVE-2019-14850 (August 2019).... Read more

    Affected Products : android
    • EPSS Score: %0.20
    • Published: Mar. 24, 2020
    • Modified: Nov. 21, 2024
  • 10.0

    HIGH
    CVE-2020-11184

    u'Possible buffer overflow will occur in video while parsing mp4 clip with crafted esds atom size.' in Snapdragon Auto, Snapdragon Compute, Snapdragon Industrial IOT, Snapdragon Mobile in QCM4290, QCS4290, QM215, QSM8350, SA6145P, SA6155, SA6155P, SA8155,... Read more

    • EPSS Score: %0.43
    • Published: Nov. 12, 2020
    • Modified: Nov. 21, 2024
  • 10.0

    HIGH
    CVE-2019-20622

    An issue was discovered on Samsung mobile devices with N(7.x), O(8.x), and P(9.0) (Exynos chipsets) software. There is a baseband stack overflow. The Samsung ID is SVE-2018-13188 (February 2019).... Read more

    Affected Products : android
    • EPSS Score: %0.18
    • Published: Mar. 24, 2020
    • Modified: Nov. 21, 2024
  • 10.0

    HIGH
    CVE-2022-20171

    Product: AndroidVersions: Android kernelAndroid ID: A-215565667References: N/A... Read more

    Affected Products : android
    • EPSS Score: %0.13
    • Published: Jun. 15, 2022
    • Modified: Nov. 21, 2024
  • 10.0

    HIGH
    CVE-2022-20210

    The UE and the EMM communicate with each other using NAS messages. When a new NAS message arrives from the EMM, the modem parses it and fills in internal objects based on the received data. A bug in the parsing code could be used by an attacker to remotel... Read more

    Affected Products : android
    • EPSS Score: %11.16
    • Published: Jun. 15, 2022
    • Modified: Nov. 21, 2024
  • 10.0

    HIGH
    CVE-2022-20238

    'remap_pfn_range' here may map out of size kernel memory (for example, may map the kernel area), and because the 'vma->vm_page_prot' can also be controlled by userspace, so userspace may map the kernel area to be writable, which is easy to be exploitedPro... Read more

    Affected Products : android
    • EPSS Score: %0.17
    • Published: Jul. 13, 2022
    • Modified: Nov. 21, 2024
Showing 20 of 290979 Results