Latest CVE Feed
-
9.3
HIGHCVE-2017-14262
On Samsung NVR devices, remote attackers can read the MD5 password hash of the 'admin' account via certain szUserName JSON data to cgi-bin/main-cgi, and login to the device with that hash in the szUserPasswd parameter.... Read more
Affected Products : srn_1670d_firmware srn_1000_firmware srn_472s_firmware srn_470d_firmware srn_1670d srn_1000 srn_472s srn_470d- EPSS Score: %21.02
- Published: Sep. 11, 2017
- Modified: Apr. 20, 2025
-
9.3
HIGHCVE-2017-10855
Untrusted search path vulnerability in FENCE-Explorer for Windows V8.4.1 and earlier allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.... Read more
- EPSS Score: %0.14
- Published: Sep. 15, 2017
- Modified: Apr. 20, 2025
-
9.3
HIGHCVE-2017-10858
Untrusted search path vulnerability in "i-filter 6.0 install program" file version 1.0.8.1 and earlier allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.... Read more
Affected Products : i-filter_installer- EPSS Score: %0.14
- Published: Sep. 15, 2017
- Modified: Apr. 20, 2025
-
9.3
CRITICALCVE-2023-26114
Versions of the package code-server before 4.10.1 are vulnerable to Missing Origin Validation in WebSockets handshakes. Exploiting this vulnerability can allow an adversary in specific scenarios to access data from and connect to the code-server instance.... Read more
Affected Products : code-server- EPSS Score: %0.05
- Published: Mar. 23, 2023
- Modified: Feb. 25, 2025
-
9.3
HIGHCVE-2017-0809
A remote code execution vulnerability in the Android media framework (libstagefright). Product: Android. Versions: 4.4.4, 5.0.2, 5.1.1, 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2, 8.0. Android ID: A-62673128.... Read more
Affected Products : android- EPSS Score: %0.84
- Published: Oct. 04, 2017
- Modified: Apr. 20, 2025
-
9.3
HIGHCVE-2017-0812
An elevation of privilege vulnerability in the Android media framework (audio hal). Product: Android. Versions: 7.0, 7.1.1, 7.1.2, 8.0. Android ID: A-62873231.... Read more
Affected Products : android- EPSS Score: %0.13
- Published: Oct. 04, 2017
- Modified: Apr. 20, 2025
-
9.3
HIGHCVE-2017-0826
An elevation of privilege vulnerability in the HTC bootloader. Product: Android. Versions: Android kernel. Android ID: A-34949781.... Read more
Affected Products : android- EPSS Score: %0.09
- Published: Oct. 04, 2017
- Modified: Apr. 20, 2025
-
9.3
HIGHCVE-2017-13993
An Uncontrolled Search Path or Element issue was discovered in i-SENS SmartLog Diabetes Management Software, Version 2.4.0 and prior versions. An uncontrolled search path element vulnerability has been identified which could be exploited by placing a spec... Read more
Affected Products : smartlog_diabetes_management_software- EPSS Score: %0.15
- Published: Oct. 05, 2017
- Modified: Apr. 20, 2025
-
9.3
HIGHCVE-2017-10864
Untrusted search path vulnerability in Installer of HIBUN Confidential File Viewer prior to 11.20.0001 allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.... Read more
Affected Products : confidential_file_viewer- EPSS Score: %0.11
- Published: Oct. 12, 2017
- Modified: Apr. 20, 2025
-
9.3
CRITICALCVE-2022-33288
Memory corruption due to buffer copy without checking the size of input in Core while sending SCM command to get write protection information.... Read more
Affected Products : aqt1000_firmware qam8295p_firmware qca6390_firmware qca6391_firmware qca6420_firmware qca6426_firmware qca6430_firmware qca6436_firmware qca6574au_firmware qca6595au_firmware +266 more products- EPSS Score: %0.05
- Published: Apr. 13, 2023
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2017-5996
The agent in Bomgar Remote Support 15.2.x before 15.2.3, 16.1.x before 16.1.5, and 16.2.x before 16.2.4 allows DLL hijacking because of weak %SYSTEMDRIVE%\ProgramData permissions.... Read more
- EPSS Score: %0.14
- Published: Oct. 26, 2017
- Modified: Apr. 20, 2025
-
9.3
HIGHCVE-2017-0832
A remote code execution vulnerability in the Android media framework (libmpeg2). Product: Android. Versions: 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2, 8.0. Android ID: A-62887820.... Read more
Affected Products : android- EPSS Score: %1.00
- Published: Nov. 16, 2017
- Modified: Apr. 20, 2025
-
9.3
HIGHCVE-2017-0834
A remote code execution vulnerability in the Android media framework (libmpeg2). Product: Android. Versions: 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2, 8.0. Android ID: A-63125953.... Read more
Affected Products : android- EPSS Score: %0.96
- Published: Nov. 16, 2017
- Modified: Apr. 20, 2025
-
9.3
HIGHCVE-2017-8140
The soundtrigger driver in P9 Plus smart phones with software versions earlier than VIE-AL10BC00B353 has a memory double free vulnerability. An attacker tricks a user into installing a malicious application, and the application can start multiple threads ... Read more
- EPSS Score: %0.11
- Published: Nov. 22, 2017
- Modified: Apr. 20, 2025
-
9.3
HIGHCVE-2017-8160
The Madapt Driver of some Huawei smart phones with software Earlier than Vicky-AL00AC00B172 versions,Vicky-AL00CC768B122,Vicky-TL00AC01B167,Earlier than Victoria-AL00AC00B172 versions,Victoria-TL00AC00B123,Victoria-TL00AC01B167 has a use after free (UAF) ... Read more
- EPSS Score: %0.20
- Published: Nov. 22, 2017
- Modified: Apr. 20, 2025
-
9.3
HIGHCVE-2017-11043
In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, in a WiFI driver function, an integer overflow leading to heap buffer overflow may potentially occur.... Read more
Affected Products : android- EPSS Score: %0.06
- Published: Dec. 05, 2017
- Modified: Apr. 20, 2025
-
9.3
HIGHCVE-2017-13151
A remote code execution vulnerability in the Android media framework (libmpeg2). Product: Android. Versions: 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2, 8.0. Android ID A-63874456.... Read more
Affected Products : android- EPSS Score: %0.46
- Published: Dec. 06, 2017
- Modified: Apr. 20, 2025
-
9.3
HIGHCVE-2017-15049
The ZoomLauncher binary in the Zoom client for Linux before 2.0.115900.1201 does not properly sanitize user input when constructing a shell command, which allows remote attackers to execute arbitrary code by leveraging the zoommtg:// scheme handler.... Read more
Affected Products : zoom- EPSS Score: %28.86
- Published: Dec. 19, 2017
- Modified: Apr. 20, 2025
-
9.3
HIGHCVE-2017-17409
This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Bitdefender Internet Security 2018. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a mal... Read more
Affected Products : internet_security_2018- EPSS Score: %1.28
- Published: Dec. 21, 2017
- Modified: Apr. 20, 2025
-
9.3
HIGHCVE-2017-17410
This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Bitdefender Internet Security 2018. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a mal... Read more
Affected Products : internet_security_2018- EPSS Score: %1.28
- Published: Dec. 21, 2017
- Modified: Apr. 20, 2025