Latest CVE Feed
-
10.0
HIGHCVE-2016-5745
F5 BIG-IP LTM systems 11.x before 11.2.1 HF16, 11.3.x, 11.4.x before 11.4.1 HF11, 11.5.0, 11.5.1 before HF11, 11.5.2, 11.5.3, 11.5.4 before HF2, 11.6.0 before HF8, 11.6.1 before HF1, 12.0.0 before HF4, and 12.1.0 before HF2 allow remote attackers to modif... Read more
Affected Products : big-ip_local_traffic_manager- EPSS Score: %3.89
- Published: Oct. 05, 2016
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2016-5678
NUUO NVRmini 2 1.0.0 through 3.0.0 and NUUO NVRsolo 1.0.0 through 3.0.0 have hardcoded root credentials, which allows remote attackers to obtain administrative access via unspecified vectors.... Read more
- EPSS Score: %38.16
- Published: Aug. 31, 2016
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2016-5670
Crestron Electronics DM-TXRX-100-STR devices with firmware before 1.3039.00040 have a hardcoded password of admin for the admin account, which makes it easier for remote attackers to obtain access via the web management interface.... Read more
- EPSS Score: %2.35
- Published: Aug. 03, 2016
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2016-5636
Integer overflow in the get_data function in zipimport.c in CPython (aka Python) before 2.7.12, 3.x before 3.4.5, and 3.5.x before 3.5.2 allows remote attackers to have unspecified impact via a negative data size value, which triggers a heap-based buffer ... Read more
Affected Products : python- EPSS Score: %66.94
- Published: Sep. 02, 2016
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2016-5411
/var/lib/ovirt-engine/setup/engine-DC-config.py in Red Hat QuickStart Cloud Installer (QCI) before 1.0 GA is created world readable and contains the root password of the deployed system.... Read more
- EPSS Score: %0.41
- Published: Jun. 13, 2017
- Modified: Apr. 20, 2025
-
10.0
HIGHCVE-2016-5179
Chrome OS before 53.0.2785.144 allows remote attackers to execute arbitrary commands at boot.... Read more
Affected Products : chrome_os- EPSS Score: %3.35
- Published: Mar. 07, 2018
- Modified: Nov. 21, 2024
-
10.0
HIGHCVE-2016-5071
Sierra Wireless GX 440 devices with ALEOS firmware 4.3.2 execute the management web application as root.... Read more
- EPSS Score: %0.03
- Published: Apr. 10, 2017
- Modified: Apr. 20, 2025
-
10.0
HIGHCVE-2016-5066
Sierra Wireless GX 440 devices with ALEOS firmware 4.3.2 have weak passwords for admin, rauser, sconsole, and user.... Read more
- EPSS Score: %0.03
- Published: Apr. 10, 2017
- Modified: Apr. 20, 2025
-
10.0
HIGHCVE-2016-4899
The datamover module in the Linux version of NovaBACKUP DataCenter before 09.06.03.0353 is vulnerable to remote command execution via unspecified attack vectors.... Read more
Affected Products : novabackup_datacenter- EPSS Score: %4.48
- Published: Apr. 13, 2017
- Modified: Apr. 20, 2025
-
10.0
HIGHCVE-2016-4702
Audio in Apple iOS before 10, OS X before 10.12, tvOS before 10, and watchOS before 3 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors.... Read more
- EPSS Score: %14.12
- Published: Sep. 25, 2016
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2016-4573
Fortinet FortiSwitch FSW-108D-POE, FSW-124D, FSW-124D-POE, FSW-224D-POE, FSW-224D-FPOE, FSW-248D-POE, FSW-248D-FPOE, FSW-424D, FSW-424D-POE, FSW-424D-FPOE, FSW-448D, FSW-448D-POE, FSW-448D-FPOE, FSW-524D, FSW-524D-FPOE, FSW-548D, FSW-548D-FPOE, FSW-1024D,... Read more
Affected Products : fortiswitch fsw-1024d fsw-1048d fsw-108d-poe fsw-124d fsw-124d-poe fsw-224d-fpoe fsw-224d-poe fsw-248d-fpoe fsw-248d-poe +12 more products- EPSS Score: %7.63
- Published: Sep. 09, 2016
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2016-4520
Schneider Electric Pelco Digital Sentry Video Management System with firmware before 7.14 has hardcoded credentials, which allows remote attackers to obtain access, and consequently execute arbitrary code, via unspecified vectors.... Read more
Affected Products : pelco_digital_sentry_video_management_system_firmware- EPSS Score: %2.71
- Published: Jul. 15, 2016
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2016-4422
The pam_sm_authenticate function in pam_sshauth.c in libpam-sshauth might allow context-dependent attackers to bypass authentication or gain privileges via a system user account.... Read more
- EPSS Score: %0.52
- Published: May. 06, 2016
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2016-4350
Multiple SQL injection vulnerabilities in the Web Services web server in SolarWinds Storage Resource Monitor (SRM) Profiler (formerly Storage Manager (STM)) before 6.2.3 allow remote attackers to execute arbitrary SQL commands via the (1) ScriptSchedule p... Read more
Affected Products : storage_resource_monitor- EPSS Score: %47.63
- Published: May. 09, 2016
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2016-4328
MEDHOST Perioperative Information Management System (aka PIMS or VPIMS) before 2015R1 has hardcoded credentials, which makes it easier for remote attackers to obtain sensitive information via direct requests to the application database server.... Read more
Affected Products : perioperative_information_management_system- EPSS Score: %0.43
- Published: Jun. 10, 2016
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2016-4263
Use-after-free vulnerability in Adobe Digital Editions before 4.5.2 allows attackers to execute arbitrary code via unspecified vectors.... Read more
Affected Products : digital_editions- EPSS Score: %1.97
- Published: Sep. 16, 2016
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2016-4258
Adobe Digital Editions before 4.5.2 allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2016-4256, CVE-2016-4257, CVE-2016-4259, CVE-2016-4260, CVE-2016-42... Read more
Affected Products : digital_editions- EPSS Score: %1.92
- Published: Sep. 16, 2016
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2016-4269
Adobe Reader and Acrobat before 11.0.17, Acrobat and Acrobat Reader DC Classic before 15.006.30198, and Acrobat and Acrobat Reader DC Continuous before 15.017.20050 on Windows and OS X allow attackers to execute arbitrary code or cause a denial of service... Read more
- EPSS Score: %5.72
- Published: Aug. 26, 2016
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2016-4209
Heap-based buffer overflow in Adobe Reader and Acrobat before 11.0.17, Acrobat and Acrobat Reader DC Classic before 15.006.30198, and Acrobat and Acrobat Reader DC Continuous before 15.017.20050 on Windows and OS X allows attackers to execute arbitrary co... Read more
- EPSS Score: %10.68
- Published: Jul. 13, 2016
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2016-4251
Adobe Reader and Acrobat before 11.0.17, Acrobat and Acrobat Reader DC Classic before 15.006.30198, and Acrobat and Acrobat Reader DC Continuous before 15.017.20050 on Windows and OS X allow attackers to execute arbitrary code or cause a denial of service... Read more
- EPSS Score: %7.72
- Published: Jul. 13, 2016
- Modified: Apr. 12, 2025