Latest CVE Feed
-
10.0
CRITICALCVE-2017-14463
An exploitable access control vulnerability exists in the data, program, and function file permissions functionality of Allen Bradley Micrologix 1400 Series B FRN 21.2 and before. A specially crafted packet can cause a read or write operation resulting in... Read more
- EPSS Score: %36.93
- Published: Apr. 05, 2018
- Modified: Nov. 21, 2024
-
10.0
HIGHCVE-2017-12561
A remote code execution vulnerability in HPE intelligent Management Center (iMC) PLAT version Plat 7.3 E0504P4 and earlier was found.... Read more
Affected Products : intelligent_management_center- EPSS Score: %56.13
- Published: Feb. 15, 2018
- Modified: Nov. 21, 2024
-
10.0
HIGHCVE-2017-11294
An issue was discovered in Adobe Shockwave 12.2.9.199 and earlier. An exploitable memory corruption vulnerability exists. Successful exploitation could lead to arbitrary code execution.... Read more
- EPSS Score: %11.23
- Published: Dec. 09, 2017
- Modified: Apr. 20, 2025
-
10.0
HIGHCVE-2017-11771
The Microsoft Windows Search component on Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, 1607, and 1703, and Windows Server 2016 allows a remote code execut... Read more
Affected Products : windows_10 windows_7 windows_8.1 windows_rt_8.1 windows_server_2008 windows_server_2012 windows_server_2016- EPSS Score: %65.61
- Published: Oct. 13, 2017
- Modified: Apr. 20, 2025
-
10.0
HIGHCVE-2017-11250
Adobe Acrobat and Reader versions 2017.012.20098 and earlier, 2017.011.30066 and earlier, 2015.006.30355 and earlier, 11.0.22 and earlier have an exploitable out-of-bounds read vulnerability. Successful exploitation could lead to arbitrary code execution ... Read more
- EPSS Score: %17.15
- Published: May. 19, 2018
- Modified: Nov. 21, 2024
-
10.0
HIGHCVE-2017-11225
An issue was discovered in Adobe Flash Player 27.0.0.183 and earlier versions. This vulnerability is an instance of a use after free vulnerability in the Primetime SDK metadata functionality. The mismatch between an old and a new object can provide an att... Read more
- EPSS Score: %5.82
- Published: Dec. 09, 2017
- Modified: Apr. 20, 2025
-
10.0
HIGHCVE-2016-9555
The sctp_sf_ootb function in net/sctp/sm_statefuns.c in the Linux kernel before 4.8.8 lacks chunk-length checking for the first chunk, which allows remote attackers to cause a denial of service (out-of-bounds slab access) or possibly have unspecified othe... Read more
Affected Products : linux_kernel- EPSS Score: %32.55
- Published: Nov. 28, 2016
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2016-7407
The dropbearconvert command in Dropbear SSH before 2016.74 allows attackers to execute arbitrary code via a crafted OpenSSH key file.... Read more
Affected Products : dropbear_ssh- EPSS Score: %1.52
- Published: Mar. 03, 2017
- Modified: Apr. 20, 2025
-
10.0
HIGHCVE-2016-6997
Adobe Reader and Acrobat before 11.0.18, Acrobat and Acrobat Reader DC Classic before 15.006.30243, and Acrobat and Acrobat Reader DC Continuous before 15.020.20039 on Windows and OS X allow attackers to execute arbitrary code or cause a denial of service... Read more
- EPSS Score: %2.24
- Published: Oct. 13, 2016
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2016-6959
Adobe Reader and Acrobat before 11.0.18, Acrobat and Acrobat Reader DC Classic before 15.006.30243, and Acrobat and Acrobat Reader DC Continuous before 15.020.20039 on Windows and OS X allow attackers to execute arbitrary code or cause a denial of service... Read more
- EPSS Score: %2.24
- Published: Oct. 13, 2016
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2016-6942
Adobe Reader and Acrobat before 11.0.18, Acrobat and Acrobat Reader DC Classic before 15.006.30243, and Acrobat and Acrobat Reader DC Continuous before 15.020.20039 on Windows and OS X allow attackers to execute arbitrary code or cause a denial of service... Read more
- EPSS Score: %2.24
- Published: Oct. 13, 2016
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2016-6662
Oracle MySQL through 5.5.52, 5.6.x through 5.6.33, and 5.7.x through 5.7.15; MariaDB before 5.5.51, 10.0.x before 10.0.27, and 10.1.x before 10.1.17; and Percona Server before 5.5.51-38.1, 5.6.x before 5.6.32-78.0, and 5.7.x before 5.7.14-7 allow local us... Read more
- EPSS Score: %89.17
- Published: Sep. 20, 2016
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2016-4210
Integer overflow in Adobe Reader and Acrobat before 11.0.17, Acrobat and Acrobat Reader DC Classic before 15.006.30198, and Acrobat and Acrobat Reader DC Continuous before 15.017.20050 on Windows and OS X allows attackers to execute arbitrary code via uns... Read more
- EPSS Score: %2.85
- Published: Jul. 13, 2016
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2016-4193
Adobe Reader and Acrobat before 11.0.17, Acrobat and Acrobat Reader DC Classic before 15.006.30198, and Acrobat and Acrobat Reader DC Continuous before 15.017.20050 on Windows and OS X allow attackers to execute arbitrary code or cause a denial of service... Read more
- EPSS Score: %5.72
- Published: Jul. 13, 2016
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2016-4095
Adobe Reader and Acrobat before 11.0.18, Acrobat and Acrobat Reader DC Classic before 15.006.30243, and Acrobat and Acrobat Reader DC Continuous before 15.020.20039 on Windows and OS X allow attackers to execute arbitrary code or cause a denial of service... Read more
- EPSS Score: %4.28
- Published: Nov. 10, 2016
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2016-3499
Unspecified vulnerability in the Oracle WebLogic Server component in Oracle Fusion Middleware 12.1.3.0 and 12.2.1.0 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to Web Container.... Read more
Affected Products : weblogic_server- EPSS Score: %5.25
- Published: Jul. 21, 2016
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2016-2842
The doapr_outch function in crypto/bio/b_print.c in OpenSSL 1.0.1 before 1.0.1s and 1.0.2 before 1.0.2g does not verify that a certain memory allocation succeeds, which allows remote attackers to cause a denial of service (out-of-bounds write or memory co... Read more
Affected Products : openssl- EPSS Score: %77.28
- Published: Mar. 03, 2016
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2016-2805
Unspecified vulnerability in the browser engine in Mozilla Firefox ESR 38.x before 38.8 allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.... Read more
- EPSS Score: %0.89
- Published: Apr. 30, 2016
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2005-1850
Certain contributed scripts for ekg Gadu Gadu client 1.5 and earlier create temporary files insecurely, with unknown impact and attack vectors, a different vulnerability than CVE-2005-1916.... Read more
Affected Products : ekg- EPSS Score: %0.45
- Published: Jul. 19, 2005
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2016-2108
The ASN.1 implementation in OpenSSL before 1.0.1o and 1.0.2 before 1.0.2c allows remote attackers to execute arbitrary code or cause a denial of service (buffer underflow and memory corruption) via an ANY field in crafted serialized data, aka the "negativ... Read more
- EPSS Score: %65.50
- Published: May. 05, 2016
- Modified: Apr. 12, 2025