Latest CVE Feed
-
10.0
HIGHCVE-2016-9652
Multiple unspecified vulnerabilities in Google Chrome before 55.0.2883.75.... Read more
Affected Products : chrome- EPSS Score: %1.30
- Published: Nov. 20, 2019
- Modified: Nov. 21, 2024
-
10.0
HIGHCVE-2016-9369
An issue was discovered in Moxa NPort 5110 versions prior to 2.6, NPort 5130/5150 Series versions prior to 3.6, NPort 5200 Series versions prior to 2.8, NPort 5400 Series versions prior to 3.11, NPort 5600 Series versions prior to 3.7, NPort 5100A Series ... Read more
Affected Products : nport_5110_firmware nport_5100_series_firmware nport_5200_series_firmware nport_5400_series_firmware nport_5600_series_firmware nport_5100a_series_firmware nport_p5150a_series_firmware nport_5200a_series_firmware nport_5x50a1-m12_series_firmware nport_5600-8-dtl_series_firmware +42 more products- EPSS Score: %7.40
- Published: Feb. 13, 2017
- Modified: Apr. 20, 2025
-
10.0
CRITICALCVE-2016-9343
An issue was discovered in Rockwell Automation Logix5000 Programmable Automation Controller FRN 16.00 through 21.00 (excluding all firmware versions prior to FRN 16.00, which are not affected). By sending malformed common industrial protocol (CIP) packet,... Read more
Affected Products : softlogix_5800_controller_firmware rslogix_emulate_5000_firmware guardlogix_5570_controller_firmware flexlogix_l34_controller_firmware controllogix_l55_controller_firmware controllogix_5570_redundant_controller_firmware controllogix_5570_controller_firmware controllogix_5560_redundant_controller_firmware controllogix_5560_controller_firmware 1769_compactlogix_l3x_controller_firmware +22 more products- EPSS Score: %0.05
- Published: Feb. 13, 2017
- Modified: Apr. 20, 2025
-
10.0
HIGHCVE-2016-7018
Adobe Reader and Acrobat before 11.0.18, Acrobat and Acrobat Reader DC Classic before 15.006.30243, and Acrobat and Acrobat Reader DC Continuous before 15.020.20039 on Windows and OS X allow attackers to execute arbitrary code or cause a denial of service... Read more
- EPSS Score: %5.70
- Published: Oct. 13, 2016
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2016-6309
statem/statem.c in OpenSSL 1.1.0a does not consider memory-block movement after a realloc call, which allows remote attackers to cause a denial of service (use-after-free) or possibly execute arbitrary code via a crafted TLS session.... Read more
Affected Products : openssl- EPSS Score: %44.97
- Published: Sep. 26, 2016
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2016-5194
Unspecified vulnerabilities in Google Chrome before 54.0.2840.59.... Read more
Affected Products : chrome- EPSS Score: %0.25
- Published: Nov. 20, 2019
- Modified: Nov. 21, 2024
-
10.0
HIGHCVE-2016-4267
Adobe Reader and Acrobat before 11.0.17, Acrobat and Acrobat Reader DC Classic before 15.006.30198, and Acrobat and Acrobat Reader DC Continuous before 15.017.20050 on Windows and OS X allow attackers to execute arbitrary code or cause a denial of service... Read more
- EPSS Score: %2.11
- Published: Aug. 26, 2016
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2016-4259
Adobe Digital Editions before 4.5.2 allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2016-4256, CVE-2016-4257, CVE-2016-4258, CVE-2016-4260, CVE-2016-42... Read more
Affected Products : digital_editions- EPSS Score: %5.86
- Published: Sep. 16, 2016
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2016-4088
Adobe Reader and Acrobat before 11.0.16, Acrobat and Acrobat Reader DC Classic before 15.006.30172, and Acrobat and Acrobat Reader DC Continuous before 15.016.20039 on Windows and OS X allow attackers to execute arbitrary code or cause a denial of service... Read more
- EPSS Score: %3.31
- Published: May. 11, 2016
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2016-3236
The Web Proxy Auto Discovery (WPAD) protocol implementation in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, and Windows 10 Gold and 1511 mishandles proxy disc... Read more
Affected Products : windows_10 windows_7 windows_8.1 windows_rt_8.1 windows_server_2008 windows_server_2012 windows_vista- EPSS Score: %78.00
- Published: Jun. 16, 2016
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2016-2207
The AntiVirus Decomposer engine in Symantec Advanced Threat Protection (ATP); Symantec Data Center Security:Server (SDCS:S) 6.x through 6.6 MP1; Symantec Web Gateway; Symantec Endpoint Protection (SEP) before 12.1 RU6 MP5; Symantec Endpoint Protection (SE... Read more
Affected Products : linux_kernel macos endpoint_protection norton_power_eraser norton_360 norton_antivirus norton_internet_security message_gateway advanced_threat_protection csapi +10 more products- EPSS Score: %50.21
- Published: Jun. 30, 2016
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2016-1930
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 44.0 and Firefox ESR 38.x before 38.6 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via... Read more
- EPSS Score: %2.12
- Published: Jan. 31, 2016
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2016-1662
extensions/renderer/gc_callback.cc in Google Chrome before 50.0.2661.94 does not prevent fallback execution once the Garbage Collection callback has started, which allows remote attackers to cause a denial of service (use-after-free) or possibly have unsp... Read more
- EPSS Score: %15.29
- Published: May. 14, 2016
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2016-1635
extensions/renderer/render_frame_observer_natives.cc in Google Chrome before 49.0.2623.75 does not properly consider object lifetimes and re-entrancy issues during OnDocumentElementCreated handling, which allows remote attackers to cause a denial of servi... Read more
Affected Products : chrome- EPSS Score: %5.38
- Published: Mar. 06, 2016
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2016-1112
Adobe Reader and Acrobat before 11.0.16, Acrobat and Acrobat Reader DC Classic before 15.006.30172, and Acrobat and Acrobat Reader DC Continuous before 15.016.20039 on Windows and OS X allow attackers to obtain sensitive information via unspecified vector... Read more
- EPSS Score: %2.52
- Published: May. 11, 2016
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2016-10152
The read_config_file function in lib/hesiod.c in Hesiod 3.2.1 falls back to the ".athena.mit.edu" default domain when opening the configuration file fails, which allows remote attackers to gain root privileges by poisoning the DNS cache.... Read more
Affected Products : hesiod- EPSS Score: %1.87
- Published: Mar. 28, 2017
- Modified: Apr. 20, 2025
-
10.0
HIGHCVE-2016-0705
Double free vulnerability in the dsa_priv_decode function in crypto/dsa/dsa_ameth.c in OpenSSL 1.0.1 before 1.0.1s and 1.0.2 before 1.0.2g allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact v... Read more
- EPSS Score: %38.43
- Published: Mar. 03, 2016
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2016-0693
Unspecified vulnerability in Oracle Sun Solaris 10 and 11.3 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to the PAM LDAP module.... Read more
Affected Products : solaris- EPSS Score: %2.13
- Published: Apr. 21, 2016
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2016-0132
Microsoft .NET Framework 2.0 SP2, 3.0 SP2, 3.5, 3.5.1, 4.5.2, 4.6, and 4.6.1 mishandles signature validation for unspecified elements of XML documents, which allows remote attackers to spoof signatures via a modified document, aka ".NET XML Validation Sec... Read more
Affected Products : .net_framework- EPSS Score: %32.65
- Published: Mar. 09, 2016
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2015-8863
Off-by-one error in the tokenadd function in jv_parse.c in jq allows remote attackers to cause a denial of service (crash) via a long JSON-encoded number, which triggers a heap-based buffer overflow.... Read more
- EPSS Score: %15.66
- Published: May. 06, 2016
- Modified: Apr. 12, 2025