Latest CVE Feed
-
5.5
MEDIUMCVE-2017-0492
An elevation of privilege vulnerability in the System UI could enable a local malicious application to create a UI overlay covering the entire screen. This issue is rated as Moderate because it is a local bypass of user interaction requirements that would... Read more
Affected Products : android- EPSS Score: %0.08
- Published: Mar. 08, 2017
- Modified: Apr. 20, 2025
-
7.5
HIGHCVE-2016-5056
OSRAM SYLVANIA Osram Lightify Pro before 2016-07-26 uses only 8 hex digits for a PSK.... Read more
Affected Products : lightify_pro- EPSS Score: %0.18
- Published: Apr. 10, 2017
- Modified: Apr. 20, 2025
-
5.5
MEDIUMCVE-2015-8275
LVRTC eParakstitajs 3.0 (1.3.0) and edoc-libraries-2.5.4_01 allow attackers to write to arbitrary files via crafted EDOC files.... Read more
- EPSS Score: %0.16
- Published: Apr. 10, 2017
- Modified: Apr. 20, 2025
-
8.8
HIGHCVE-2015-6028
Castle Rock Computing SNMPc before 2015-12-17 has SQL injection via the sc parameter.... Read more
Affected Products : snmpc- EPSS Score: %0.21
- Published: Apr. 10, 2017
- Modified: Apr. 20, 2025
-
7.5
HIGHCVE-2015-2886
iBaby M6 allows remote attackers to obtain sensitive information, related to the ibabycloud.com service.... Read more
- EPSS Score: %0.32
- Published: Apr. 10, 2017
- Modified: Apr. 20, 2025
-
7.6
HIGHCVE-2017-0583
An elevation of privilege vulnerability in the Qualcomm CP access driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as Moderate because it first requires compromising a privil... Read more
- EPSS Score: %0.25
- Published: Apr. 07, 2017
- Modified: Apr. 20, 2025
-
7.6
HIGHCVE-2017-0572
An elevation of privilege vulnerability in the Broadcom Wi-Fi driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged pro... Read more
- EPSS Score: %0.25
- Published: Apr. 07, 2017
- Modified: Apr. 20, 2025
-
7.6
HIGHCVE-2017-0568
An elevation of privilege vulnerability in the Broadcom Wi-Fi driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged pro... Read more
- EPSS Score: %0.25
- Published: Apr. 07, 2017
- Modified: Apr. 20, 2025
-
7.6
HIGHCVE-2017-0565
An elevation of privilege vulnerability in the MediaTek thermal driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged p... Read more
Affected Products : android- EPSS Score: %0.08
- Published: Apr. 07, 2017
- Modified: Apr. 20, 2025
-
5.5
MEDIUMCVE-2017-0559
An information disclosure vulnerability in libskia could enable a local malicious application to access data outside of its permission levels. This issue is rated as Moderate because it could be used to access data without permission. Product: Android. Ve... Read more
Affected Products : android- EPSS Score: %0.11
- Published: Apr. 07, 2017
- Modified: Apr. 20, 2025
-
5.5
MEDIUMCVE-2017-0547
An information disclosure vulnerability in libmedia in Mediaserver could enable a local malicious application to access data outside of its permission levels. This issue is rated as High because it is a general bypass for operating system protections that... Read more
Affected Products : android- EPSS Score: %0.12
- Published: Apr. 07, 2017
- Modified: Apr. 20, 2025
-
9.3
HIGHCVE-2017-0544
An elevation of privilege vulnerability in CameraBase could enable a local malicious application to execute arbitrary code. This issue is rated as High because it is a local arbitrary code execution in a privileged process. Product: Android. Versions: 4.4... Read more
Affected Products : android- EPSS Score: %0.07
- Published: Apr. 07, 2017
- Modified: Apr. 20, 2025
-
9.3
HIGHCVE-2017-0539
A remote code execution vulnerability in libhevc in Mediaserver could enable an attacker using a specially crafted file to cause memory corruption during media file and data processing. This issue is rated as Critical due to the possibility of remote code... Read more
Affected Products : android- EPSS Score: %0.29
- Published: Apr. 07, 2017
- Modified: Apr. 20, 2025
-
7.6
HIGHCVE-2017-0454
An elevation of privilege vulnerability in the Qualcomm audio driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged pro... Read more
- EPSS Score: %0.25
- Published: Apr. 07, 2017
- Modified: Apr. 20, 2025
-
7.1
HIGHCVE-2017-6601
A vulnerability in the CLI of the Cisco Unified Computing System (UCS) Manager, Cisco Firepower 4100 Series Next-Generation Firewall (NGFW), and Cisco Firepower 9300 Security Appliance could allow an authenticated, local attacker to perform a command inje... Read more
- EPSS Score: %0.28
- Published: Apr. 07, 2017
- Modified: Apr. 20, 2025
-
7.2
HIGHCVE-2017-6598
A vulnerability in the debug plug-in functionality of the Cisco Unified Computing System (UCS) Manager, Cisco Firepower 4100 Series Next-Generation Firewall (NGFW), and Cisco Firepower 9300 Security Appliance could allow an authenticated, local attacker t... Read more
- EPSS Score: %0.02
- Published: Apr. 07, 2017
- Modified: Apr. 20, 2025
-
6.1
MEDIUMCVE-2017-3889
A vulnerability in the web interface of the Cisco Registered Envelope Service could allow an unauthenticated, remote attacker to redirect a user to a undesired web page, aka an Open Redirect. This vulnerability affects the Cisco Registered Envelope cloud-... Read more
- EPSS Score: %0.27
- Published: Apr. 07, 2017
- Modified: Apr. 20, 2025
-
6.5
MEDIUMCVE-2017-3884
A vulnerability in the web interface of Cisco Prime Infrastructure and Cisco Evolved Programmable Network (EPN) Manager could allow an authenticated, remote attacker to access sensitive data. The attacker does not need administrator credentials and could ... Read more
- EPSS Score: %0.23
- Published: Apr. 07, 2017
- Modified: Apr. 20, 2025
-
7.2
HIGHCVE-2016-9197
A vulnerability in the CLI command parser of the Cisco Mobility Express 2800 and 3800 Series Wireless LAN Controllers could allow an authenticated, local attacker to obtain access to the underlying operating system shell with root-level privileges. More I... Read more
Affected Products : mobility_services_engine- EPSS Score: %0.06
- Published: Apr. 07, 2017
- Modified: Apr. 20, 2025
-
7.5
HIGHCVE-2017-5887
WebSocket.swift in Starscream before 2.0.4 allows an SSL Pinning bypass because pinning occurs in the stream function (this is too late; pinning should occur in the initStreamsWithData function).... Read more
Affected Products : starscream- EPSS Score: %0.22
- Published: Apr. 06, 2017
- Modified: Apr. 20, 2025