Latest CVE Feed

Following is the list of latest published vulnerabilities. You can filter the list based on the severity of the vulnerability, whether it is actively exploited (also known as CISA KEV List) or remotely exploitable. You can also sort the list based on the published date, last updated date, or CVSS score.
  • 5.4

    MEDIUM
    CVE-2016-4317

    Atlassian Confluence Server before 5.9.11 has XSS on the viewmyprofile.action page.... Read more

    Affected Products : confluence
    • EPSS Score: %0.22
    • Published: Apr. 10, 2017
    • Modified: Apr. 20, 2025
  • 5.5

    MEDIUM
    CVE-2015-8276

    LVRTC eParakstitajs 3.0 (1.3.0) and edoc-libraries-2.5.4_01 allow attackers to read arbitrary files via crafted EDOC files.... Read more

    Affected Products : edoc-libraries eparakstitajs_3
    • EPSS Score: %0.22
    • Published: Apr. 10, 2017
    • Modified: Apr. 20, 2025
  • 5.5

    MEDIUM
    CVE-2015-8275

    LVRTC eParakstitajs 3.0 (1.3.0) and edoc-libraries-2.5.4_01 allow attackers to write to arbitrary files via crafted EDOC files.... Read more

    Affected Products : edoc-libraries eparakstitajs_3
    • EPSS Score: %0.16
    • Published: Apr. 10, 2017
    • Modified: Apr. 20, 2025
  • 7.8

    HIGH
    CVE-2015-8258

    AXIS Communications products with firmware through 5.80.x allow remote attackers to modify arbitrary files as root via vectors involving Open Script Editor, aka a "resource injection vulnerability."... Read more

    Affected Products : axis_communications_firmware
    • EPSS Score: %19.11
    • Published: Apr. 10, 2017
    • Modified: Apr. 20, 2025
  • 8.8

    HIGH
    CVE-2015-6028

    Castle Rock Computing SNMPc before 2015-12-17 has SQL injection via the sc parameter.... Read more

    Affected Products : snmpc
    • EPSS Score: %0.21
    • Published: Apr. 10, 2017
    • Modified: Apr. 20, 2025
  • 6.1

    MEDIUM
    CVE-2015-6027

    Castle Rock Computing SNMPc before 2015-12-17 has XSS via SNMP.... Read more

    Affected Products : snmpc
    • EPSS Score: %0.30
    • Published: Apr. 10, 2017
    • Modified: Apr. 20, 2025
  • 6.1

    MEDIUM
    CVE-2015-6021

    Spiceworks Desktop before 2015-12-01 has XSS via an SNMP response.... Read more

    Affected Products : desktop
    • EPSS Score: %0.24
    • Published: Apr. 10, 2017
    • Modified: Apr. 20, 2025
  • 10.0

    HIGH
    CVE-2015-2887

    iBaby M3S has a password of admin for the backdoor admin account.... Read more

    • EPSS Score: %0.28
    • Published: Apr. 10, 2017
    • Modified: Apr. 20, 2025
  • 7.5

    HIGH
    CVE-2015-2886

    iBaby M6 allows remote attackers to obtain sensitive information, related to the ibabycloud.com service.... Read more

    • EPSS Score: %0.32
    • Published: Apr. 10, 2017
    • Modified: Apr. 20, 2025
  • 10.0

    HIGH
    CVE-2015-2885

    Lens Peek-a-View has a password of 2601hx for the backdoor admin account, a password of user for the backdoor user account, and a password of guest for the backdoor guest account.... Read more

    Affected Products : peek-a-view_firmware peek-a-view
    • EPSS Score: %0.28
    • Published: Apr. 10, 2017
    • Modified: Apr. 20, 2025
  • 7.5

    HIGH
    CVE-2015-2884

    Philips In.Sight B120/37 allows remote attackers to obtain sensitive information via a direct request, related to yoics.net URLs, stream.m3u8 URIs, and cam_service_enable.cgi.... Read more

    Affected Products : in.sight_b120\\37
    • EPSS Score: %0.32
    • Published: Apr. 10, 2017
    • Modified: Apr. 20, 2025
  • 10.0

    HIGH
    CVE-2015-2881

    Gynoii has a password of guest for the backdoor guest account and a password of 12345 for the backdoor admin account.... Read more

    Affected Products : gcw-1010 gcw-1020 gpw-1025
    • EPSS Score: %0.80
    • Published: Apr. 10, 2017
    • Modified: Apr. 20, 2025
  • 6.5

    MEDIUM
    CVE-2017-7589

    In OpenIDM through 4.0.0 before 4.5.0, the info endpoint may leak sensitive information upon a request by the "anonymous" user, as demonstrated by responses with a 200 HTTP status code and a JSON object containing IP address strings. This is related to a ... Read more

    Affected Products : openidm
    • EPSS Score: %0.27
    • Published: Apr. 09, 2017
    • Modified: Apr. 20, 2025
  • 4.7

    MEDIUM
    CVE-2017-0586

    An information disclosure vulnerability in the Qualcomm sound driver could enable a local malicious application to access data outside of its permission levels. This issue is rated as Moderate because it first requires compromising a privileged process. P... Read more

    Affected Products : android linux_kernel
    • EPSS Score: %0.22
    • Published: Apr. 07, 2017
    • Modified: Apr. 20, 2025
  • 4.7

    MEDIUM
    CVE-2017-0585

    An information disclosure vulnerability in the Broadcom Wi-Fi driver could enable a local malicious application to access data outside of its permission levels. This issue is rated as Moderate because it first requires compromising a privileged process. P... Read more

    Affected Products : android linux_kernel
    • EPSS Score: %0.16
    • Published: Apr. 07, 2017
    • Modified: Apr. 20, 2025
  • 7.6

    HIGH
    CVE-2017-0583

    An elevation of privilege vulnerability in the Qualcomm CP access driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as Moderate because it first requires compromising a privil... Read more

    Affected Products : android linux_kernel
    • EPSS Score: %0.25
    • Published: Apr. 07, 2017
    • Modified: Apr. 20, 2025
  • 7.6

    HIGH
    CVE-2017-0577

    An elevation of privilege vulnerability in the HTC touchscreen driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged pr... Read more

    Affected Products : android linux_kernel
    • EPSS Score: %0.25
    • Published: Apr. 07, 2017
    • Modified: Apr. 20, 2025
  • 7.6

    HIGH
    CVE-2017-0572

    An elevation of privilege vulnerability in the Broadcom Wi-Fi driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged pro... Read more

    Affected Products : android linux_kernel
    • EPSS Score: %0.25
    • Published: Apr. 07, 2017
    • Modified: Apr. 20, 2025
  • 7.6

    HIGH
    CVE-2017-0571

    An elevation of privilege vulnerability in the Broadcom Wi-Fi driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged pro... Read more

    Affected Products : android linux_kernel
    • EPSS Score: %0.25
    • Published: Apr. 07, 2017
    • Modified: Apr. 20, 2025
  • 7.6

    HIGH
    CVE-2017-0568

    An elevation of privilege vulnerability in the Broadcom Wi-Fi driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged pro... Read more

    Affected Products : android linux_kernel
    • EPSS Score: %0.25
    • Published: Apr. 07, 2017
    • Modified: Apr. 20, 2025
Showing 20 of 292238 Results