Latest CVE Feed
-
9.3
HIGHCVE-2017-0722
A remote code execution vulnerability in the Android media framework (h263 decoder). Product: Android. Versions: 4.4.4, 5.0.2, 5.1.1, 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2. Android ID: A-37660827.... Read more
Affected Products : android- Published: Aug. 09, 2017
- Modified: Apr. 20, 2025
-
9.3
HIGHCVE-2017-0721
A remote code execution vulnerability in the Android media framework (libmpeg2). Product: Android. Versions: 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2. Android ID: A-37561455.... Read more
Affected Products : android- Published: Aug. 09, 2017
- Modified: Apr. 20, 2025
-
9.3
HIGHCVE-2017-0720
A remote code execution vulnerability in the Android media framework (libhevc). Product: Android. Versions: 5.0.2, 5.1.1, 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2. Android ID: A-37430213.... Read more
Affected Products : android- Published: Aug. 09, 2017
- Modified: Apr. 20, 2025
-
9.3
HIGHCVE-2017-0719
A remote code execution vulnerability in the Android media framework (mpeg2 decoder). Product: Android. Versions: 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2. Android ID: A-37273673.... Read more
Affected Products : android- Published: Aug. 09, 2017
- Modified: Apr. 20, 2025
-
9.3
HIGHCVE-2017-0718
A remote code execution vulnerability in the Android media framework (mpeg2 decoder). Product: Android. Versions: 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2. Android ID: A-37273547.... Read more
Affected Products : android- Published: Aug. 09, 2017
- Modified: Apr. 20, 2025
-
9.3
HIGHCVE-2017-0716
A remote code execution vulnerability in the Android media framework (libmpeg2). Product: Android. Versions: 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2. Android ID: A-37203196.... Read more
Affected Products : android- Published: Aug. 09, 2017
- Modified: Apr. 20, 2025
-
9.3
HIGHCVE-2017-0715
A remote code execution vulnerability in the Android media framework (libavc). Product: Android. Versions: 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2. Android ID: A-36998372.... Read more
Affected Products : android- Published: Aug. 09, 2017
- Modified: Apr. 20, 2025
-
9.3
HIGHCVE-2017-0714
A remote code execution vulnerability in the Android media framework (h263 decoder). Product: Android. Versions: 4.4.4, 5.0.2, 5.1.1, 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2. Android ID: A-36492637.... Read more
Affected Products : android- Published: Aug. 09, 2017
- Modified: Apr. 20, 2025
-
7.8
HIGHCVE-2017-0713
A remote code execution vulnerability in the Android libraries (sfntly). Product: Android. Versions: 4.4.4, 5.0.2, 5.1.1, 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2. Android ID: A-32096780.... Read more
Affected Products : android- Published: Aug. 09, 2017
- Modified: Apr. 20, 2025
-
7.8
HIGHCVE-2017-0712
A elevation of privilege vulnerability in the Android framework (wi-fi service). Product: Android. Versions: 5.0.2, 5.1.1, 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2. Android ID: A-37207928.... Read more
Affected Products : android- Published: Aug. 09, 2017
- Modified: Apr. 20, 2025
-
5.4
MEDIUMCVE-2017-1448
IBM Emptoris Supplier Lifecycle Management 10.0.x and 10.1.x could allow a remote attacker to conduct phishing attacks, using an open redirect attack. By persuading a victim to visit a specially-crafted Web site, a remote attacker could exploit this vulne... Read more
- Published: Aug. 09, 2017
- Modified: Apr. 20, 2025
-
4.3
MEDIUMCVE-2017-1357
IBM Maximo Asset Management 7.5 and 7.6 could allow an authenticated user to manipulate work orders to forge emails which could be used to conduct further advanced attacks. IBM X-Force ID: 126684.... Read more
Affected Products : maximo_application_suite maximo_asset_management maximo_asset_management_essentials- Published: Aug. 09, 2017
- Modified: Apr. 20, 2025
-
6.5
MEDIUMCVE-2017-11368
In MIT Kerberos 5 (aka krb5) 1.7 and later, an authenticated attacker can cause a KDC assertion failure by sending invalid S4U2Self or S4U2Proxy requests.... Read more
- Published: Aug. 09, 2017
- Modified: Apr. 20, 2025
-
5.4
MEDIUMCVE-2016-8949
IBM Emptoris Supplier Lifecycle Management 10.0.x and 10.1.x could allow a remote attacker to conduct phishing attacks, using an open redirect attack. By persuading a victim to visit a specially-crafted Web site, a remote attacker could exploit this vulne... Read more
- Published: Aug. 09, 2017
- Modified: Apr. 20, 2025
-
5.4
MEDIUMCVE-2016-6121
IBM Emptoris Supplier Lifecycle Management 10.0.x and 10.1.x is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credential... Read more
- Published: Aug. 09, 2017
- Modified: Apr. 20, 2025
-
8.8
HIGHCVE-2015-7894
The DCMProvider service in Samsung LibQjpeg on a Samsung SM-G925V device running build number LRX22G.G925VVRU1AOE2 allows remote attackers to cause a denial of service (segmentation fault and process crash) and execute arbitrary code via a crafted JPG.... Read more
- Published: Aug. 09, 2017
- Modified: Apr. 20, 2025
-
9.8
CRITICALCVE-2015-6816
ganglia-web before 3.7.1 allows remote attackers to bypass authentication.... Read more
- Published: Aug. 09, 2017
- Modified: Apr. 20, 2025
-
7.5
HIGHCVE-2015-6498
Alcatel-Lucent Home Device Manager before 4.1.10, 4.2.x before 4.2.2 allows remote attackers to spoof and make calls as target devices.... Read more
Affected Products : home_device_manager- Published: Aug. 09, 2017
- Modified: Apr. 20, 2025
-
7.5
HIGHCVE-2015-3277
The mod_nss module before 1.0.11 in Fedora allows remote attackers to obtain cipher lists due to incorrect parsing of multi-keyword cipherstring.... Read more
Affected Products : mod_nss- Published: Aug. 09, 2017
- Modified: Apr. 20, 2025
-
4.7
MEDIUMCVE-2015-2687
OpenStack Compute (nova) Icehouse, Juno and Havana when live migration fails allows local users to access VM volumes that they would normally not have permissions for.... Read more
- Published: Aug. 09, 2017
- Modified: Apr. 20, 2025