Latest CVE Feed
-
7.5
HIGHCVE-2015-8285
The webssx.sys driver in QuickHeal 16.00 allows remote attackers to cause a denial of service.... Read more
Affected Products : total_security- Published: Apr. 20, 2017
- Modified: Apr. 20, 2025
-
5.3
MEDIUMCVE-2017-5160
An Inadequate Encryption Strength issue was discovered in Schneider Electric Wonderware InTouch Access Anywhere, version 11.5.2 and prior. The software will connect via Transport Layer Security without verifying the peer's SSL certificate properly.... Read more
Affected Products : wonderware_intouch_access_anywhere- Published: Apr. 20, 2017
- Modified: Apr. 20, 2025
-
9.8
CRITICALCVE-2017-5158
An Information Exposure issue was discovered in Schneider Electric Wonderware InTouch Access Anywhere, version 11.5.2 and prior. Credentials may be exposed to external systems via specific URL parameters, as arbitrary destination addresses may be specifie... Read more
Affected Products : wonderware_intouch_access_anywhere- Published: Apr. 20, 2017
- Modified: Apr. 20, 2025
-
8.8
HIGHCVE-2017-5156
A Cross-Site Request Forgery issue was discovered in Schneider Electric Wonderware InTouch Access Anywhere, version 11.5.2 and prior. The client request may be forged from a different site. This will allow an external site to access internal RDP systems o... Read more
Affected Products : wonderware_intouch_access_anywhere- Published: Apr. 20, 2017
- Modified: Apr. 20, 2025
-
6.1
MEDIUMCVE-2017-5183
NetIQ Access Manager 4.2.2 and 4.3.x before 4.3.1+, when configured as an Identity Server, has XSS in the AssertionConsumerServiceURL field of a signed AuthnRequest in a samlp:AuthnRequest document.... Read more
Affected Products : access_manager- Published: Apr. 20, 2017
- Modified: Apr. 20, 2025
-
4.3
MEDIUMCVE-2017-2806
An exploitable arbitrary read exists in the XLS parsing of the Lexmark Perspective Document Filters conversion functionality. A crafted XLS document can lead to a arbitrary read resulting in memory disclosure. The vulnerability was confirmed on versions 1... Read more
Affected Products : perceptive_document_filters- Published: Apr. 20, 2017
- Modified: Apr. 20, 2025
-
8.1
HIGHCVE-2017-2784
An exploitable free of a stack pointer vulnerability exists in the x509 certificate parsing code of ARM mbed TLS before 1.3.19, 2.x before 2.1.7, and 2.4.x before 2.4.2. A specially crafted x509 certificate, when parsed by mbed TLS library, can cause an i... Read more
Affected Products : mbed_tls- Published: Apr. 20, 2017
- Modified: Apr. 20, 2025
-
9.1
CRITICALCVE-2016-8721
An exploitable OS Command Injection vulnerability exists in the web application 'ping' functionality of Moxa AWK-3131A Wireless Access Points running firmware 1.1. Specially crafted web form input can cause an OS Command Injection resulting in complete co... Read more
- Published: Apr. 20, 2017
- Modified: Apr. 20, 2025
-
6.5
MEDIUMCVE-2016-7540
coders/rgf.c in ImageMagick before 6.9.4-10 allows remote attackers to cause a denial of service (assertion failure) by converting an image to rgf format.... Read more
Affected Products : imagemagick- Published: Apr. 20, 2017
- Modified: Apr. 20, 2025
-
6.5
MEDIUMCVE-2016-7538
coders/psd.c in ImageMagick allows remote attackers to cause a denial of service (out-of-bounds write) via a crafted file.... Read more
Affected Products : imagemagick- Published: Apr. 20, 2017
- Modified: Apr. 20, 2025
-
6.5
MEDIUMCVE-2016-7536
magick/profile.c in ImageMagick allows remote attackers to cause a denial of service (segmentation fault) via a crafted profile.... Read more
Affected Products : imagemagick- Published: Apr. 20, 2017
- Modified: Apr. 20, 2025
-
6.5
MEDIUMCVE-2016-7535
coders/psd.c in ImageMagick allows remote attackers to cause a denial of service (out-of-bounds write) via a crafted PSD file.... Read more
Affected Products : imagemagick- Published: Apr. 20, 2017
- Modified: Apr. 20, 2025
-
6.5
MEDIUMCVE-2016-7534
The generic decoder in ImageMagick allows remote attackers to cause a denial of service (out-of-bounds access) via a crafted file.... Read more
Affected Products : imagemagick- Published: Apr. 20, 2017
- Modified: Apr. 20, 2025
-
6.5
MEDIUMCVE-2016-7532
coders/psd.c in ImageMagick allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted PSD file.... Read more
Affected Products : imagemagick- Published: Apr. 20, 2017
- Modified: Apr. 20, 2025
-
6.5
MEDIUMCVE-2016-7530
The quantum handling code in ImageMagick allows remote attackers to cause a denial of service (divide-by-zero error or out-of-bounds write) via a crafted file.... Read more
Affected Products : imagemagick- Published: Apr. 20, 2017
- Modified: Apr. 20, 2025
-
6.5
MEDIUMCVE-2016-7527
coders/wpg.c in ImageMagick allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted file.... Read more
Affected Products : imagemagick- Published: Apr. 20, 2017
- Modified: Apr. 20, 2025
-
6.5
MEDIUMCVE-2016-7526
coders/wpg.c in ImageMagick allows remote attackers to cause a denial of service (out-of-bounds write) via a crafted file.... Read more
Affected Products : imagemagick- Published: Apr. 20, 2017
- Modified: Apr. 20, 2025
-
6.5
MEDIUMCVE-2016-7525
Heap-based buffer overflow in coders/psd.c in ImageMagick allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted PSD file.... Read more
Affected Products : imagemagick- Published: Apr. 20, 2017
- Modified: Apr. 20, 2025
-
6.5
MEDIUMCVE-2016-7521
Heap-based buffer overflow in coders/psd.c in ImageMagick allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted PSD file.... Read more
Affected Products : imagemagick- Published: Apr. 20, 2017
- Modified: Apr. 20, 2025
-
6.5
MEDIUMCVE-2016-7520
Heap-based buffer overflow in coders/hdr.c in ImageMagick allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted HDR file.... Read more
Affected Products : imagemagick- Published: Apr. 20, 2017
- Modified: Apr. 20, 2025