Latest CVE Feed
-
5.5
MEDIUMCVE-2016-6163
The rsvg_pattern_fix_fallback function in rsvg-paint_server.c in librsvg2 2.40.2 allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted svg file.... Read more
Affected Products : librsvg- Published: Feb. 03, 2017
- Modified: Apr. 20, 2025
-
5.5
MEDIUMCVE-2016-5241
magick/render.c in GraphicsMagick before 1.3.24 allows remote attackers to cause a denial of service (arithmetic exception and application crash) via a crafted svg file.... Read more
- Published: Feb. 03, 2017
- Modified: Apr. 20, 2025
-
5.5
MEDIUMCVE-2016-5115
The avcodec_decode_audio4 function in libavcodec in libavformat 57.34.103, as used in MPlayer, allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted mp3 file.... Read more
Affected Products : libavformat- Published: Feb. 03, 2017
- Modified: Apr. 20, 2025
-
7.1
HIGHCVE-2016-4571
The mxml_write_node function in mxml-file.c in mxml 2.9, 2.7, and possibly earlier allows remote attackers to cause a denial of service (stack consumption) via crafted xml file.... Read more
- Published: Feb. 03, 2017
- Modified: Apr. 20, 2025
-
7.1
HIGHCVE-2016-4570
The mxmlDelete function in mxml-node.c in mxml 2.9, 2.7, and possibly earlier allows remote attackers to cause a denial of service (stack consumption) via crafted xml file.... Read more
- Published: Feb. 03, 2017
- Modified: Apr. 20, 2025
-
5.5
MEDIUMCVE-2016-4352
Integer overflow in the demuxer function in libmpdemux/demux_gif.c in Mplayer allows remote attackers to cause a denial of service (crash) via large dimensions in a gif file.... Read more
Affected Products : libavformat- Published: Feb. 03, 2017
- Modified: Apr. 20, 2025
-
5.5
MEDIUMCVE-2016-2318
GraphicsMagick 1.3.23 allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted SVG file, related to the (1) DrawImage function in magick/render.c, (2) SVGStartElement function in coders/svg.c, and (3) TraceArcPath func... Read more
- Published: Feb. 03, 2017
- Modified: Apr. 20, 2025
-
5.5
MEDIUMCVE-2016-2317
Multiple buffer overflows in GraphicsMagick 1.3.23 allow remote attackers to cause a denial of service (crash) via a crafted SVG file, related to the (1) TracePoint function in magick/render.c, (2) GetToken function in magick/utility.c, and (3) GetTransfo... Read more
- Published: Feb. 03, 2017
- Modified: Apr. 20, 2025
-
6.8
MEDIUMCVE-2017-3824
A vulnerability in the handling of list headers in Cisco cBR Series Converged Broadband Routers could allow an unauthenticated, remote attacker to cause the device to reload, resulting in a denial of service (DoS) condition. Cisco cBR-8 Converged Broadban... Read more
- Published: Feb. 03, 2017
- Modified: Apr. 20, 2025
-
5.3
MEDIUMCVE-2017-3822
A vulnerability in the logging subsystem of the Cisco Firepower Threat Defense (FTD) Firepower Device Manager (FDM) could allow an unauthenticated, remote attacker to add arbitrary entries to the audit log. This vulnerability affects Cisco Firepower Threa... Read more
Affected Products : firepower_threat_defense- Published: Feb. 03, 2017
- Modified: Apr. 20, 2025
-
6.8
MEDIUMCVE-2017-3820
A vulnerability in Simple Network Management Protocol (SNMP) functions of Cisco ASR 1000 Series Aggregation Services Routers running Cisco IOS XE Software Release 3.13.6S, 3.16.2S, or 3.17.1S could allow an authenticated, remote attacker to cause high CPU... Read more
- Published: Feb. 03, 2017
- Modified: Apr. 20, 2025
-
5.8
MEDIUMCVE-2017-3818
A vulnerability in the Multipurpose Internet Mail Extensions (MIME) scanner of Cisco AsyncOS Software for Cisco Email Security Appliances (ESA) could allow an unauthenticated, remote attacker to bypass configured user filters on the device, aka a Malforme... Read more
Affected Products : email_security_appliance_firmware- Published: Feb. 03, 2017
- Modified: Apr. 20, 2025
-
5.8
MEDIUMCVE-2017-3814
A vulnerability in Cisco Firepower System Software could allow an unauthenticated, remote attacker to maliciously bypass the appliance's ability to block certain web content, aka a URL Bypass. More Information: CSCvb93980. Known Affected Releases: 5.3.0 5... Read more
- Published: Feb. 03, 2017
- Modified: Apr. 20, 2025
-
7.1
HIGHCVE-2017-3812
A vulnerability in the implementation of Common Industrial Protocol (CIP) functionality in Cisco Industrial Ethernet 2000 Series Switches could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition due to a system memory l... Read more
Affected Products : industrial_ethernet_2000_series_firmware industrial_ethernet_2000_series_firmware industrial_ethernet_2000_16ptc-g-e_switch industrial_ethernet_2000_16ptc-g-l_switch industrial_ethernet_2000_16ptc-g-nx_switch industrial_ethernet_2000_16t67-b_switch industrial_ethernet_2000_16t67p-g-e_switch industrial_ethernet_2000_16tc-g-e_switch industrial_ethernet_2000_16tc-g-l_switch industrial_ethernet_2000_16tc-g-n_switch +21 more products- Published: Feb. 03, 2017
- Modified: Apr. 20, 2025
-
5.4
MEDIUMCVE-2017-3810
A vulnerability in the web framework of Cisco Prime Service Catalog could allow an authenticated, remote attacker to conduct a web URL redirect attack against a user who is logged in to an affected system. More Information: CSCvb21745. Known Affected Rele... Read more
Affected Products : prime_service_catalog- Published: Feb. 03, 2017
- Modified: Apr. 20, 2025
-
5.8
MEDIUMCVE-2017-3809
A vulnerability in the Policy deployment module of the Cisco Firepower Management Center (FMC) could allow an unauthenticated, remote attacker to prevent deployment of a complete and accurate rule base. More Information: CSCvb95281. Known Affected Release... Read more
- Published: Feb. 03, 2017
- Modified: Apr. 20, 2025
-
5.3
MEDIUMCVE-2017-3806
A vulnerability in CLI command processing in the Cisco Firepower 4100 Series Next-Generation Firewall and Cisco Firepower 9300 Security Appliance could allow an authenticated, local attacker to inject arbitrary shell commands that are executed by the devi... Read more
- Published: Feb. 03, 2017
- Modified: Apr. 20, 2025
-
10.0
HIGHCVE-2017-2768
EMC Network Configuration Manager (NCM) 9.3.x, EMC Network Configuration Manager (NCM) 9.4.0.x, EMC Network Configuration Manager (NCM) 9.4.1.x, EMC Network Configuration Manager (NCM) 9.4.2.x contains an Improper Authentication vulnerability that could p... Read more
Affected Products : smarts_network_configuration_manager- Published: Feb. 03, 2017
- Modified: Apr. 20, 2025
-
10.0
HIGHCVE-2017-2767
EMC Network Configuration Manager (NCM) 9.3.x, EMC Network Configuration Manager (NCM) 9.4.0.x, EMC Network Configuration Manager (NCM) 9.4.1.x, EMC Network Configuration Manager (NCM) 9.4.2.x contains a Java RMI Remote Code Execution vulnerability that c... Read more
Affected Products : smarts_network_configuration_manager- Published: Feb. 03, 2017
- Modified: Apr. 20, 2025
-
9.8
CRITICALCVE-2017-2766
EMC Documentum eRoom version 7.4.4, EMC Documentum eRoom version 7.4.4 SP1, EMC Documentum eRoom version prior to 7.4.5 P04, EMC Documentum eRoom version prior to 7.5.0 P01 includes an unverified password change vulnerability that could potentially be exp... Read more
Affected Products : documentum_eroom- Published: Feb. 03, 2017
- Modified: Apr. 20, 2025