Latest CVE Feed
-
9.8
CRITICALCVE-2016-2339
An exploitable heap overflow vulnerability exists in the Fiddle::Function.new "initialize" function functionality of Ruby. In Fiddle::Function.new "initialize" heap buffer "arg_types" allocation is made based on args array length. Specially constructed ob... Read more
Affected Products : ruby- EPSS Score: %0.68
- Published: Jan. 06, 2017
- Modified: Apr. 20, 2025
-
9.8
CRITICALCVE-2016-2337
Type confusion exists in _cancel_eval Ruby's TclTkIp class method. Attacker passing different type of object than String as "retval" argument can cause arbitrary code execution.... Read more
Affected Products : ruby- EPSS Score: %1.59
- Published: Jan. 06, 2017
- Modified: Apr. 20, 2025
-
9.8
CRITICALCVE-2016-2336
Type confusion exists in two methods of Ruby's WIN32OLE class, ole_invoke and ole_query_interface. Attacker passing different type of object than this assumed by developers can cause arbitrary code execution.... Read more
Affected Products : ruby- EPSS Score: %1.46
- Published: Jan. 06, 2017
- Modified: Apr. 20, 2025
-
5.3
MEDIUMCVE-2016-1550
An exploitable vulnerability exists in the message authentication functionality of libntp in ntp 4.2.8p4 and NTPSec a5fb34b9cc89b92a8fef2f459004865c93bb7f92. An attacker can send a series of crafted messages to attempt to recover the message digest key.... Read more
- EPSS Score: %1.66
- Published: Jan. 06, 2017
- Modified: Apr. 20, 2025
-
6.5
MEDIUMCVE-2016-1549
A malicious authenticated peer can create arbitrarily-many ephemeral associations in order to win the clock selection algorithm in ntpd in NTP 4.2.8p4 and earlier and NTPsec 3e160db8dc248a0bcb053b56a80167dc742d2b74 and a5fb34b9cc89b92a8fef2f459004865c93bb... Read more
- EPSS Score: %1.07
- Published: Jan. 06, 2017
- Modified: Apr. 20, 2025
-
7.2
HIGHCVE-2016-1548
An attacker can spoof a packet from a legitimate ntpd server with an origin timestamp that matches the peer->dst timestamp recorded for that server. After making this switch, the client in NTP 4.2.8p4 and earlier and NTPSec aa48d001683e5b791a743ec9c575aaf... Read more
- EPSS Score: %1.65
- Published: Jan. 06, 2017
- Modified: Apr. 20, 2025
-
5.3
MEDIUMCVE-2016-1547
An off-path attacker can cause a preemptible client association to be demobilized in NTP 4.2.8p4 and earlier and NTPSec a5fb34b9cc89b92a8fef2f459004865c93bb7f92 by sending a crypto NAK packet to a victim client with a spoofed source address of an existing... Read more
- EPSS Score: %1.88
- Published: Jan. 06, 2017
- Modified: Apr. 20, 2025
-
7.5
HIGHCVE-2015-7848
An integer overflow can occur in NTP-dev.4.3.70 leading to an out-of-bounds memory copy operation when processing a specially crafted private mode packet. The crafted packet needs to have the correct message authentication code and a valid timestamp. When... Read more
- EPSS Score: %0.85
- Published: Jan. 06, 2017
- Modified: May. 23, 2025
-
10.0
HIGHCVE-2015-2868
An exploitable remote code execution vulnerability exists in the Trane ComfortLink II firmware version 2.0.2 in DSS service. An attacker who can connect to the DSS service on the Trane ComfortLink II device can send an overly long REG request that can ove... Read more
Affected Products : comfortlink_ii_firmware- EPSS Score: %7.33
- Published: Jan. 06, 2017
- Modified: Apr. 20, 2025
-
10.0
HIGHCVE-2015-2867
A design flaw in the Trane ComfortLink II SCC firmware version 2.0.2 service allows remote attackers to take complete control of the system.... Read more
Affected Products : comfortlink_ii_firmware- EPSS Score: %2.88
- Published: Jan. 06, 2017
- Modified: Apr. 20, 2025
-
5.4
MEDIUMCVE-2017-5179
Cross-site scripting (XSS) vulnerability in Tenable Nessus before 6.9.3 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.... Read more
Affected Products : nessus- EPSS Score: %0.24
- Published: Jan. 05, 2017
- Modified: Apr. 12, 2025
-
4.4
MEDIUMCVE-2016-8006
Authentication bypass vulnerability in Enterprise Security Manager (ESM) and License Manager (LM) in Intel Security McAfee Security Information and Event Management (SIEM) 9.6.0 MR3 allows an administrator to make changes to other SIEM users' information ... Read more
Affected Products : security_information_and_event_management- EPSS Score: %0.08
- Published: Jan. 05, 2017
- Modified: Apr. 12, 2025
-
7.5
HIGHCVE-2016-6892
The x509FreeExtensions function in MatrixSSL before 3.8.6 allows remote attackers to cause a denial of service (free of unallocated memory) via a crafted X.509 certificate.... Read more
Affected Products : matrixssl- EPSS Score: %2.08
- Published: Jan. 05, 2017
- Modified: Apr. 12, 2025
-
7.5
HIGHCVE-2016-6891
MatrixSSL before 3.8.6 allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted ASN.1 Bit Field primitive in an X.509 certificate.... Read more
Affected Products : matrixssl- EPSS Score: %2.08
- Published: Jan. 05, 2017
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2016-6890
Heap-based buffer overflow in MatrixSSL before 3.8.6 allows remote attackers to execute arbitrary code via a crafted Subject Alt Name in an X.509 certificate.... Read more
Affected Products : matrixssl- EPSS Score: %11.16
- Published: Jan. 05, 2017
- Modified: Apr. 12, 2025
-
9.0
HIGHCVE-2015-3441
The Parental Control panel in Genexis devices with DRGOS before 1.14.1 allows remote authenticated users to execute arbitrary CLI commands via the (1) start_hour, (2) start_minute, (3) end_hour, (4) end_minute, or (5) hostname parameter.... Read more
Affected Products : drgos- EPSS Score: %0.87
- Published: Jan. 05, 2017
- Modified: Apr. 12, 2025
-
7.8
HIGHCVE-2016-9754
The ring_buffer_resize function in kernel/trace/ring_buffer.c in the profiling subsystem in the Linux kernel before 4.6.1 mishandles certain integer calculations, which allows local users to gain privileges by writing to the /sys/kernel/debug/tracing/buff... Read more
Affected Products : linux_kernel- EPSS Score: %0.10
- Published: Jan. 05, 2017
- Modified: Apr. 12, 2025
-
8.1
HIGHCVE-2016-10030
The _prolog_error function in slurmd/req.c in Slurm before 15.08.13, 16.x before 16.05.7, and 17.x before 17.02.0-pre4 has a vulnerability in how the slurmd daemon informs users of a Prolog failure on a compute node. That vulnerability could allow a user ... Read more
Affected Products : slurm- EPSS Score: %0.65
- Published: Jan. 05, 2017
- Modified: Apr. 12, 2025
-
6.5
MEDIUMCVE-2016-7169
Directory traversal vulnerability in the File_Upload_Upgrader class in wp-admin/includes/class-file-upload-upgrader.php in the upgrade package uploader in WordPress before 4.6.1 allows remote authenticated users to access arbitrary files via a crafted url... Read more
Affected Products : wordpress- EPSS Score: %2.64
- Published: Jan. 05, 2017
- Modified: Apr. 12, 2025
-
4.8
MEDIUMCVE-2016-7168
Cross-site scripting (XSS) vulnerability in the media_handle_upload function in wp-admin/includes/media.php in WordPress before 4.6.1 might allow remote attackers to inject arbitrary web script or HTML by tricking an administrator into uploading an image ... Read more
Affected Products : wordpress- EPSS Score: %0.51
- Published: Jan. 05, 2017
- Modified: Apr. 12, 2025