Latest CVE Feed
-
8.8
HIGHCVE-2016-0241
IBM Security Guardium Database Activity Monitor 8.2 before p310, 9.x through 9.5 before p700, and 10.x through 10.1 before p100 allows remote authenticated users to spoof administrator accounts by sending a modified login request over HTTP.... Read more
Affected Products : security_guardium_database_activity_monitor- EPSS Score: %0.57
- Published: Oct. 22, 2016
- Modified: Apr. 12, 2025
-
4.3
MEDIUMCVE-2016-0240
IBM Security Guardium Database Activity Monitor 8.2 before p310, 9.x through 9.5 before p700, and 10.x through 10.1 before p100 does not enable the HSTS protection mechanism, which makes it easier for remote attackers to obtain sensitive information by le... Read more
Affected Products : security_guardium_database_activity_monitor- EPSS Score: %0.17
- Published: Oct. 22, 2016
- Modified: Apr. 12, 2025
-
8.8
HIGHCVE-2016-0239
IBM Security Guardium Database Activity Monitor 9.x through 9.5 before p700 and 10.x through 10.0.1 before p100 allows remote authenticated users to make HTTP requests with administrator privileges via unspecified vectors.... Read more
Affected Products : security_guardium_database_activity_monitor- EPSS Score: %0.72
- Published: Oct. 22, 2016
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2016-7854
Adobe Reader and Acrobat before 11.0.18, Acrobat and Acrobat Reader DC Classic before 15.006.30243, and Acrobat and Acrobat Reader DC Continuous before 15.020.20039 on Windows and OS X allow attackers to execute arbitrary code or cause a denial of service... Read more
- EPSS Score: %5.09
- Published: Oct. 21, 2016
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2016-7853
Adobe Reader and Acrobat before 11.0.18, Acrobat and Acrobat Reader DC Classic before 15.006.30243, and Acrobat and Acrobat Reader DC Continuous before 15.020.20039 on Windows and OS X allow attackers to execute arbitrary code or cause a denial of service... Read more
- EPSS Score: %5.32
- Published: Oct. 21, 2016
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2016-7852
Adobe Reader and Acrobat before 11.0.18, Acrobat and Acrobat Reader DC Classic before 15.006.30243, and Acrobat and Acrobat Reader DC Continuous before 15.020.20039 on Windows and OS X allow attackers to execute arbitrary code or cause a denial of service... Read more
- EPSS Score: %5.09
- Published: Oct. 21, 2016
- Modified: Apr. 12, 2025
-
9.0
HIGHCVE-2016-0236
IBM Security Guardium Database Activity Monitor 8.2 before p310, 9.x through 9.5 before p700, and 10.x through 10.1 before p100 allows remote authenticated users to execute arbitrary commands with root privileges via the search field.... Read more
Affected Products : security_guardium_database_activity_monitor- EPSS Score: %2.99
- Published: Oct. 21, 2016
- Modified: Apr. 12, 2025
-
7.2
HIGHCVE-2016-1000119
SQLi and XSS in Huge IT catalog extension v1.0.4 for Joomla... Read more
Affected Products : catalog- EPSS Score: %2.04
- Published: Oct. 21, 2016
- Modified: Apr. 12, 2025
-
7.2
HIGH- EPSS Score: %2.04
- Published: Oct. 21, 2016
- Modified: Apr. 12, 2025
-
7.2
HIGH- EPSS Score: %2.04
- Published: Oct. 21, 2016
- Modified: Apr. 12, 2025
-
7.2
HIGH- EPSS Score: %0.40
- Published: Oct. 21, 2016
- Modified: Apr. 12, 2025
-
7.2
HIGH- EPSS Score: %0.79
- Published: Oct. 21, 2016
- Modified: Apr. 12, 2025
-
7.5
HIGHCVE-2016-2848
ISC BIND 9.1.0 through 9.8.4-P2 and 9.9.0 through 9.9.2-P2 allows remote attackers to cause a denial of service (assertion failure and daemon exit) via malformed options data in an OPT resource record.... Read more
Affected Products : bind- EPSS Score: %51.28
- Published: Oct. 21, 2016
- Modified: Apr. 12, 2025
-
7.8
HIGHCVE-2016-8666
The IP stack in the Linux kernel before 4.6 allows remote attackers to cause a denial of service (stack consumption and panic) or possibly have unspecified other impact by triggering use of the GRO path for packets with tunnel stacking, as demonstrated by... Read more
Affected Products : linux_kernel- EPSS Score: %3.52
- Published: Oct. 16, 2016
- Modified: Apr. 12, 2025
-
5.5
MEDIUMCVE-2016-8660
The XFS subsystem in the Linux kernel through 4.8.2 allows local users to cause a denial of service (fdatasync failure and system hang) by using the vfs syscall group in the trinity program, related to a "page lock order bug in the XFS seek hole/data impl... Read more
Affected Products : linux_kernel- EPSS Score: %0.12
- Published: Oct. 16, 2016
- Modified: Apr. 12, 2025
-
6.1
MEDIUMCVE-2016-8658
Stack-based buffer overflow in the brcmf_cfg80211_start_ap function in drivers/net/wireless/broadcom/brcm80211/brcmfmac/cfg80211.c in the Linux kernel before 4.7.5 allows local users to cause a denial of service (system crash) or possibly have unspecified... Read more
Affected Products : linux_kernel- EPSS Score: %0.30
- Published: Oct. 16, 2016
- Modified: Apr. 12, 2025
-
7.8
HIGHCVE-2016-7425
The arcmsr_iop_message_xfer function in drivers/scsi/arcmsr/arcmsr_hba.c in the Linux kernel through 4.8.2 does not restrict a certain length field, which allows local users to gain privileges or cause a denial of service (heap-based buffer overflow) via ... Read more
- EPSS Score: %0.08
- Published: Oct. 16, 2016
- Modified: Apr. 12, 2025
-
4.4
MEDIUMCVE-2016-7097
The filesystem implementation in the Linux kernel through 4.8.2 preserves the setgid bit during a setxattr call, which allows local users to gain group privileges by leveraging the existence of a setgid program with restrictions on execute permissions.... Read more
Affected Products : linux_kernel- EPSS Score: %0.05
- Published: Oct. 16, 2016
- Modified: Apr. 12, 2025
-
6.2
MEDIUMCVE-2016-7042
The proc_keys_show function in security/keys/proc.c in the Linux kernel through 4.8.2, when the GNU Compiler Collection (gcc) stack protector is enabled, uses an incorrect buffer size for certain timeout data, which allows local users to cause a denial of... Read more
Affected Products : linux_kernel- EPSS Score: %0.10
- Published: Oct. 16, 2016
- Modified: Apr. 12, 2025
-
7.8
HIGHCVE-2016-7039
The IP stack in the Linux kernel through 4.8.2 allows remote attackers to cause a denial of service (stack consumption and panic) or possibly have unspecified other impact by triggering use of the GRO path for large crafted packets, as demonstrated by pac... Read more
- EPSS Score: %0.88
- Published: Oct. 16, 2016
- Modified: Apr. 12, 2025