Latest CVE Feed
-
7.8
HIGHCVE-2016-5085
Johnson & Johnson Animas OneTouch Ping devices do not properly generate random numbers, which makes it easier for remote attackers to spoof meters by sniffing the network and then engaging in an authentication handshake.... Read more
- EPSS Score: %3.20
- Published: Oct. 05, 2016
- Modified: Apr. 12, 2025
-
7.5
HIGHCVE-2016-5084
Johnson & Johnson Animas OneTouch Ping devices do not use encryption for certain data, which might allow remote attackers to obtain sensitive information by sniffing the network.... Read more
- EPSS Score: %1.72
- Published: Oct. 05, 2016
- Modified: Apr. 12, 2025
-
8.1
HIGHCVE-2016-4390
The Filter SDK in HPE KeyView 10.18 through 10.24 allows remote attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2016-4387, CVE-2016-4388, and CVE-2016-4389.... Read more
Affected Products : keyview- EPSS Score: %2.02
- Published: Oct. 05, 2016
- Modified: Apr. 12, 2025
-
8.1
HIGHCVE-2016-4389
The Filter SDK in HPE KeyView 10.18 through 10.24 allows remote attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2016-4387, CVE-2016-4388, and CVE-2016-4390.... Read more
Affected Products : keyview- EPSS Score: %2.02
- Published: Oct. 05, 2016
- Modified: Apr. 12, 2025
-
8.1
HIGHCVE-2016-4388
The Filter SDK in HPE KeyView 10.18 through 10.24 allows remote attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2016-4387, CVE-2016-4389, and CVE-2016-4390.... Read more
Affected Products : keyview- EPSS Score: %2.02
- Published: Oct. 05, 2016
- Modified: Apr. 12, 2025
-
8.1
HIGHCVE-2016-4387
The Filter SDK in HPE KeyView 10.18 through 10.24 allows remote attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2016-4388, CVE-2016-4389, and CVE-2016-4390.... Read more
Affected Products : keyview- EPSS Score: %2.29
- Published: Oct. 05, 2016
- Modified: Apr. 12, 2025
-
8.6
HIGHCVE-2016-2308
American Auto-Matrix Aspect-Nexus Building Automation Front-End Solutions application before 3.0.0 and Aspect-Matrix Building Automation Front-End Solutions application store passwords in cleartext, which allows remote attackers to obtain sensitive inform... Read more
- EPSS Score: %0.34
- Published: Oct. 05, 2016
- Modified: Apr. 12, 2025
-
7.5
HIGHCVE-2016-2307
American Auto-Matrix Aspect-Nexus Building Automation Front-End Solutions application before 3.0.0 and Aspect-Matrix Building Automation Front-End Solutions application allow remote attackers to read arbitrary files via unspecified vectors, as demonstrate... Read more
- EPSS Score: %0.29
- Published: Oct. 05, 2016
- Modified: Apr. 12, 2025
-
9.4
HIGHCVE-2014-5415
Beckhoff Embedded PC images before 2014-10-22 and Automation Device Specification (ADS) TwinCAT components might allow remote attackers to obtain access via the (1) Windows CE Remote Configuration Tool, (2) CE Remote Display service, or (3) TELNET service... Read more
- EPSS Score: %0.79
- Published: Oct. 05, 2016
- Modified: Apr. 12, 2025
-
9.4
HIGHCVE-2014-5414
Beckhoff Embedded PC images before 2014-10-22 and Automation Device Specification (ADS) TwinCAT components do not restrict the number of authentication attempts, which makes it easier for remote attackers to obtain access via a brute-force attack.... Read more
- EPSS Score: %0.88
- Published: Oct. 05, 2016
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2016-6646
The vApp Managers web application in EMC Unisphere for VMAX Virtual Appliance 8.x before 8.3.0 and Solutions Enabler Virtual Appliance 8.x before 8.3.0 allows remote attackers to execute arbitrary code via crafted input to the (1) GetSymmCmdRequest or (2)... Read more
- EPSS Score: %3.93
- Published: Oct. 05, 2016
- Modified: Apr. 12, 2025
-
9.0
HIGHCVE-2016-6645
The vApp Managers web application in EMC Unisphere for VMAX Virtual Appliance 8.x before 8.3.0 and Solutions Enabler Virtual Appliance 8.x before 8.3.0 allows remote authenticated users to execute arbitrary code via crafted input to the (1) GeneralCmdRequ... Read more
- EPSS Score: %1.34
- Published: Oct. 05, 2016
- Modified: Apr. 12, 2025
-
5.4
MEDIUMCVE-2016-6550
The U by BB&T app 1.5.4 and earlier for iOS does not properly verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.... Read more
Affected Products : the_u- EPSS Score: %0.04
- Published: Oct. 05, 2016
- Modified: Apr. 12, 2025
-
9.8
CRITICALCVE-2016-0913
The client in EMC Replication Manager (RM) before 5.5.3.0_01-PatchHotfix, EMC Network Module for Microsoft 3.x, and EMC Networker Module for Microsoft 8.2.x before 8.2.3.6 allows remote RM servers to execute arbitrary commands by placing a crafted script ... Read more
- EPSS Score: %0.64
- Published: Oct. 05, 2016
- Modified: Apr. 12, 2025
-
6.5
MEDIUMCVE-2016-8280
Directory traversal vulnerability in Huawei eSight before V300R003C20SPC005 allows remote authenticated users to read arbitrary files via unspecified vectors.... Read more
Affected Products : esight- EPSS Score: %1.10
- Published: Oct. 03, 2016
- Modified: Apr. 12, 2025
-
7.8
HIGHCVE-2016-8278
Huawei USG9520, USG9560, and USG9580 unified security gateways with software before V300R001C01SPCa00 allow remote attackers to cause a denial of service (device restart) via an unspecified URL.... Read more
- EPSS Score: %0.27
- Published: Oct. 03, 2016
- Modified: Apr. 12, 2025
-
6.8
MEDIUMCVE-2016-8277
Huawei USG9520, USG9560, and USG9580 unified security gateways with software before V300R001C01SPCa00 allow remote authenticated users to cause a denial of service (device restart) via an unspecified command parameter.... Read more
- EPSS Score: %0.23
- Published: Oct. 03, 2016
- Modified: Apr. 12, 2025
-
9.8
CRITICALCVE-2016-8276
Buffer overflow in the Point-to-Point Protocol over Ethernet (PPPoE) module in Huawei USG2100, USG2200, USG5100, and USG5500 unified security gateways with software before V300R001C10SPC600, when CHAP authentication is configured on the server, allows rem... Read more
- EPSS Score: %3.99
- Published: Oct. 03, 2016
- Modified: Apr. 12, 2025
-
7.5
HIGHCVE-2016-7141
curl and libcurl before 7.50.2, when built with NSS and the libnsspem.so library is available at runtime, allow remote attackers to hijack the authentication of a TLS connection by leveraging reuse of a previously loaded client certificate from file for a... Read more
- EPSS Score: %0.52
- Published: Oct. 03, 2016
- Modified: Apr. 12, 2025
-
7.1
HIGHCVE-2016-7046
Red Hat JBoss Enterprise Application Platform (EAP) 7, when operating as a reverse-proxy with default buffer sizes, allows remote attackers to cause a denial of service (CPU and disk consumption) via a long URL.... Read more
Affected Products : jboss_enterprise_application_platform- EPSS Score: %5.48
- Published: Oct. 03, 2016
- Modified: Apr. 12, 2025