Latest CVE Feed
-
10.0
HIGHCVE-2015-8286
Zhuhai RaySharp firmware has a hardcoded root password, which makes it easier for remote attackers to obtain access via a session on TCP port 23 or 9000.... Read more
Affected Products : raysharp_firmware- EPSS Score: %21.12
- Published: Feb. 18, 2016
- Modified: Apr. 12, 2025
-
6.5
MEDIUMCVE-2016-2398
Comcast XFINITY Home Security System does not properly maintain base-station communication, which allows physically proximate attackers to defeat sensor functionality by interfering with ZigBee 2.4 GHz transmissions.... Read more
Affected Products : xfinity_home_security_system- EPSS Score: %0.10
- Published: Feb. 17, 2016
- Modified: Apr. 12, 2025
-
5.3
MEDIUMCVE-2016-1334
Cisco Small Business 500 Wireless Access Point devices with firmware 1.0.4.4 allow remote attackers to set the system time via a crafted POST request, aka Bug ID CSCuy01457.... Read more
Affected Products : small_business_wireless_access_points_firmware- EPSS Score: %0.24
- Published: Feb. 17, 2016
- Modified: Apr. 12, 2025
-
6.8
MEDIUMCVE-2016-1333
Cisco IOS 15.5(3)M and 15.6(1)T0a on Cisco 1000 Connected Grid routers allows remote authenticated users to cause a denial of service (device reload) via an SNMP request for unspecified BRIDGE MIB OIDs, aka Bug ID CSCux89878.... Read more
Affected Products : ios- EPSS Score: %0.45
- Published: Feb. 17, 2016
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2016-2397
The cliserver implementation in Dell SonicWALL GMS, Analyzer, and UMA EM5000 7.2, 8.0, and 8.1 before Hotfix 168056 allows remote attackers to deserialize and execute arbitrary Java code via crafted XML data.... Read more
- EPSS Score: %5.04
- Published: Feb. 17, 2016
- Modified: Apr. 12, 2025
-
9.9
CRITICALCVE-2016-2396
The GMS ViewPoint (GMSVP) web application in Dell SonicWALL GMS, Analyzer, and UMA EM5000 7.2, 8.0, and 8.1 before Hotfix 168056 allows remote authenticated users to execute arbitrary commands via vectors related to configuration input.... Read more
- EPSS Score: %0.59
- Published: Feb. 17, 2016
- Modified: Apr. 12, 2025
-
6.1
MEDIUMCVE-2016-2072
The Administrative Web Interface in Citrix NetScaler Application Delivery Controller (ADC) and NetScaler Gateway 11.x before 11.0 Build 64.34, 10.5 before 10.5 Build 59.13, 10.5.e before Build 59.1305.e, and 10.1 allows remote attackers to conduct clickja... Read more
- EPSS Score: %0.24
- Published: Feb. 17, 2016
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2016-2071
Citrix NetScaler Application Delivery Controller (ADC) and NetScaler Gateway 11.x before 11.0 Build 64.34, 10.5 before 10.5 Build 59.13, and 10.5.e before Build 59.1305.e allows remote attackers to gain privileges via unspecified NS Web GUI commands.... Read more
- EPSS Score: %2.74
- Published: Feb. 17, 2016
- Modified: Apr. 12, 2025
-
6.1
MEDIUMCVE-2016-2046
Cross-site scripting (XSS) vulnerability in the UserPortal page in SOPHOS UTM before 9.353 allows remote attackers to inject arbitrary web script or HTML via the lang parameter.... Read more
Affected Products : unified_threat_management_software- EPSS Score: %0.97
- Published: Feb. 17, 2016
- Modified: Apr. 12, 2025
-
7.5
HIGHCVE-2016-0773
PostgreSQL before 9.1.20, 9.2.x before 9.2.15, 9.3.x before 9.3.11, 9.4.x before 9.4.6, and 9.5.x before 9.5.1 allows remote attackers to cause a denial of service (infinite loop or buffer overflow and crash) via a large Unicode character range in a regul... Read more
- EPSS Score: %4.51
- Published: Feb. 17, 2016
- Modified: Apr. 12, 2025
-
9.0
HIGHCVE-2016-0766
PostgreSQL before 9.1.20, 9.2.x before 9.2.15, 9.3.x before 9.3.11, 9.4.x before 9.4.6, and 9.5.x before 9.5.1 does not properly restrict access to unspecified custom configuration settings (GUCS) for PL/Java, which allows attackers to gain privileges via... Read more
- EPSS Score: %0.97
- Published: Feb. 17, 2016
- Modified: Apr. 12, 2025
-
6.5
MEDIUMCVE-2013-7447
Integer overflow in the gdk_cairo_set_source_pixbuf function in gdk/gdkcairo.c in GTK+ before 3.9.8, as used in eom, gnome-photos, eog, gambas3, thunar, pinpoint, and possibly other applications, allows remote attackers to cause a denial of service (crash... Read more
- EPSS Score: %8.45
- Published: Feb. 17, 2016
- Modified: Apr. 12, 2025
-
6.8
MEDIUMCVE-2016-1153
customapp in Cybozu Office 9.9.0 through 10.3.0 allows remote authenticated users to cause a denial of service via unspecified vectors, a different vulnerability than CVE-2015-8489.... Read more
Affected Products : office- EPSS Score: %0.58
- Published: Feb. 17, 2016
- Modified: Apr. 12, 2025
-
5.5
MEDIUMCVE-2016-1152
Cybozu Office 9.9.0 through 10.3.0 allows remote authenticated users to bypass intended access restrictions, and read or write to plan data, via unspecified vectors, a different vulnerability than CVE-2015-8484, CVE-2015-8485, and CVE-2015-8486.... Read more
Affected Products : office- EPSS Score: %0.24
- Published: Feb. 17, 2016
- Modified: Apr. 12, 2025
-
8.8
HIGHCVE-2016-1151
Multiple cross-site request forgery (CSRF) vulnerabilities in Cybozu Office 9.9.0 through 10.3.0 allow remote attackers to hijack the authentication of arbitrary users.... Read more
Affected Products : office- EPSS Score: %0.13
- Published: Feb. 17, 2016
- Modified: Apr. 12, 2025
-
6.1
MEDIUMCVE-2016-1150
Cross-site scripting (XSS) vulnerability in Cybozu Office 9.0.0 through 10.3.0 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, a different vulnerability than CVE-2015-7795, CVE-2015-7796, CVE-2015-7797, CVE-2015-779... Read more
Affected Products : office- EPSS Score: %0.52
- Published: Feb. 17, 2016
- Modified: Apr. 12, 2025
-
6.1
MEDIUMCVE-2016-1149
Cross-site scripting (XSS) vulnerability in Cybozu Office 9.0.0 through 10.3.0 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, a different vulnerability than CVE-2015-7795, CVE-2015-7796, CVE-2015-7797, CVE-2015-779... Read more
Affected Products : office- EPSS Score: %0.52
- Published: Feb. 17, 2016
- Modified: Apr. 12, 2025
-
6.8
MEDIUMCVE-2015-8489
customapp in Cybozu Office 9.9.0 through 10.3.0 allows remote authenticated users to cause a denial of service (excessive database locking) via a crafted CSV file, a different vulnerability than CVE-2016-1153.... Read more
Affected Products : office- EPSS Score: %0.58
- Published: Feb. 17, 2016
- Modified: Apr. 12, 2025
-
4.3
MEDIUMCVE-2015-8488
Cybozu Office 10.3.0 allows remote attackers to read image files via a crafted e-mail message, a different vulnerability than CVE-2015-8487.... Read more
Affected Products : office- EPSS Score: %0.31
- Published: Feb. 17, 2016
- Modified: Apr. 12, 2025
-
4.3
MEDIUMCVE-2015-8487
Cybozu Office 9.0.0 through 10.3 allows remote attackers to discover CSRF tokens via unspecified vectors, a different vulnerability than CVE-2015-8488.... Read more
Affected Products : office- EPSS Score: %0.31
- Published: Feb. 17, 2016
- Modified: Apr. 12, 2025