Latest CVE Feed
-
10.0
HIGHCVE-2015-6314
Cisco Wireless LAN Controller (WLC) devices with software 7.6.x, 8.0 before 8.0.121.0, and 8.1 before 8.1.131.0 allow remote attackers to change configuration settings via unspecified vectors, aka Bug ID CSCuw06153.... Read more
- EPSS Score: %1.07
- Published: Jan. 15, 2016
- Modified: Apr. 12, 2025
-
8.8
HIGHCVE-2015-5007
Cross-site request forgery (CSRF) vulnerability in IBM WebSphere Commerce 6.0 through 6.0.0.11, 7.0 through 7.0.0.9, and 7.0 Feature Pack 8 allows remote authenticated users to hijack the authentication of arbitrary users for requests that insert XSS sequ... Read more
Affected Products : websphere_commerce- EPSS Score: %0.11
- Published: Jan. 15, 2016
- Modified: Apr. 12, 2025
-
5.4
MEDIUMCVE-2015-3948
Cross-site scripting (XSS) vulnerability in Advantech WebAccess before 8.1 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.... Read more
- EPSS Score: %0.27
- Published: Jan. 15, 2016
- Modified: Apr. 12, 2025
-
8.1
HIGHCVE-2015-3947
SQL injection vulnerability in Advantech WebAccess before 8.1 allows remote authenticated users to execute arbitrary SQL commands via unspecified vectors.... Read more
- EPSS Score: %0.26
- Published: Jan. 15, 2016
- Modified: Apr. 12, 2025
-
8.8
HIGHCVE-2015-3946
Cross-site request forgery (CSRF) vulnerability in Advantech WebAccess before 8.1 allows remote attackers to hijack the authentication of unspecified victims via unknown vectors.... Read more
- EPSS Score: %0.11
- Published: Jan. 15, 2016
- Modified: Apr. 12, 2025
-
5.3
MEDIUMCVE-2015-3943
Advantech WebAccess before 8.1 allows remote attackers to read sensitive cleartext information about e-mail project accounts via unspecified vectors.... Read more
- EPSS Score: %0.32
- Published: Jan. 15, 2016
- Modified: Apr. 12, 2025
-
8.1
HIGHCVE-2016-0778
The (1) roaming_read and (2) roaming_write functions in roaming_common.c in the client in OpenSSH 5.x, 6.x, and 7.x before 7.1p2, when certain proxy and forward options are enabled, do not properly maintain connection file descriptors, which allows remote... Read more
Affected Products : openssh mac_os_x linux solaris unified_threat_management_software virtual_customer_access_system- EPSS Score: %3.25
- Published: Jan. 14, 2016
- Modified: Apr. 12, 2025
-
6.5
MEDIUMCVE-2016-0777
The resend_bytes function in roaming_common.c in the client in OpenSSH 5.x, 6.x, and 7.x before 7.1p2 allows remote servers to obtain sensitive information from process memory by requesting transmission of an entire buffer, as demonstrated by reading a pr... Read more
- EPSS Score: %66.39
- Published: Jan. 14, 2016
- Modified: Apr. 12, 2025
-
6.5
MEDIUMCVE-2015-8605
ISC DHCP 4.x before 4.1-ESV-R12-P1, 4.2.x, and 4.3.x before 4.3.3-P1 allows remote attackers to cause a denial of service (application crash) via an invalid length field in a UDP IPv4 packet.... Read more
- EPSS Score: %43.97
- Published: Jan. 14, 2016
- Modified: Apr. 12, 2025
-
7.8
HIGHCVE-2016-0947
Untrusted search path vulnerability in Adobe Download Manager, as used in Adobe Reader and Acrobat before 11.0.14, Acrobat and Acrobat Reader DC Classic before 15.006.30119, and Acrobat and Acrobat Reader DC Continuous before 15.010.20056 on Windows and O... Read more
- EPSS Score: %0.18
- Published: Jan. 14, 2016
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2016-0946
Adobe Reader and Acrobat before 11.0.14, Acrobat and Acrobat Reader DC Classic before 15.006.30119, and Acrobat and Acrobat Reader DC Continuous before 15.010.20056 on Windows and OS X allow attackers to execute arbitrary code or cause a denial of service... Read more
- EPSS Score: %2.59
- Published: Jan. 14, 2016
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2016-0945
Adobe Reader and Acrobat before 11.0.14, Acrobat and Acrobat Reader DC Classic before 15.006.30119, and Acrobat and Acrobat Reader DC Continuous before 15.010.20056 on Windows and OS X allow attackers to execute arbitrary code or cause a denial of service... Read more
- EPSS Score: %2.59
- Published: Jan. 14, 2016
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2016-0944
Adobe Reader and Acrobat before 11.0.14, Acrobat and Acrobat Reader DC Classic before 15.006.30119, and Acrobat and Acrobat Reader DC Continuous before 15.010.20056 on Windows and OS X allow attackers to execute arbitrary code or cause a denial of service... Read more
- EPSS Score: %2.59
- Published: Jan. 14, 2016
- Modified: Apr. 12, 2025
-
8.8
HIGHCVE-2016-0943
Adobe Reader and Acrobat before 11.0.14, Acrobat and Acrobat Reader DC Classic before 15.006.30119, and Acrobat and Acrobat Reader DC Continuous before 15.010.20056 on Windows and OS X mishandle the Global object, which allows attackers to bypass JavaScri... Read more
- EPSS Score: %6.05
- Published: Jan. 14, 2016
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2016-0942
Adobe Reader and Acrobat before 11.0.14, Acrobat and Acrobat Reader DC Classic before 15.006.30119, and Acrobat and Acrobat Reader DC Continuous before 15.010.20056 on Windows and OS X allow attackers to execute arbitrary code or cause a denial of service... Read more
- EPSS Score: %2.59
- Published: Jan. 14, 2016
- Modified: Apr. 12, 2025
-
8.8
HIGHCVE-2016-0941
Use-after-free vulnerability in the Search object implementation in Adobe Reader and Acrobat before 11.0.14, Acrobat and Acrobat Reader DC Classic before 15.006.30119, and Acrobat and Acrobat Reader DC Continuous before 15.010.20056 on Windows and OS X al... Read more
- EPSS Score: %5.11
- Published: Jan. 14, 2016
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2016-0940
Use-after-free vulnerability in Adobe Reader and Acrobat before 11.0.14, Acrobat and Acrobat Reader DC Classic before 15.006.30119, and Acrobat and Acrobat Reader DC Continuous before 15.010.20056 on Windows and OS X allows attackers to execute arbitrary ... Read more
- EPSS Score: %2.03
- Published: Jan. 14, 2016
- Modified: Apr. 12, 2025
-
8.8
HIGHCVE-2016-0939
Adobe Reader and Acrobat before 11.0.14, Acrobat and Acrobat Reader DC Classic before 15.006.30119, and Acrobat and Acrobat Reader DC Continuous before 15.010.20056 on Windows and OS X allow attackers to execute arbitrary code or cause a denial of service... Read more
- EPSS Score: %2.84
- Published: Jan. 14, 2016
- Modified: Apr. 12, 2025
-
9.3
HIGHCVE-2016-0938
The AcroForm plugin in Adobe Reader and Acrobat before 11.0.14, Acrobat and Acrobat Reader DC Classic before 15.006.30119, and Acrobat and Acrobat Reader DC Continuous before 15.010.20056 on Windows and OS X allows attackers to execute arbitrary code or c... Read more
- EPSS Score: %3.90
- Published: Jan. 14, 2016
- Modified: Apr. 12, 2025
-
9.3
HIGHCVE-2016-0937
Use-after-free vulnerability in the OCG object implementation in Adobe Reader and Acrobat before 11.0.14, Acrobat and Acrobat Reader DC Classic before 15.006.30119, and Acrobat and Acrobat Reader DC Continuous before 15.010.20056 on Windows and OS X allow... Read more
- EPSS Score: %6.38
- Published: Jan. 14, 2016
- Modified: Apr. 12, 2025