Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
MEDIUM 6.6
CVE-2017-11885EPSS 39%
Windows 7 SP1, Windows 8.1 and RT 8.1, Windows Server 2008 SP2 and R2 SP1, Windows Server 2012 and R2, Windows 10 Gold, 1511, 1607, 1703 and 1709, Wi…
Windows 10
Patch available
MEDIUM 6.5
CVE-2017-16691
SAP Note Assistant tool (SAP BASIS from 7.00 to 7.02, from 7.10 to 7.11, 7.30, 7.31,7.40, from 7.50 to 7.52) supports upload of digitally signed note…
Business Application Software Integrated Solution
Mitigation only
HIGH 8.8
CVE-2017-17551
The Backup and Restore feature in Mobotap Dolphin Browser for Android 12.0.2 suffers from an arbitrary file write vulnerability when attempting to re…
Dolphin
Mitigation only
CRITICAL 9.8
CVE-2017-15944 KEVEPSS 98%
Palo Alto Networks PAN-OS before 6.1.19, 7.0.x before 7.0.19, 7.1.x before 7.1.14, and 8.0.x before 8.0.6 allows remote attackers to execute arbitrar…
Pan Os
6.1.19 / 7.0.19+
MEDIUM 5.5
CVE-2017-15121
A non-privileged user is able to mount a fuse filesystem on RHEL 6 or 7 and crash a system if an application punches a hole in a file that does not e…
Enterprise Linux
Mitigation only
HIGH 8.8
CVE-2017-0872
A remote code execution vulnerability in the Android media framework (libskia). Product: Android. Versions: 7.0, 7.1.1, 7.1.2, 8.0. Android ID A-6529…
Android
Patch available
MEDIUM 6.5
CVE-2017-0873
A denial of service vulnerability in the Android media framework (libmpeg2). Product: Android. Versions: 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2, 8.0. Android …
Android
Mitigation only
MEDIUM 6.5
CVE-2017-0874
A denial of service vulnerability in the Android media framework (libavc). Product: Android. Versions: 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2, 8.0. Android ID…
Android
Mitigation only
HIGH 8.8
CVE-2017-0876
A remote code execution vulnerability in the Android media framework (libavc). Product: Android. Versions: 6.0. Android ID A-64964675.
Android
Mitigation only
HIGH 8.8
CVE-2017-0877
A remote code execution vulnerability in the Android media framework (libavc). Product: Android. Versions: 6.0. Android ID A-66372937.
Android
Mitigation only
HIGH 8.8
CVE-2017-0878
A remote code execution vulnerability in the Android media framework (libhevc). Product: Android. Versions: 8.0. Android ID A-65186291.
Android
Mitigation only
MEDIUM 6.5
CVE-2017-13148
A denial of service vulnerability in the Android media framework (libmpeg2). Product: Android. Versions: 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2, 8.0. Android …
Android
Mitigation only
HIGH 7.8
CVE-2017-15868
The bnep_add_connection function in net/bluetooth/bnep/core.c in the Linux kernel before 3.19 does not ensure that an l2cap socket is available, whic…
Linux Kernel
3.2.97 / 3.10.108+
CRITICAL 9.8
CVE-2017-14908
In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, the SafeSwitch test application does …
Android
Mitigation only
CRITICAL 9.8
CVE-2017-14909
In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, a count value that is read from a fil…
Android
No fix yet
CRITICAL 9.8
CVE-2017-14914
In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, handles in the global client structur…
Android
No fix yet
MEDIUM 6.2
CVE-2017-15707EPSS 10%
In Apache Struts 2.5 to 2.5.14, the REST Plugin is using an outdated JSON-lib library which is vulnerable and allow perform a DoS attack using malici…
Struts
after 2.5.14
CRITICAL 9.8
CVE-2017-17086
Indeo Otter through 1.7.4 mishandles a "</script>" substring in an initial DP payload, which allows remote attackers to cause a denial of service (cr…
Otter
after 1.7.4
HIGH 7.5
CVE-2017-17065
An issue was discovered on D-Link DIR-605L Model B before FW2.11betaB06_hbrf devices, related to the code that handles the authentication values for …
Dir 605l Model B Firmware
Mitigation only
MEDIUM 5.3
CVE-2017-12355
A vulnerability in the Local Packet Transport Services (LPTS) ingress frame-processing functionality of Cisco IOS XR Software could allow an unauthen…
Ios Xr
Mitigation only
CRITICAL 9.6
CVE-2017-12367
A "Cisco WebEx Network Recording Player Denial of Service Vulnerability" exists in Cisco WebEx Network Recording Player for Advanced Recording Format…
Webex Meetings Server
Mitigation only
MEDIUM 5.0
CVE-2017-12297
A vulnerability in Cisco WebEx Meeting Center could allow an authenticated, remote attacker to initiate connections to arbitrary hosts, aka a "URL Re…
Webex Meeting Center
Mitigation only
MEDIUM 5.8
CVE-2017-12328
A vulnerability in Session Initiation Protocol (SIP) call handling in Cisco IP Phone 8800 Series devices could allow an unauthenticated, remote attac…
Ip Phone 8800 Series Firmware
Mitigation only
MEDIUM 6.7
CVE-2017-12334
A vulnerability in the CLI of Cisco NX-OS System Software could allow an authenticated, local attacker to perform a command injection attack. An atta…
Nx Os
Mitigation only
MEDIUM 6.0
CVE-2017-12338
A vulnerability in the CLI of Cisco NX-OS System Software could allow an authenticated, local attacker to read the contents of arbitrary files. The v…
Nx Os
Mitigation only
MEDIUM 5.5
CVE-2017-16951
Winamp Pro 5.66 Build 3512 allows remote attackers to cause a denial of service via a crafted WAV, WMV, AU, ASF, AIFF, or AIF file.
Winamp Pro
No fix yet
MEDIUM 5.5
CVE-2017-16952
KMPlayer 4.2.2.4 allows remote attackers to cause a denial of service via a crafted NSV file.
Kmplayer
No fix yet
HIGH 7.5
CVE-2017-8019
An issue was discovered in EMC ScaleIO 2.0.1.x. A vulnerability in message parsers (MDM, SDS, and LIA) could potentially allow an unauthenticated rem…
Scaleio
Mitigation only
CRITICAL 9.8
CVE-2017-1001003
math.js before 3.17.0 had an issue where private properties such as a constructor could be replaced by using unicode characters when creating an obje…
Mathjs
3.17.0+
HIGH 8.8
CVE-2017-1001004
typed-function before 0.10.6 had an arbitrary code execution in the JavaScript engine. Creating a typed function with JavaScript code in the name cou…
Typed Function
0.10.6+