Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
MEDIUM 5.5
CVE-2017-8666
Microsoft Win32k in Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold,…
Windows 10
Patch available
MEDIUM 5.5
CVE-2017-8668
The Volume Manager Extension Driver in Microsoft Windows 7 SP1, Windows Server 2008 SP2 and R2 SP1, Windows 8.1 and Windows RT 8.1, Windows Server 20…
Windows 7
Patch available
CRITICAL 9.8
CVE-2010-3845
libapache-authenhook-perl 2.00-04 stores usernames and passwords in plaintext in the vhost error log.
Apache Authenhook
Patch available
HIGH 7.5
CVE-2011-4343EPSS 5%
Information disclosure vulnerability in Apache MyFaces Core 2.0.1 through 2.0.10 and 2.1.0 through 2.1.4 allows remote attackers to inject EL express…
Myfaces
Patch available
HIGH 7.5
CVE-2017-8516EPSS 8%
Microsoft SQL Server Analysis Services in Microsoft SQL Server 2012, Microsoft SQL Server 2014, and Microsoft SQL Server 2016 allows an information d…
Sql Server
Patch available
HIGH 7.5
CVE-2017-11155EPSS 47%
An information exposure vulnerability in index.php in Synology Photo Station before 6.7.3-3432 and 6.3-2967 allows remote attackers to obtain sensiti…
Photo Station
after 6.7.2-3429
MEDIUM 6.5
CVE-2017-10084
Vulnerability in the Oracle FLEXCUBE Universal Banking component of Oracle Financial Services Applications (subcomponent: Report Generator). Supporte…
Flexcube Universal Banking
Patch available
MEDIUM 5.3
CVE-2017-10093
Vulnerability in the Oracle Agile PLM component of Oracle Supply Chain Products Suite (subcomponent: Security). Supported versions that are affected …
Agile Product Lifecycle Management
Patch available
HIGH 7.5
CVE-2016-6220
Information Disclosure vulnerability in the Dashboard and Error Pages in Trend Micro Control Manager SP3 6.0.
Control Manager
Patch available
HIGH 7.5
CVE-2014-3462
The ".encfs6.xml" configuration file in encfs before 1.7.5 allows remote attackers to access sensitive data by setting "blockMACBytes" to 0 and addin…
Leap
1.7.5+
HIGH 7.5
CVE-2017-6752
A vulnerability in the web interface of the Cisco Adaptive Security Appliance (ASA) 9.3(3) and 9.6(2) could allow an unauthenticated, remote attacker…
Adaptive Security Appliance Software
Mitigation only
HIGH 7.5
CVE-2017-9858
An issue was discovered in SMA Solar Technology products. By sending crafted packets to an inverter and observing the response, active and inactive u…
Sunny Boy 3600 Firmware
Mitigation only
HIGH 7.5
CVE-2017-9862
An issue was discovered in SMA Solar Technology products. When signed into Sunny Explorer with a wrong password, it is possible to create a debug rep…
Sunny Explorer
Mitigation only
HIGH 7.5
CVE-2017-11387EPSS 15%
Authentication Bypass in Trend Micro Control Manager 6.0 causes Information Disclosure when authentication validation is not done for functionality t…
Control Manager
Patch available
MEDIUM 5.9
CVE-2015-3642
The TLS and DTLS processing functionality in Citrix NetScaler Application Delivery Controller (ADC) and NetScaler Gateway devices with firmware 9.x b…
Netscaler Application Delivery Controller
Mitigation only
MEDIUM 6.5
CVE-2017-11356
The application distribution export functionality in PEGA Platform 7.2 ML0 and earlier allows remote authenticated users with certain privileges to o…
Pega Platform
after 7.2_ml0
MEDIUM 6.5
CVE-2017-7890
The GIF decoding function gdImageCreateFromGifCtx in gd_gif_in.c in the GD Graphics Library (aka libgd), as used in PHP before 5.6.31 and 7.x before …
PHP
after 5.6.30
MEDIUM 5.5
CVE-2017-8572EPSS 13%
Microsoft Outlook 2007 SP3, Outlook 2010 SP2, Outlook 2013 SP1, Outlook 2013 RT SP1, and Outlook 2016 as packaged in Microsoft Office allows an infor…
Outlook
Patch available
MEDIUM 6.5
CVE-2017-4922
VMware vCenter Server (6.5 prior to 6.5 U1) contains an information disclosure issue due to the service startup script using world writable directori…
Vcenter Server
Patch available
CRITICAL 9.8
CVE-2017-4923
VMware vCenter Server (6.5 prior to 6.5 U1) contains an information disclosure vulnerability. This issue may allow plaintext credentials to be obtain…
Vcenter Server
Patch available
MEDIUM 5.3
CVE-2015-5059
The "Project Documentation" feature in MantisBT 1.2.19 and earlier, when the threshold to access files ($g_view_proj_doc_threshold) is set to ANYBODY…
Mantisbt
after 1.2.19
MEDIUM 6.5
CVE-2017-9476
The Comcast firmware on Cisco DPC3939 (firmware version dpc3939-P20-18-v303r20421733-160420a-CMCST); Cisco DPC3939 (firmware version dpc3939-P20-18-v…
Dpc3939 Firmware
No fix yet
MEDIUM 6.5
CVE-2017-9477
The Comcast firmware on Cisco DPC3939 (firmware version dpc3939-P20-18-v303r20421733-160420a-CMCST) and DPC3939 (firmware version dpc3939-P20-18-v303…
Dpc3939 Firmware
No fix yet
HIGH 7.5
CVE-2017-9478
The Comcast firmware on Cisco DPC3939 (firmware version dpc3939-P20-18-v303r20421733-160420a-CMCST) and DPC3939 (firmware version dpc3939-P20-18-v303…
Dpc3939 Firmware
No fix yet
MEDIUM 5.5
CVE-2017-9480
The Comcast firmware on Cisco DPC3939 (firmware version dpc3939-P20-18-v303r20421746-170221a-CMCST) devices allows local users (e.g., users who have …
Dpc3939 Firmware
No fix yet
HIGH 7.5
CVE-2017-9484
The Comcast firmware on Cisco DPC3939 (firmware version dpc3939-P20-18-v303r20421733-160420a-CMCST) and DPC3939 (firmware version dpc3939-P20-18-v303…
Dpc3939 Firmware
No fix yet
HIGH 7.5
CVE-2017-9486
The Comcast firmware on Cisco DPC3939 (firmware version dpc3939-P20-18-v303r20421746-170221a-CMCST) devices allows remote attackers to compute passwo…
Dpc3939 Firmware
No fix yet
MEDIUM 5.9
CVE-2017-9487
The Comcast firmware on Cisco DPC3939 (firmware version dpc3939-P20-18-v303r20421746-170221a-CMCST) and DPC3941T (firmware version DPC3941_2.5s3_PROD…
Dpc3939 Firmware
No fix yet
MEDIUM 5.3
CVE-2017-9491
The Comcast firmware on Cisco DPC3939 (firmware version dpc3939-P20-18-v303r20421733-160420a-CMCST); Cisco DPC3939 (firmware version dpc3939-P20-18-v…
Dpc3939 Firmware
Mitigation only
HIGH 7.5
CVE-2017-9492
The Comcast firmware on Cisco DPC3939 (firmware version dpc3939-P20-18-v303r20421733-160420a-CMCST); Cisco DPC3939 (firmware version dpc3939-P20-18-v…
Dpc3939 Firmware
Mitigation only