Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
MEDIUM 6.5
CVE-2017-12422
NetApp StorageGRID Webscale 10.2.x before 10.2.2.3, 10.3.x before 10.3.0.4, and 10.4.x before 10.4.0.2 allow remote authenticated users to delete arb…
Storagegrid Webscale
Mitigation only
CRITICAL 9.8
CVE-2017-13707
Privilege escalation in Replibit Backup Manager earlier than version 2017.08.04 allows attackers to gain root privileges via sudo command execution. …
Replibit
2017.08.04+
MEDIUM 5.3
CVE-2017-8446
The Reporting feature in X-Pack in versions prior to 5.5.2 and standalone Reporting plugin versions versions prior to 2.4.6 had an impersonation vuln…
X Pack
after 5.5.1
HIGH 7.1
CVE-2017-6767
A vulnerability in Cisco Application Policy Infrastructure Controller (APIC) could allow an authenticated, remote attacker to gain higher privileges …
Application Policy Infrastructure Controller
Mitigation only
MEDIUM 5.3
CVE-2017-9662
An Improper Privilege Management issue was discovered in Fuji Electric Monitouch V-SFT versions prior to Version 5.4.43.0. Monitouch V-SFT is install…
Monitouch V Sft
after 5.4.42.0
MEDIUM 5.4
CVE-2017-10142
Vulnerability in the Oracle Hospitality Reporting and Analytics component of Oracle Hospitality Applications (subcomponent: Mobile Apps). Supported v…
Hospitality Reporting And Analytics
Patch available
MEDIUM 5.4
CVE-2017-10098
Vulnerability in the Oracle FLEXCUBE Universal Banking component of Oracle Financial Services Applications (subcomponent: Infrastructure). Supported …
Flexcube Universal Banking
Patch available
MEDIUM 6.5
CVE-2017-10103
Vulnerability in the Oracle FLEXCUBE Private Banking component of Oracle Financial Services Applications (subcomponent: Miscellaneous). Supported ver…
Flexcube Private Banking
Patch available
HIGH 7.4
CVE-2017-10104
Vulnerability in the Java Advanced Management Console component of Oracle Java SE (subcomponent: Server). The supported version that is affected is J…
Java Advanced Management Console
Patch available
MEDIUM 5.4
CVE-2017-10094
Vulnerability in the Oracle Agile PLM component of Oracle Supply Chain Products Suite (subcomponent: Security). Supported versions that are affected …
Agile Product Lifecycle Management
Patch available
MEDIUM 5.4
CVE-2017-10046
Vulnerability in the Primavera P6 Enterprise Project Portfolio Management component of Oracle Primavera Products Suite (subcomponent: Web Access). Su…
Primavera P6 Enterprise Project Portfolio Management
Patch available
HIGH 7.7
CVE-2017-10000
Vulnerability in the Oracle Hospitality Reporting and Analytics component of Oracle Hospitality Applications (subcomponent: Reporting). Supported ver…
Hospitality Reporting And Analytics
Patch available
HIGH 8.1
CVE-2017-9940
A vulnerability was discovered in Siemens SiPass integrated (All versions before V2.70) that could allow an attacker with access to a low-privileged …
Sipass Integrated
after 2.65
MEDIUM 6.5
CVE-2017-7916
A Permissions, Privileges, and Access Controls issue was discovered in ABB VSN300 WiFi Logger Card versions 1.8.15 and prior, and VSN300 WiFi Logger …
Vsn300 Firmware
after 1.8.15
MEDIUM 6.3
CVE-2017-11438
GitLab Community Edition (CE) and Enterprise Edition (EE) before 9.0.11, 9.1.8, 9.2.8 allow an authenticated user with the ability to create a group …
GitLab
Mitigation only
MEDIUM 5.5
CVE-2017-11747
main.c in Tinyproxy 1.8.4 and earlier creates a /run/tinyproxy/tinyproxy.pid file after dropping privileges to a non-root account, which might allow …
Tinyproxy
after 1.8.4
HIGH 8.8
CVE-2017-11681
Incorrect Access Control vulnerability in Hashtopussy 0.4.0 allows remote authenticated users to execute actions that should only be available for ad…
Hashtopussy
after 0.4.0
CRITICAL 9.8
CVE-2017-11467EPSS 73%
OrientDB through 2.2.22 does not enforce privilege requirements during "where" or "fetchplan" or "order by" use, which allows remote attackers to exe…
Orientdb
after 2.2.22
HIGH 8.8
CVE-2017-11361
Inteno routers have a JUCI ACL misconfiguration that allows the "user" account to read files, write to files, and add root SSH keys via JSON commands…
Inteno Router Firmware
No fix yet
MEDIUM 6.5
CVE-2017-7532
In Moodle 3.x, course creators are able to change system default settings for courses.
Moodle
Patch available
CRITICAL 9.8
CVE-2017-1000003
ATutor versions 2.2.1 and earlier are vulnerable to an incorrect access control check vulnerability in the Social Application component resulting in …
Atutor
after 2.2.1
HIGH 7.0
CVE-2017-6728
A vulnerability in the CLI of Cisco IOS XR Software could allow an authenticated, local attacker to execute arbitrary code at the root privilege leve…
Ios Xr
Mitigation only
MEDIUM 6.7
CVE-2017-6732
A vulnerability in the installation procedure for Cisco Prime Network Software could allow an authenticated, local attacker to elevate their privileg…
Prime Network
Mitigation only
MEDIUM 6.6
CVE-2017-8032
In Cloud Foundry cf-release versions prior to v264; UAA release all versions of UAA v2.x.x, 3.6.x versions prior to v3.6.13, 3.9.x versions prior to …
Cloud Foundry Uaa
after 263
CRITICAL 9.8
CVE-2017-1000082
systemd v233 and earlier fails to safely parse usernames starting with a numeric digit (e.g. "0day"), running the service in question with root privi…
Systemd
234+
MEDIUM 6.8
CVE-2017-7918EPSS 7%
An Improper Access Control issue was discovered in Cambium Networks ePMP. After a valid user has used SNMP configuration export, an attacker is able …
Epmp 1000 Firmware
Mitigation only
HIGH 7.6
CVE-2017-7922EPSS 10%
An Improper Privilege Management issue was discovered in Cambium Networks ePMP. The privileges for SNMP community strings are not properly restricted…
Epmp 1000 Firmware
Mitigation only
MEDIUM 6.5
CVE-2016-8219
An issue was discovered in Cloud Foundry Foundation cf-release versions prior to 250 and CAPI-release versions prior to 1.12.0. A user with the Space…
Capi Release
1.12.0 / 250+
HIGH 8.8
CVE-2017-4973
An issue was discovered in Cloud Foundry Foundation cf-release versions prior to v257; UAA release 2.x versions prior to v2.7.4.14, 3.6.x versions pr…
Cloud Foundry Uaa Bosh
after 256
HIGH 7.2
CVE-2017-4991
An issue was discovered in Cloud Foundry Foundation cf-release versions prior to v260; UAA release 2.x versions prior to v2.7.4.16, 3.6.x versions pr…
Cf Release
after 259