Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
HIGH 7.1
CVE-2016-8794
Huawei Mate 8 phones with software Versions before NXT-AL10C00B386, Versions before NXT-CL00C92B386, Versions before NXT-DL00C17B386, Versions before…
Mate S Firmware
Mitigation only
HIGH 7.5
CVE-2016-8798
Huawei USG5500 with software V300R001C00 and V300R001C00 allows attackers to bypass the anti-DDoS module of the USGs to cause a denial of service con…
Usg5500 Firmware
Mitigation only
HIGH 8.8
CVE-2014-4707
Huawei Campus S7700 with software V200R001C00SPC300, V200R002C00SPC100, V200R003C00SPC300; S9300 with software V200R001C00SPC300, V200R002C00SPC100, …
Campus S7700 Firmware
Mitigation only
HIGH 7.8
CVE-2016-8273
Huawei PC client software HiSuite 4.0.5.300_OVE uses insecure HTTP for upgrade software package download and does not check the integrity of the soft…
Hisuite
Mitigation only
HIGH 7.3
CVE-2016-8032
Software Integrity Attacks vulnerability in Intel Security Anti-Virus Engine (AVE) 5200 through 5800 allows local attackers to bypass local security …
Anti Malware Scan Engine
Patch available
HIGH 7.5
CVE-2015-4624EPSS 37%
Hak5 WiFi Pineapple 2.0 through 2.3 uses predictable CSRF tokens.
Wi Fi Pineapple Firmware
No fix yet
CRITICAL 9.8
CVE-2016-6807
Custom commands may be executed on Ambari Agent (2.4.x, before 2.4.2) hosts without authorization, leading to unauthorized access to operations that …
Ambari
Mitigation only
MEDIUM 5.3
CVE-2016-9467
Nextcloud Server before 9.0.54 and 10.0.1 & ownCloud Server before 9.0.6 and 9.1.2 suffer from content spoofing in the files app. The location bar in…
Nextcloud Server
9.0.6 / 9.0.54+
MEDIUM 5.3
CVE-2016-9468
Nextcloud Server before 9.0.54 and 10.0.1 & ownCloud Server before 9.0.6 and 9.1.2 suffer from content spoofing in the dav app. The exception message…
Nextcloud Server
9.0.6 / 9.0.54+
HIGH 7.5
CVE-2016-9122
go-jose before 1.0.4 suffers from multiple signatures exploitation. The go-jose library supports messages with multiple signatures. However, when val…
Go Jose
after 1.0.3
MEDIUM 5.3
CVE-2016-9460
Nextcloud Server before 9.0.52 & ownCloud Server before 9.0.4 are vulnerable to a content-spoofing attack in the files app. The location bar in the f…
Nextcloud
after 9.0.51
MEDIUM 5.9
CVE-2016-10130
The http_connect function in transports/http.c in libgit2 before 0.24.6 and 0.25.x before 0.25.1 might allow man-in-the-middle attackers to spoof ser…
Libgit2
after 0.24.5
CRITICAL 9.8
CVE-2016-10144
coders/ipl.c in ImageMagick allows remote attackers to have unspecific impact by leveraging a missing malloc check.
Imagemagick
6.9.7-1+
MEDIUM 5.3
CVE-2015-8627
MediaWiki before 1.23.12, 1.24.x before 1.24.5, 1.25.x before 1.25.4, and 1.26.x before 1.26.1 do not properly normalize IP addresses containing zero…
Mediawiki
after 1.23.11
MEDIUM 5.9
CVE-2016-7468
An unauthenticated remote attacker may be able to disrupt services on F5 BIG-IP 11.4.1 - 11.5.4 devices with maliciously crafted network traffic. Thi…
Big Ip Local Traffic Manager
Mitigation only
HIGH 7.5
CVE-2016-5747
A security vulnerability in cookie handling in the http stack implementation in NDSD in Novell eDirectory before 9.0.1 allows remote attackers to byp…
Edirectory
after 9.0
HIGH 8.8
CVE-2016-5750
The certificate upload feature in iManager in NetIQ Access Manager 4.1 before 4.1.2 Hot Fix 1 and 4.2 before 4.2.2 could be used to upload JSP pages …
Access Manager
Mitigation only
CRITICAL 9.8
CVE-2016-5239
The gnuplot delegate functionality in ImageMagick before 6.9.4-0 and GraphicsMagick allows remote attackers to execute arbitrary commands via unspeci…
Imagemagick
after 6.9.3-9
MEDIUM 5.5
CVE-2013-7460
A write protection and execution bypass vulnerability in McAfee (now Intel Security) Application Control (MAC) 6.1.0 for Linux and earlier allows aut…
Application Control
after 6.1.0
MEDIUM 5.5
CVE-2013-7461
A write protection and execution bypass vulnerability in McAfee (now Intel Security) Change Control (MCC) 6.1.0 for Linux and earlier allows authenti…
Application Control
after 6.1.0
MEDIUM 5.9
CVE-2014-9920
Unauthorized execution of binary vulnerability in McAfee (now Intel Security) McAfee Application Control (MAC) 6.0.0 before hotfix 9726, 6.0.1 before…
Application Control
Mitigation only
MEDIUM 5.3
CVE-2015-8987
Man-in-the-middle (MitM) attack vulnerability in non-Mac OS agents in McAfee (now Intel Security) Agent (MA) 4.8.0 patch 2 and earlier allows attacke…
Agent
after 4.8.0
MEDIUM 6.3
CVE-2016-8007
Authentication bypass vulnerability in McAfee Host Intrusion Prevention Services (HIPS) 8.0 Patch 7 and earlier allows authenticated users to manipul…
Host Intrusion Prevention Services
after 8.0
HIGH 7.8
CVE-2016-8010
Application protections bypass vulnerability in Intel Security McAfee Application Control (MAC) 7.0 and earlier and Endpoint Security (ENS) 10.2 and …
Application Control
after 10.2
HIGH 7.5
CVE-2016-9368
An issue was discovered in Eaton xComfort Ethernet Communication Interface (ECI) Versions 1.07 and prior. By accessing a specific uniform resource lo…
Xcomfort Ethernet Communication Interface
after 1.07
MEDIUM 5.9
CVE-2016-9245
In F5 BIG-IP systems 12.1.0 - 12.1.2, malicious requests made to virtual servers with an HTTP profile can cause the TMM to restart. The issue is expo…
Big Ip Local Traffic Manager
Mitigation only
HIGH 7.5
CVE-2016-6255EPSS 27%
Portable UPnP SDK (aka libupnp) before 1.6.21 allows remote attackers to write to arbitrary files in the webroot via a POST request without a registe…
Debian Linux
after 1.6.20
HIGH 7.5
CVE-2016-8236
Reset to default settings may occur in Lenovo ThinkServer TSM RD350, RD450, RD550, RD650, TD350 during a prolonged broadcast storm in TSM versions ea…
Thinkserver Firmware
after 3.76.208
HIGH 7.8
CVE-2016-10065
The ReadVIFFImage function in coders/viff.c in ImageMagick before 7.0.1-0 allows remote attackers to cause a denial of service (application crash) or…
Imagemagick
after 6.9.7-10
HIGH 8.8
CVE-2016-7408
The dbclient in Dropbear SSH before 2016.74 allows remote attackers to execute arbitrary code via a crafted (1) -m or (2) -c argument.
Dropbear Ssh
after 2016.73