Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
HIGH 7.5
CVE-2015-3307EPSS 8%
The phar_parse_metadata function in ext/phar/phar.c in PHP before 5.4.40, 5.5.x before 5.5.24, and 5.6.x before 5.6.8 allows remote attackers to caus…
Enterprise Linux Desktop
after 5.4.39
HIGH 7.5
CVE-2014-8162
XML external entity (XXE) in the RPC interface in Spacewalk and Red Hat Network (RHN) Satellite 5.7 and earlier allows remote attackers to read arbit…
Network Satellite
after 5.7
HIGH 7.7
CVE-2015-3456EPSS 15%
The Floppy Disk Controller (FDC) in QEMU, as used in Xen 4.5.x and earlier and KVM, allows local guest users to cause a denial of service (out-of-bou…
Enterprise Virtualization
after 2.3.0
MEDIUM 6.8
CVE-2015-0237
Red Hat Enterprise Virtualization (RHEV) Manager before 3.5.1 ignores the permission to deny snapshot creation during live storage migration between …
Enterprise Virtualization Manager
after 3.5.0
HIGH 9.0
CVE-2015-0297
Red Hat JBoss Operations Network 3.3.1 does not properly restrict access to certain APIs, which allows remote attackers to execute arbitrary Java met…
Jboss Operations Network
Mitigation only
HIGH 7.5
CVE-2014-8125
XML external entity (XXE) vulnerability in Drools and jBPM before 6.2.0 allows remote attackers to read arbitrary files or possibly have other unspec…
Drools
after 6.1.0
MEDIUM 5.0
CVE-2015-3044EPSS 9%
Adobe Flash Player before 13.0.0.281 and 14.x through 17.x before 17.0.0.169 on Windows and OS X and before 11.2.202.457 on Linux allows attackers to…
Enterprise Linux Desktop Supplementary
Patch available
CRITICAL 9.8
CVE-2015-3043 KEVEPSS 74%
Adobe Flash Player before 13.0.0.281 and 14.x through 17.x before 17.0.0.169 on Windows and OS X and before 11.2.202.457 on Linux allows attackers to…
Enterprise Linux Desktop
11.2.202.457 / 13.0.0.281+
HIGH 10.0
CVE-2015-3042EPSS 37%
Adobe Flash Player before 13.0.0.281 and 14.x through 17.x before 17.0.0.169 on Windows and OS X and before 11.2.202.457 on Linux allows attackers to…
Enterprise Linux Desktop Supplementary
after 13.0.0.264
HIGH 10.0
CVE-2015-3041EPSS 6%
Adobe Flash Player before 13.0.0.281 and 14.x through 17.x before 17.0.0.169 on Windows and OS X and before 11.2.202.457 on Linux allows attackers to…
Enterprise Linux Desktop Supplementary
after 13.0.0.264
MEDIUM 5.0
CVE-2015-3040
Adobe Flash Player before 13.0.0.281 and 14.x through 17.x before 17.0.0.169 on Windows and OS X and before 11.2.202.457 on Linux does not properly r…
Enterprise Linux Desktop Supplementary
after 13.0.0.264
HIGH 10.0
CVE-2015-3039EPSS 8%
Use-after-free vulnerability in Adobe Flash Player before 13.0.0.281 and 14.x through 17.x before 17.0.0.169 on Windows and OS X and before 11.2.202.…
Enterprise Linux Desktop Supplementary
after 13.0.0.264
HIGH 10.0
CVE-2015-3038EPSS 7%
Adobe Flash Player before 13.0.0.281 and 14.x through 17.x before 17.0.0.169 on Windows and OS X and before 11.2.202.457 on Linux allows attackers to…
Enterprise Linux Desktop Supplementary
after 13.0.0.264
HIGH 10.0
CVE-2015-0360EPSS 6%
Adobe Flash Player before 13.0.0.281 and 14.x through 17.x before 17.0.0.169 on Windows and OS X and before 11.2.202.457 on Linux allows attackers to…
Enterprise Linux Desktop Supplementary
after 13.0.0.264
HIGH 10.0
CVE-2015-0358EPSS 10%
Use-after-free vulnerability in Adobe Flash Player before 13.0.0.281 and 14.x through 17.x before 17.0.0.169 on Windows and OS X and before 11.2.202.…
Enterprise Linux Desktop Supplementary
after 13.0.0.264
HIGH 10.0
CVE-2015-0354EPSS 6%
Adobe Flash Player before 13.0.0.281 and 14.x through 17.x before 17.0.0.169 on Windows and OS X and before 11.2.202.457 on Linux allows attackers to…
Enterprise Linux Desktop Supplementary
after 13.0.0.264
HIGH 10.0
CVE-2015-0355EPSS 6%
Adobe Flash Player before 13.0.0.281 and 14.x through 17.x before 17.0.0.169 on Windows and OS X and before 11.2.202.457 on Linux allows attackers to…
Enterprise Linux Desktop Supplementary
after 13.0.0.264
HIGH 10.0
CVE-2015-0353EPSS 6%
Adobe Flash Player before 13.0.0.281 and 14.x through 17.x before 17.0.0.169 on Windows and OS X and before 11.2.202.457 on Linux allows attackers to…
Enterprise Linux Desktop Supplementary
after 13.0.0.264
HIGH 10.0
CVE-2015-0352EPSS 6%
Adobe Flash Player before 13.0.0.281 and 14.x through 17.x before 17.0.0.169 on Windows and OS X and before 11.2.202.457 on Linux allows attackers to…
Enterprise Linux Desktop Supplementary
after 13.0.0.264
HIGH 10.0
CVE-2015-0351EPSS 8%
Use-after-free vulnerability in Adobe Flash Player before 13.0.0.281 and 14.x through 17.x before 17.0.0.169 on Windows and OS X and before 11.2.202.…
Enterprise Linux Desktop Supplementary
after 13.0.0.264
HIGH 10.0
CVE-2015-0350EPSS 6%
Adobe Flash Player before 13.0.0.281 and 14.x through 17.x before 17.0.0.169 on Windows and OS X and before 11.2.202.457 on Linux allows attackers to…
Enterprise Linux Desktop Supplementary
after 13.0.0.264
HIGH 10.0
CVE-2015-0349EPSS 8%
Use-after-free vulnerability in Adobe Flash Player before 13.0.0.281 and 14.x through 17.x before 17.0.0.169 on Windows and OS X and before 11.2.202.…
Enterprise Linux Desktop Supplementary
after 13.0.0.264
HIGH 10.0
CVE-2015-0348EPSS 9%
Buffer overflow in Adobe Flash Player before 13.0.0.281 and 14.x through 17.x before 17.0.0.169 on Windows and OS X and before 11.2.202.457 on Linux …
Enterprise Linux Desktop Supplementary
after 13.0.0.264
HIGH 10.0
CVE-2015-0347EPSS 6%
Adobe Flash Player before 13.0.0.281 and 14.x through 17.x before 17.0.0.169 on Windows and OS X and before 11.2.202.457 on Linux allows attackers to…
Enterprise Linux Desktop Supplementary
after 13.0.0.264
HIGH 10.0
CVE-2015-0346EPSS 10%
Double free vulnerability in Adobe Flash Player before 13.0.0.281 and 14.x through 17.x before 17.0.0.169 on Windows and OS X and before 11.2.202.457…
Enterprise Linux Desktop Supplementary
after 13.0.0.264
HIGH 10.0
CVE-2015-1842EPSS 5%
The puppet manifests in the Red Hat openstack-puppet-modules package before 2014.2.13-2 uses a default password of CHANGEME for the pcsd daemon, whic…
Openstack
after 6.0
HIGH 7.8
CVE-2015-0283
The slapi-nis plug-in before 0.54.2 does not properly reallocate memory when processing user accounts, which allows remote attackers to cause a denia…
Slapi Nis
after 0.54.1
MEDIUM 5.0
CVE-2015-2348EPSS 9%
The move_uploaded_file implementation in ext/standard/basic_functions.c in PHP before 5.4.39, 5.5.x before 5.5.23, and 5.6.x before 5.6.7 truncates a…
Enterprise Linux Desktop
after 10.10.5
MEDIUM 6.8
CVE-2015-0279
JBoss RichFaces before 4.5.4 allows remote attackers to inject expression language (EL) expressions and execute arbitrary Java code via the do parame…
Richfaces
after 4.5.4
HIGH 7.5
CVE-2014-3691
Smart Proxy (aka Smart-Proxy and foreman-proxy) in Foreman before 1.5.4 and 1.6.x before 1.6.2 does not validate SSL certificates, which allows remot…
Openstack
after 1.5.3