Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
MEDIUM 6.9
CVE-2013-4291
The virSecurityManagerSetProcessLabel function in libvirt 0.10.2.7, 1.0.5.5, and 1.1.1, when the domain has read an uid:gid label, does not properly …
Libvirt
Patch available
MEDIUM 5.0
CVE-2013-4153
Double free vulnerability in the qemuAgentGetVCPUs function in qemu/qemu_agent.c in libvirt 1.0.6 through 1.1.0 allows remote attackers to cause a de…
Libvirt
Patch available
MEDIUM 5.0
CVE-2013-5651
The virBitmapParse function in util/virbitmap.c in libvirt before 1.1.2 allows context-dependent attackers to cause a denial of service (out-of-bound…
Libvirt
after 1.1.1
MEDIUM 5.0
CVE-2013-2218EPSS 8%
Double free vulnerability in the virConnectListAllInterfaces method in interface/interface_backend_netcf.c in libvirt 1.0.6 allows remote attackers t…
Libvirt
Patch available
MEDIUM 5.4
CVE-2013-4112
The DiagnosticsHandler in JGroup 3.0.x, 3.1.x, 3.2.x before 3.2.9, and 3.3.x before 3.3.3 allows remote attackers to obtain sensitive information (di…
Jboss Enterprise Application Platform
Mitigation only
HIGH 9.4
CVE-2013-2068EPSS 59%
Multiple directory traversal vulnerabilities in the AgentController in Red Hat CloudForms Management Engine 2.0 allow remote attackers to create and …
Cloudforms Management Engine
No fix yet
HIGH 7.5
CVE-2013-4182
app/controllers/api/v1/hosts_controller.rb in Foreman before 1.2.2 does not properly restrict access to hosts, which allows remote attackers to acces…
Openstack
after 1.2.1
MEDIUM 5.0
CVE-2013-4180
The (1) power and (2) ipmi_boot actions in the HostController in Foreman before 1.2.2 allow remote attackers to cause a denial of service (memory con…
Openstack
after 1.2.1
HIGH 7.2
CVE-2013-2176
Unquoted Windows search path vulnerability in the Red Hat Enterprise Virtualization Application Provisioning Tool (RHEV-APT) in the rhev-guest-tools-…
Enterprise Virtualization
Mitigation only
HIGH 8.5
CVE-2013-4172
The Red Hat CloudForms Management Engine 5.1 allow remote administrators to execute arbitrary Ruby code via unspecified vectors.
Cloudforms Management Engine
Mitigation only
MEDIUM 5.8
CVE-2013-1909
The Python client in Apache Qpid before 2.2 does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subje…
Enterprise Mrg
after 0.20
MEDIUM 6.4
CVE-2013-4213
Red Hat JBoss Enterprise Application Platform (EAP) 6.1.0 does not properly cache EJB invocations by the EJB client API, which allows remote attacker…
Jboss Enterprise Application Platform
Mitigation only
MEDIUM 6.4
CVE-2013-4128
Red Hat JBoss Enterprise Application Platform (EAP) 6.1.0 does not properly cache EJB invocations by remote-naming, which allows remote attackers to …
Jboss Enterprise Application Platform
Mitigation only
MEDIUM 6.0
CVE-2013-2113EPSS 21%
The create method in app/controllers/users_controller.rb in Foreman before 1.2.0-RC2 allows remote authenticated users with permissions to create or …
Openstack
after 1.2.0
MEDIUM 6.0
CVE-2013-2121EPSS 25%
Eval injection vulnerability in the create method in the Bookmarks controller in Foreman before 1.2.0-RC2 allows remote authenticated users with perm…
Openstack
after 1.2.0
MEDIUM 5.0
CVE-2013-2056
The Inter-Satellite Sync (ISS) operation in Red Hat Network (RHN) Satellite 5.3, 5.4, and 5.5 does not properly check client "authenticity," which al…
Satellite
Mitigation only
MEDIUM 5.0
CVE-2011-1483
wsf/common/DOMUtils.java in JBossWS Native in Red Hat JBoss Enterprise Application Platform 4.2.0.CP09, 4.3, and 5.1.1; JBoss Enterprise Portal Platf…
Jboss Communications Platform
Patch available
HIGH 7.5
CVE-2013-2165EPSS 13%
ResourceBuilderImpl.java in the RichFaces 3.x through 5.x implementation in Red Hat JBoss Web Framework Kit before 2.3.0, Red Hat JBoss Web Platform …
Jboss Enterprise Application Platform
after 2.2.0
MEDIUM 6.9
CVE-2013-1976
The (1) tomcat5, (2) tomcat6, and (3) tomcat7 init scripts, as used in the RPM distribution of Tomcat for JBoss Enterprise Web Server 1.0.2 and 2.0.0…
Jboss Enterprise Web Server
Mitigation only
MEDIUM 5.0
CVE-2013-2144
Red Hat Enterprise Virtualization Manager (RHEVM) before 3.2 does not properly check permissions for the target storage domain, which allows attacker…
Enterprise Virtualization Manager
after 3.1
HIGH 7.2
CVE-2013-2069
Red Hat livecd-tools before 13.4.4, 17.x before 17.17, 18.x before 18.16, and 19.x before 19.3, when a rootpw directive is not set in a Kickstart fil…
Livecd Tools
13.4.4 / 17.17+
MEDIUM 5.0
CVE-2013-1962
The remoteDispatchStoragePoolListAllVolumes function in the storage pool manager in libvirt 1.0.5 allows remote attackers to cause a denial of servic…
Libvirt
Mitigation only
HIGH 10.0
CVE-2013-2728EPSS 5%
Adobe Flash Player before 10.3.183.86 and 11.x before 11.7.700.202 on Windows and Mac OS X, before 10.3.183.86 and 11.x before 11.2.202.285 on Linux,…
Enterprise Linux Desktop
3.7.0.1860 / 10.3.183.86+
HIGH 10.0
CVE-2013-3324EPSS 5%
Adobe Flash Player before 10.3.183.86 and 11.x before 11.7.700.202 on Windows and Mac OS X, before 10.3.183.86 and 11.x before 11.2.202.285 on Linux,…
Enterprise Linux Desktop
3.7.0.1860 / 10.3.183.86+
HIGH 10.0
CVE-2013-3325EPSS 5%
Adobe Flash Player before 10.3.183.86 and 11.x before 11.7.700.202 on Windows and Mac OS X, before 10.3.183.86 and 11.x before 11.2.202.285 on Linux,…
Enterprise Linux Desktop
3.7.0.1860 / 10.3.183.86+
HIGH 10.0
CVE-2013-3326EPSS 5%
Adobe Flash Player before 10.3.183.86 and 11.x before 11.7.700.202 on Windows and Mac OS X, before 10.3.183.86 and 11.x before 11.2.202.285 on Linux,…
Enterprise Linux Desktop
3.7.0.1860 / 10.3.183.86+
HIGH 10.0
CVE-2013-3327EPSS 5%
Adobe Flash Player before 10.3.183.86 and 11.x before 11.7.700.202 on Windows and Mac OS X, before 10.3.183.86 and 11.x before 11.2.202.285 on Linux,…
Enterprise Linux Desktop
3.7.0.1860 / 10.3.183.86+
HIGH 10.0
CVE-2013-3328EPSS 5%
Adobe Flash Player before 10.3.183.86 and 11.x before 11.7.700.202 on Windows and Mac OS X, before 10.3.183.86 and 11.x before 11.2.202.285 on Linux,…
Enterprise Linux Desktop
3.7.0.1860 / 10.3.183.86+
HIGH 10.0
CVE-2013-3329EPSS 5%
Adobe Flash Player before 10.3.183.86 and 11.x before 11.7.700.202 on Windows and Mac OS X, before 10.3.183.86 and 11.x before 11.2.202.285 on Linux,…
Enterprise Linux Desktop
3.7.0.1860 / 10.3.183.86+
HIGH 10.0
CVE-2013-3330EPSS 5%
Adobe Flash Player before 10.3.183.86 and 11.x before 11.7.700.202 on Windows and Mac OS X, before 10.3.183.86 and 11.x before 11.2.202.285 on Linux,…
Enterprise Linux Desktop
3.7.0.1860 / 10.3.183.86+