Vulnerabilities > Critical

DATE CVE VULNERABILITY TITLE RISK
2015-02-06 CVE-2015-0317 Security vulnerability in Adobe Flash Player
Adobe Flash Player before 13.0.0.269 and 14.x through 16.x before 16.0.0.305 on Windows and OS X and before 11.2.202.442 on Linux allows attackers to execute arbitrary code by leveraging an unspecified "type confusion," a different vulnerability than CVE-2015-0319.
network
low complexity
adobe linux apple microsoft
critical
10.0
2015-02-06 CVE-2015-0316 Security vulnerability in Adobe Flash Player
Adobe Flash Player before 13.0.0.269 and 14.x through 16.x before 16.0.0.305 on Windows and OS X and before 11.2.202.442 on Linux allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2015-0314, CVE-2015-0318, CVE-2015-0321, CVE-2015-0329, and CVE-2015-0330.
network
low complexity
adobe linux apple microsoft
critical
10.0
2015-02-06 CVE-2015-0315 Security vulnerability in Adobe Flash Player
Use-after-free vulnerability in Adobe Flash Player before 13.0.0.269 and 14.x through 16.x before 16.0.0.305 on Windows and OS X and before 11.2.202.442 on Linux allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2015-0313, CVE-2015-0320, and CVE-2015-0322.
network
low complexity
adobe apple microsoft linux
critical
10.0
2015-02-06 CVE-2015-0314 Security vulnerability in Adobe Flash Player
Adobe Flash Player before 13.0.0.269 and 14.x through 16.x before 16.0.0.305 on Windows and OS X and before 11.2.202.442 on Linux allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2015-0316, CVE-2015-0318, CVE-2015-0321, CVE-2015-0329, and CVE-2015-0330.
network
low complexity
adobe linux apple microsoft
critical
10.0
2015-02-03 CVE-2015-1469 Permissions, Privileges, and Access Controls vulnerability in Servision HVG Video Gateway Firmware 2.2.26A100/2.2.26A77
time.htm in the web interface on SerVision HVG Video Gateway devices with firmware through 2.2.26a100 allows remote authenticated users to gain privileges by leveraging a cookie received in an HTTP response, a different vulnerability than CVE-2015-0929 and CVE-2015-0930.
network
low complexity
servision CWE-264
critical
9.0
2015-02-03 CVE-2015-0930 Credentials Management vulnerability in Servision HVG Video Gateway Firmware 2.2.26A100/2.2.26A77
The web interface on SerVision HVG Video Gateway devices with firmware before 2.2.26a100 has a hardcoded administrative password, which makes it easier for remote attackers to obtain access via an HTTP session.
network
low complexity
servision CWE-255
critical
10.0
2015-02-03 CVE-2015-0929 Improper Access Control vulnerability in Servision HVG Video Gateway Firmware 2.2.26A77
time.htm in the web interface on SerVision HVG Video Gateway devices with firmware before 2.2.26a78 allows remote attackers to bypass authentication and obtain administrative access by leveraging a cookie received in an HTTP response.
network
low complexity
servision CWE-284
critical
10.0
2015-02-03 CVE-2014-9574 Path Traversal vulnerability in Fluxbb
Directory traversal vulnerability in install.php in FluxBB before 1.5.8 allows remote attackers to include and execute arbitrary local install.php files via a ..
network
fluxbb CWE-22
critical
9.3
2015-02-02 CVE-2015-0313 Use After Free vulnerability in multiple products
Use-after-free vulnerability in Adobe Flash Player before 13.0.0.269 and 14.x through 16.x before 16.0.0.305 on Windows and OS X and before 11.2.202.442 on Linux allows remote attackers to execute arbitrary code via unspecified vectors, as exploited in the wild in February 2015, a different vulnerability than CVE-2015-0315, CVE-2015-0320, and CVE-2015-0322.
network
low complexity
adobe suse opensuse microsoft CWE-416
critical
9.8
2015-02-02 CVE-2015-1449 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Siemens Ruggedcom Firmware Bs4.4.4621.31/Ss4.4.4624.34
Buffer overflow in the integrated web server on Siemens Ruggedcom WIN51xx devices with firmware before SS4.4.4624.35, WIN52xx devices with firmware before SS4.4.4624.35, WIN70xx devices with firmware before BS4.4.4621.32, and WIN72xx devices with firmware before BS4.4.4621.32 allows remote attackers to execute arbitrary code via unspecified vectors.
network
low complexity
siemens CWE-119
critical
10.0