Vulnerabilities > High

DATE CVE VULNERABILITY TITLE RISK
2017-08-07 CVE-2017-6747 Improper Authentication vulnerability in Cisco Identity Services Engine
A vulnerability in the authentication module of Cisco Identity Services Engine (ISE) could allow an unauthenticated, remote attacker to bypass local authentication.
network
low complexity
cisco CWE-287
7.5
2017-08-07 CVE-2017-6745 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Cisco Videoscape Distribution Suite FOR Television
A vulnerability in the cache server within Cisco Videoscape Distribution Suite (VDS) for Television 3.2(5)ES1 could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on a targeted appliance.
network
low complexity
cisco CWE-119
7.8
2017-08-07 CVE-2017-12602 Unspecified vulnerability in Opencv
OpenCV (Open Source Computer Vision Library) through 3.3 has a denial of service (memory consumption) issue, as demonstrated by the 10-opencv-dos-memory-exhaust test case.
network
low complexity
opencv
7.8
2017-08-07 CVE-2017-12600 Unspecified vulnerability in Opencv
OpenCV (Open Source Computer Vision Library) through 3.3 has a denial of service (CPU consumption) issue, as demonstrated by the 11-opencv-dos-cpu-exhaust test case.
network
low complexity
opencv
7.8
2017-08-06 CVE-2017-12588 Use of Externally-Controlled Format String vulnerability in Rsyslog
The zmq3 input and output modules in rsyslog before 8.28.0 interpreted description fields as format strings, possibly allowing a format string attack with unspecified impact.
network
low complexity
rsyslog CWE-134
7.5
2017-08-06 CVE-2017-12480 Untrusted Search Path vulnerability in Sandboxie Installer 5071703
Sandboxie installer 5071703 has a DLL Hijacking or Unsafe DLL Loading Vulnerability via a Trojan horse dwmapi.dll or profapi.dll file in an AppData\Local\Temp directory.
local
low complexity
sandboxie CWE-426
7.8
2017-08-06 CVE-2017-12568 Unspecified vulnerability in Brother Dcp-J132W Firmware 1.20
Denial of Service vulnerability in Debut embedded httpd 1.20 in Brother DCP-J132W (and probably other DCP models) allows remote attackers to hang the printer (disrupting its network connection) by sending a large amount of HTTP packets.
network
low complexity
brother
7.8
2017-08-05 CVE-2017-12563 Allocation of Resources Without Limits or Throttling vulnerability in Imagemagick 7.0.62
In ImageMagick 7.0.6-2, a memory exhaustion vulnerability was found in the function ReadPSDImage in coders/psd.c, which allows attackers to cause a denial of service.
7.1
2017-08-05 CVE-2017-9864 Unspecified vulnerability in SMA products
An issue was discovered in SMA Solar Technology products.
network
low complexity
sma
7.5
2017-08-05 CVE-2017-9863 Cross-Site Request Forgery (CSRF) vulnerability in SMA products
An issue was discovered in SMA Solar Technology products.
network
low complexity
sma CWE-352
8.8