Vulnerabilities > High

DATE CVE VULNERABILITY TITLE RISK
2018-02-06 CVE-2018-6774 Improper Input Validation vulnerability in Jiangmin Antivirus 16.0.0.100
In Jiangmin Antivirus 16.0.0.100, the driver file (KSysCall.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x9A008088.
local
low complexity
jiangmin CWE-20
7.8
2018-02-06 CVE-2018-6773 Improper Input Validation vulnerability in Jiangmin Antivirus 16.0.0.100
In Jiangmin Antivirus 16.0.0.100, the driver file (KSysCall.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x9A008084.
local
low complexity
jiangmin CWE-20
7.8
2018-02-06 CVE-2018-6772 Improper Input Validation vulnerability in Jiangmin Antivirus 16.0.0.100
In Jiangmin Antivirus 16.0.0.100, the driver file (KrnlCall.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x99008208.
local
low complexity
jiangmin CWE-20
7.8
2018-02-06 CVE-2018-6771 Improper Input Validation vulnerability in Jiangmin Antivirus 16.0.0.100
In Jiangmin Antivirus 16.0.0.100, the driver file (KrnlCall.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x99008224.
local
low complexity
jiangmin CWE-20
7.8
2018-02-06 CVE-2018-6770 Improper Input Validation vulnerability in Jiangmin Antivirus 16.0.0.100
In Jiangmin Antivirus 16.0.0.100, the driver file (KrnlCall.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x99008210.
local
low complexity
jiangmin CWE-20
7.8
2018-02-06 CVE-2018-6769 Improper Input Validation vulnerability in Jiangmin Antivirus 16.0.0.100
In Jiangmin Antivirus 16.0.0.100, the driver file (KrnlCall.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x99008020.
local
low complexity
jiangmin CWE-20
7.8
2018-02-06 CVE-2018-6768 Improper Input Validation vulnerability in Jiangmin Antivirus 16.0.0.100
In Jiangmin Antivirus 16.0.0.100, the driver file (KSysCall.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x9A008090.
local
low complexity
jiangmin CWE-20
7.8
2018-02-06 CVE-2018-6767 Out-of-bounds Read vulnerability in multiple products
A stack-based buffer over-read in the ParseRiffHeaderConfig function of cli/riff.c file of WavPack 5.1.0 allows a remote attacker to cause a denial-of-service attack or possibly have unspecified other impact via a maliciously crafted RF64 file.
local
low complexity
wavpack debian canonical CWE-125
7.8
2018-02-06 CVE-2018-5457 Uncontrolled Search Path Element vulnerability in Vyaire Carefusion Upgrade Utility 2.0.2.2
A uncontrolled search path element issue was discovered in Vyaire Medical CareFusion Upgrade Utility used with Windows XP systems, Versions 2.0.2.2 and prior versions.
local
high complexity
vyaire CWE-427
7.0
2018-02-06 CVE-2018-1299 Path Traversal vulnerability in Apache Allura
In Apache Allura before 1.8.0, unauthenticated attackers may retrieve arbitrary files through the Allura web application.
network
low complexity
apache CWE-22
7.5