Vulnerabilities > High

DATE CVE VULNERABILITY TITLE RISK
2018-01-23 CVE-2017-16609 Information Exposure vulnerability in Netgain-Systems Enterprise Manager 7.2.699/7.2.730
This vulnerability allows remote attackers to disclose sensitive information on vulnerable installations of Netgain Enterprise Manager.
network
low complexity
netgain-systems CWE-200
7.5
2018-01-23 CVE-2017-16607 Information Exposure vulnerability in Netgain-Systems Enterprise Manager 7.2.699/7.2.730
This vulnerability allows remote attackers to disclose sensitive information on vulnerable installations of Netgain Enterprise Manager.
network
low complexity
netgain-systems CWE-200
7.5
2018-01-23 CVE-2017-16606 Exposure of Resource to Wrong Sphere vulnerability in Netgain-Systems Enterprise Manager 7.2.730
This vulnerability allows remote attackers to execute code by creating arbitrary files on vulnerable installations of NetGain Systems Enterprise Manager 7.2.730 build 1034.
network
low complexity
netgain-systems CWE-668
8.8
2018-01-23 CVE-2017-16603 Exposure of Resource to Wrong Sphere vulnerability in Netgain-Systems Enterprise Manager 7.2.730
This vulnerability allows remote attackers to execute code by creating arbitrary files on vulnerable installations of NetGain Systems Enterprise Manager 7.2.730 build 1034.
network
low complexity
netgain-systems CWE-668
8.8
2018-01-23 CVE-2017-16602 Use of Externally-Controlled Format String vulnerability in Netgain-Systems Enterprise Manager 7.2.730
This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of NetGain Systems Enterprise Manager 7.2.730 build 1034.
network
low complexity
netgain-systems CWE-134
8.8
2018-01-23 CVE-2017-16598 Exposure of Resource to Wrong Sphere vulnerability in Netgain-Systems Enterprise Manager 7.2.730
This vulnerability allows remote attackers to execute code by overwriting arbitrary files on vulnerable installations of NetGain Systems Enterprise Manager 7.2.730 build 1034.
network
low complexity
netgain-systems CWE-668
8.8
2018-01-23 CVE-2017-16590 Improper Authentication vulnerability in Netgain-Systems Enterprise Manager 7.2.699
This vulnerability allows remote attackers to bypass authentication on vulnerable installations of NetGain Systems Enterprise Manager 7.2.699 build 1001.
network
low complexity
netgain-systems CWE-287
8.8
2018-01-23 CVE-2016-5345 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Google Android
Buffer overflow in the Qualcomm radio driver in Android before 2017-01-05 on Android One devices allows local users to gain privileges via a crafted application, aka Android internal bug 32639452 and Qualcomm internal bug CR1079713.
local
high complexity
google CWE-119
7.0
2018-01-22 CVE-2018-0862 Unspecified vulnerability in Microsoft Office, Office Compatibility Pack and Word
Equation Editor in Microsoft Office 2003, Microsoft Office 2007, Microsoft Office 2010, Microsoft Office 2013, and Microsoft Office 2016 allows a remote code execution vulnerability due to the way objects are handled in memory, aka "Microsoft Word Remote Code Execution Vulnerability".
network
low complexity
microsoft
8.8
2018-01-22 CVE-2018-0849 Unspecified vulnerability in Microsoft Office, Office Compatibility Pack and Word
Equation Editor in Microsoft Office 2003, Microsoft Office 2007, Microsoft Office 2010, Microsoft Office 2013, and Microsoft Office 2016 allows a remote code execution vulnerability due to the way objects are handled in memory, aka "Microsoft Word Remote Code Execution Vulnerability".
network
low complexity
microsoft
8.8