Vulnerabilities > High

DATE CVE VULNERABILITY TITLE RISK
2017-07-06 CVE-2016-10396 Algorithmic Complexity vulnerability in Ipsec-Tools 0.8.2
The racoon daemon in IPsec-Tools 0.8.2 contains a remotely exploitable computational-complexity attack when parsing and storing ISAKMP fragments.
network
low complexity
ipsec-tools CWE-407
7.5
2017-07-06 CVE-2017-6712 OS Command Injection vulnerability in Cisco Elastic Services Controller
A vulnerability in certain commands of Cisco Elastic Services Controller could allow an authenticated, remote attacker to elevate privileges to root and run dangerous commands on the server.
network
low complexity
cisco CWE-78
8.8
2017-07-06 CVE-2017-6707 OS Command Injection vulnerability in Cisco Staros
A vulnerability in the CLI command-parsing code of the Cisco StarOS operating system for Cisco ASR 5000 Series 11.0 through 21.0, 5500 Series, and 5700 Series devices and Cisco Virtualized Packet Core (VPC) Software could allow an authenticated, local attacker to break from the StarOS CLI of an affected system and execute arbitrary shell commands as a Linux root user on the system, aka Command Injection.
local
low complexity
cisco CWE-78
8.2
2017-07-05 CVE-2017-9927 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Swftools 201304091007
In SWFTools 2013-04-09-1007 on Windows, png2swf allows remote attackers to cause a denial of service or possibly have unspecified other impact via a crafted file, related to a "Read Access Violation starting at image00000000_00400000+0x000000000001b5fe."
network
low complexity
swftools CWE-119
8.8
2017-07-05 CVE-2017-9926 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Swftools 201304091007
In SWFTools 2013-04-09-1007 on Windows, png2swf allows remote attackers to cause a denial of service or possibly have unspecified other impact via a crafted file, related to a "Read Access Violation starting at image00000000_00400000+0x000000000001b596."
network
low complexity
swftools CWE-119
8.8
2017-07-05 CVE-2017-9925 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Swftools 201304091007
In SWFTools 2013-04-09-1007 on Windows, png2swf allows remote attackers to execute arbitrary code or cause a denial of service via a crafted file, related to a "User Mode Write AV near NULL starting at wow64!Wow64NotifyDebugger+0x000000000000001d."
network
low complexity
swftools CWE-119
8.8
2017-07-05 CVE-2017-9924 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Swftools 201304091007
In SWFTools 2013-04-09-1007 on Windows, png2swf allows remote attackers to execute arbitrary code or cause a denial of service via a crafted file, related to a "User Mode Write AV starting at image00000000_00400000+0x000000000001b72a."
network
low complexity
swftools CWE-119
8.8
2017-07-05 CVE-2017-9923 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Irfanview and Tools
IrfanView version 4.44 (32bit) with TOOLS Plugin 4.50 might allow attackers to cause a denial of service or execute arbitrary code via a crafted file, related to "Data from Faulting Address controls Branch Selection starting at KERNELBASE!EnumResourceTypesInternal+0x0000000000000589."
local
low complexity
irfanview CWE-119
7.8
2017-07-05 CVE-2017-9922 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Irfanview and Tools
IrfanView version 4.44 (32bit) with TOOLS Plugin 4.50 might allow attackers to cause a denial of service or execute arbitrary code via a crafted file, related to "Data from Faulting Address controls Branch Selection starting at ntdll_77df0000!LdrpCompareResourceNames_U+0x0000000000000062."
local
low complexity
irfanview CWE-119
7.8
2017-07-05 CVE-2017-9921 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Irfanview and Tools
IrfanView version 4.44 (32bit) with TOOLS Plugin 4.50 might allow attackers to cause a denial of service or execute arbitrary code via a crafted file, related to "Data from Faulting Address controls Branch Selection starting at ntdll_77df0000!LdrpResGetMappingSize+0x00000000000003cc."
local
low complexity
irfanview CWE-119
7.8