Vulnerabilities > High

DATE CVE VULNERABILITY TITLE RISK
2017-06-06 CVE-2017-5664 Improper Handling of Exceptional Conditions vulnerability in Apache Tomcat
The error page mechanism of the Java Servlet Specification requires that, when an error occurs and an error page is configured for the error that occurred, the original request and response are forwarded to the error page.
network
low complexity
apache CWE-755
7.5
2017-06-06 CVE-2016-10297 Race Condition vulnerability in Google Android
In TrustZone in all Android releases from CAF using the Linux kernel, a Time-of-Check Time-of-Use Race Condition vulnerability could potentially exist.
local
high complexity
google CWE-362
7.0
2017-06-06 CVE-2015-9007 Double Free vulnerability in Google Android
In TrustZone in all Android releases from CAF using the Linux kernel, a Double Free vulnerability could potentially exist.
local
low complexity
google CWE-415
7.8
2017-06-06 CVE-2015-9006 Improper Access Control vulnerability in Google Android
In Resource Power Manager (RPM) in all Android releases from CAF using the Linux kernel, an Improper Access Control vulnerability could potentially exist.
local
low complexity
google CWE-284
7.8
2017-06-06 CVE-2015-9005 Integer Overflow or Wraparound vulnerability in Google Android
In TrustZone in all Android releases from CAF using the Linux kernel, an Integer Overflow to Buffer Overflow vulnerability could potentially exist.
local
low complexity
google CWE-190
7.8
2017-06-06 CVE-2014-9952 Improper Authentication vulnerability in Google Android
In the Secure File System in all Android releases from CAF using the Linux kernel, a capture-replay vulnerability could potentially exist.
local
low complexity
google CWE-287
7.8
2017-06-06 CVE-2014-9950 Improper Authorization vulnerability in Google Android
In Core Kernel in all Android releases from CAF using the Linux kernel, an Improper Authorization vulnerability could potentially exist.
local
low complexity
google CWE-285
7.8
2017-06-06 CVE-2014-9949 NULL Pointer Dereference vulnerability in Google Android
In TrustZone in all Android releases from CAF using the Linux kernel, an Untrusted Pointer Dereference vulnerability could potentially exist.
local
low complexity
google CWE-476
7.8
2017-06-06 CVE-2014-9948 Improper Validation of Array Index vulnerability in Google Android
In TrustZone in all Android releases from CAF using the Linux kernel, an Improper Validation of Array Index vulnerability could potentially exist.
local
low complexity
google CWE-129
7.8
2017-06-06 CVE-2014-9946 Use After Free vulnerability in Google Android
In Core Kernel in all Android releases from CAF using the Linux kernel, a Use After Free vulnerability could potentially exist.
local
low complexity
google CWE-416
7.8