Vulnerabilities > High

DATE CVE VULNERABILITY TITLE RISK
2017-02-15 CVE-2017-2975 Out-of-bounds Read vulnerability in Adobe Digital Editions
Adobe Digital Editions versions 4.5.3 and earlier have an exploitable buffer over-read vulnerability.
network
low complexity
adobe CWE-125
7.5
2017-02-15 CVE-2017-2974 Out-of-bounds Read vulnerability in Adobe Digital Editions
Adobe Digital Editions versions 4.5.3 and earlier have an exploitable buffer over-read vulnerability.
network
low complexity
adobe CWE-125
7.5
2017-02-14 CVE-2017-5972 Resource Exhaustion vulnerability in Linux Kernel
The TCP stack in the Linux kernel 3.x does not properly implement a SYN cookie protection mechanism for the case of a fast network connection, which allows remote attackers to cause a denial of service (CPU consumption) by sending many TCP SYN packets, as demonstrated by an attack against the kernel-3.10.0 package in CentOS Linux 7.
network
low complexity
linux CWE-400
7.5
2017-02-14 CVE-2017-5970 NULL Pointer Dereference vulnerability in Linux Kernel
The ipv4_pktinfo_prepare function in net/ipv4/ip_sockglue.c in the Linux kernel through 4.9.9 allows attackers to cause a denial of service (system crash) via (1) an application that makes crafted system calls or possibly (2) IPv4 traffic with invalid IP options.
network
low complexity
linux CWE-476
7.5
2017-02-13 CVE-2017-5149 NULL Pointer Dereference vulnerability in Abbott Merlin@Home Firmware 8.0
An issue was discovered in St.
network
high complexity
abbott CWE-476
8.9
2017-02-13 CVE-2016-8358 Origin Validation Error vulnerability in Smiths-Medical Cadd-Solis Medication Safety Software
An issue was discovered in Smiths-Medical CADD-Solis Medication Safety Software, Version 1.0; 2.0; 3.0; and 3.1.
network
high complexity
smiths-medical CWE-346
8.5
2017-02-13 CVE-2017-5169 Cross-Site Request Forgery (CSRF) vulnerability in Hanwha-Security Smart Security Manager 1.5
An issue was discovered in Hanwha Techwin Smart Security Manager Versions 1.5 and prior.
network
high complexity
hanwha-security CWE-352
7.5
2017-02-13 CVE-2017-5168 Path Traversal vulnerability in Hanwha-Security Smart Security Manager 1.5
An issue was discovered in Hanwha Techwin Smart Security Manager Versions 1.5 and prior.
network
high complexity
hanwha-security CWE-22
7.5
2017-02-13 CVE-2017-5167 Use of Hard-coded Credentials vulnerability in Binom3 Universal Multifunctional Electric Power Quality Meter Firmware
An issue was discovered in BINOM3 Universal Multifunctional Electric Power Quality Meter.
network
low complexity
binom3 CWE-798
8.6
2017-02-13 CVE-2017-5165 Cross-Site Request Forgery (CSRF) vulnerability in Binom3 Universal Multifunctional Electric Power Quality Meter Firmware
An issue was discovered in BINOM3 Universal Multifunctional Electric Power Quality Meter.
network
low complexity
binom3 CWE-352
7.6