Vulnerabilities > High

DATE CVE VULNERABILITY TITLE RISK
2017-01-12 CVE-2016-8221 Permissions, Privileges, and Access Controls vulnerability in Lenovo Xclarity Administrator
Privilege Escalation in Lenovo XClarity Administrator earlier than 1.2.0, if LXCA is used to manage rack switches or chassis with embedded input/output modules (IOMs), certain log files viewable by authenticated users may contain passwords for internal administrative LXCA accounts with temporary passwords that are used internally by LXCA code.
local
high complexity
lenovo CWE-264
7.0
2017-01-12 CVE-2017-0404 Unspecified vulnerability in Linux Kernel 3.10/3.18
An elevation of privilege vulnerability in the kernel sound subsystem could enable a local malicious application to execute arbitrary code within the context of the kernel.
local
high complexity
linux
7.0
2017-01-12 CVE-2017-0403 Unspecified vulnerability in Linux Kernel 3.10/3.18
An elevation of privilege vulnerability in the kernel performance subsystem could enable a local malicious application to execute arbitrary code within the context of the kernel.
local
high complexity
linux
7.0
2017-01-12 CVE-2017-0394 Unspecified vulnerability in Google Android
A denial of service vulnerability in Telephony could enable a remote attacker to cause a device hang or reboot.
network
low complexity
google
7.5
2017-01-12 CVE-2017-0389 Improper Input Validation vulnerability in Google Android
A denial of service vulnerability in core networking could enable a remote attacker to use specially crafted network packet to cause a device hang or reboot.
network
low complexity
google CWE-20
7.5
2017-01-12 CVE-2017-0387 Unspecified vulnerability in Google Android
An elevation of privilege vulnerability in Mediaserver could enable a local malicious application to execute arbitrary code within the context of a privileged process.
local
low complexity
google
7.8
2017-01-12 CVE-2017-0386 Unspecified vulnerability in Google Android
An elevation of privilege vulnerability in the libnl library could enable a local malicious application to execute arbitrary code within the context of a privileged process.
local
low complexity
google
7.8
2017-01-12 CVE-2017-0385 Unspecified vulnerability in Google Android
An elevation of privilege vulnerability in Audioserver could enable a local malicious application to execute arbitrary code within the context of a privileged process.
local
low complexity
google
7.8
2017-01-12 CVE-2017-0384 Unspecified vulnerability in Google Android
An elevation of privilege vulnerability in lvm/wrapper/Bundle/EffectBundle.cpp in libeffects in Audioserver could enable a local malicious application to execute arbitrary code within the context of a privileged process.
local
low complexity
google
7.8
2017-01-12 CVE-2017-0383 Integer Overflow or Wraparound vulnerability in Google Android 7.0/7.1.0
An elevation of privilege vulnerability in the Framework APIs could enable a local malicious application to execute arbitrary code within the context of a privileged process.
local
low complexity
google CWE-190
7.8