Vulnerabilities > Low

DATE CVE VULNERABILITY TITLE RISK
2017-05-03 CVE-2017-7995 Information Exposure vulnerability in multiple products
Xen PV guest before Xen 4.3 checked access permissions to MMIO ranges only after accessing them, allowing host PCI device space memory reads, leading to information disclosure.
local
low complexity
xen novell suse CWE-200
3.8
2017-05-02 CVE-2017-8418 Exposure of Resource to Wrong Sphere vulnerability in Rubocop Project Rubocop
RuboCop 0.48.1 and earlier does not use /tmp in safe way, allowing local users to exploit this to tamper with cache files belonging to other users.
local
low complexity
rubocop-project CWE-668
3.3
2017-04-28 CVE-2017-2137 Unspecified vulnerability in Netgear Prosafe Plus Configuration Utility 2.3.28
ProSAFE Plus Configuration Utility prior to 2.3.29 allows remote attackers to bypass access restriction and change configurations of the switch via SOAP requests.
network
high complexity
netgear
3.7
2017-04-28 CVE-2017-2109 Information Exposure vulnerability in Cybozu Kunai 3.0.4/3.0.5/3.0.5.1
Cybozu KUNAI for Android 3.0.4 to 3.0.5.1 allow remote attackers to obtain log information through a malicious Android application.
local
high complexity
cybozu CWE-200
2.5
2017-04-26 CVE-2017-6052 Unspecified vulnerability in Hyundaiusa Blue Link 3.9.4/3.9.5
A Man-in-the-Middle issue was discovered in Hyundai Motor America Blue Link 3.9.5 and 3.9.4.
high complexity
hyundaiusa
3.7
2017-04-24 CVE-2017-3626 Unspecified vulnerability in Oracle Glassfish Server 3.1.2
Vulnerability in the Oracle GlassFish Server component of Oracle Fusion Middleware (subcomponent: Java Server Faces).
network
high complexity
oracle
3.1
2017-04-24 CVE-2017-3603 Unspecified vulnerability in Oracle Webcenter Sites
Vulnerability in the Oracle WebCenter Sites component of Oracle Fusion Middleware (subcomponent: Advanced UI).
network
high complexity
oracle
3.1
2017-04-24 CVE-2017-3598 Unspecified vulnerability in Oracle Webcenter Sites
Vulnerability in the Oracle WebCenter Sites component of Oracle Fusion Middleware (subcomponent: Advanced UI).
network
high complexity
oracle
3.1
2017-04-24 CVE-2017-3590 Unspecified vulnerability in Oracle Connector/Python 2.1.5
Vulnerability in the MySQL Connectors component of Oracle MySQL (subcomponent: Connector/Python).
local
low complexity
oracle
3.3
2017-04-24 CVE-2017-3589 Unspecified vulnerability in Oracle Connector/J 5.1.40/5.1.41
Vulnerability in the MySQL Connectors component of Oracle MySQL (subcomponent: Connector/J).
local
low complexity
oracle
3.3