CVE-2017-10053
- EPSS 1.28%
- Published 08.08.2017 15:29:01
- Last modified 20.04.2025 01:37:25
Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: 2D). Supported versions that are affected are Java SE: 6u151, 7u141 and 8u131; Java SE Embedded: 8u131; JRockit: R28.3.14. Easily exploitable vulnerabi...
CVE-2016-9841
- EPSS 20.28%
- Published 23.05.2017 04:29:01
- Last modified 20.04.2025 01:37:25
inffast.c in zlib 1.2.8 might allow context-dependent attackers to have unspecified impact by leveraging improper pointer arithmetic.
CVE-2016-9843
- EPSS 9.18%
- Published 23.05.2017 04:29:01
- Last modified 20.04.2025 01:37:25
The crc32_big function in crc32.c in zlib 1.2.8 might allow context-dependent attackers to have unspecified impact via vectors involving big-endian CRC calculation.
CVE-2017-5645
- EPSS 94.01%
- Published 17.04.2017 21:59:00
- Last modified 20.04.2025 01:37:25
In Apache Log4j 2.x before 2.8.2, when using the TCP socket server or UDP socket server to receive serialized log events from another application, a specially crafted binary payload can be sent that, when deserialized, can execute arbitrary code.
CVE-2016-8735
- EPSS 93.9%
- Published 06.04.2017 21:59:00
- Last modified 20.04.2025 01:37:25
Remote code execution is possible with Apache Tomcat before 6.0.48, 7.x before 7.0.73, 8.x before 8.0.39, 8.5.x before 8.5.7, and 9.x before 9.0.0.M12 if JmxRemoteLifecycleListener is used and an attacker can reach JMX ports. The issue exists because...
CVE-2016-10165
- EPSS 0.87%
- Published 03.02.2017 19:59:00
- Last modified 20.04.2025 01:37:25
The Type_MLU_Read function in cmstypes.c in Little CMS (aka lcms2) allows remote attackers to obtain sensitive information or cause a denial of service via an image with a crafted ICC profile, which triggers an out-of-bounds heap read.
CVE-2017-5600
- EPSS 0.82%
- Published 02.02.2017 15:59:00
- Last modified 20.04.2025 01:37:25
The Data Warehouse component in NetApp OnCommand Insight before 7.2.3 allows remote attackers to obtain administrative access by leveraging a default privileged account.
- EPSS 93.75%
- Published 21.04.2016 11:00:21
- Last modified 12.04.2025 10:46:40
Unspecified vulnerability in Oracle Java SE 6u113, 7u99, and 8u77; Java SE Embedded 8u77; and JRockit R28.3.9 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to JMX.
CVE-2010-1871
- EPSS 93.82%
- Published 05.08.2010 13:23:09
- Last modified 11.04.2025 00:51:21
JBoss Seam 2 (jboss-seam2), as used in JBoss Enterprise Application Platform 4.3.0 for Red Hat Linux, does not properly sanitize inputs for JBoss Expression Language (EL) expressions, which allows remote attackers to execute arbitrary code via a craf...