30 Dec 2016 | STAT52 | |
|
26 Dec 2016 | VULN427 | Tiki : Security update Tiki 16.1, Tiki 15.3 and Tiki 12.10 released! | Systems running Tiki versions prior to 16.1, 15.3,
|
26 Dec 2016 | STAT51 | |
|
23 Dec 2016 | VULN426 | Apache Hadoop : CVE-2016-5001 Apache Hadoop Information Disclosure | Systems running Apache Hadoop versions 2.7.x,
|
22 Dec 2016 | VULN425 | Samba : Several vulnerabilities fixed in Samba | Systems running Samba versions 3, 4 prior to
|
22 Dec 2016 | VULN424 | curl : printf floating point buffer overflow | Systems running curl versions 7 prior to 7.52.0.
|
21 Dec 2016 | VULN423 | Squid : Information disclosure in Collapsed Forwarding | Systems running Squid Proxy Cache versions 3, 4,
|
21 Dec 2016 | VULN422 | Citrix : Citrix XenServer Multiple Security Updates | Systems running Citrix XenServer versions 7.0,
|
21 Dec 2016 | VULN421 | Cisco : Cisco CloudCenter Orchestrator Docker Engine Privilege Escalation Vulnerability | Systems running Cisco CloudCenter Orchestrator.
|
21 Dec 2016 | VULN420 | Apache : Apache HTTP Server 2.4.25 fixes several security vulnerabilities | Systems running Apache HTTP Server versions prior
|
21 Dec 2016 | VULN419 | VMware : vSphere Data Protection (VDP) updates address SSH Key-Based authentication issue | Systems running vSphere Data Protection versions
|
20 Dec 2016 | VULN418 | VMware : VMware ESXi updates address a cross-site scripting issue | VMware ESXi versions 6.0, 5.5, 5.0.
|
16 Dec 2016 | VULN417 | Adobe : Security updates available for Adobe Flash Player | Systems running Adobe Flash Player versions prior
|
16 Dec 2016 | VULN416 | Mozilla : Multiple vulnerabilities fixed in Firefox | Systems running Firefox versions prior to 50.1,
|
16 Dec 2016 | STAT50 | |
|
15 Dec 2016 | VULN415 | Xen : x86 CMPXCHG8B emulation fails to ignore operand size override | Systems running Xen versions 3.3 up to and
|
14 Dec 2016 | VULN411 | (Microsoft : Security Update for Common Log File System Driver (3207328)) | Windows versions Vista, Server 2008, 7, 8.1, 10,
|
14 Dec 2016 | VULN414 | (Microsoft : Cumulative Security Update for Microsoft Edge (3204062)) | Windows versions 10, Server 2016
|
14 Dec 2016 | VULN413 | (Microsoft : Security Update for .NET Framework (3205640)) | Windows versions Vista, Server 2008, 7, 8.1, 10,
|
14 Dec 2016 | VULN412 | (Microsoft : Security Update for Windows Kernel (3199709)) | Windows versions 10, Server 2016.
|
14 Dec 2016 | VULN410 | (Microsoft : Critical Cumulative Security Update for Internet Explorer (3204059)) | Systems running Internet Explorer versions 9, 10,
|
14 Dec 2016 | VULN409 | (Microsoft : Security Update for Microsoft Windows (3205655)) | Windows versions Vista, Server 2008, 7, 8.1, 10,
|
14 Dec 2016 | VULN408 | (Microsoft : Important Security Update for Windows Kernel-Mode Drivers (3205651)) | Windows versions Vista, Server 2008, 7, 8.1, 10,
|
14 Dec 2016 | VULN407 | (Microsoft : Security Update for Microsoft Graphics Component (3204066)) | Windows versions Vista, Server 2008, 7, 8.1, 10,
|
14 Dec 2016 | VULN406.1 | (Microsoft : Security Update for Microsoft Office (3204068)) | Systems running Microsoft Office.
|
14 Dec 2016 | VULN406 | (Microsoft : Security Update for Microsoft Office (3204068)) | Systems running Microsoft Office.
|
14 Dec 2016 | VULN405 | (Microsoft : Security Update for Microsoft Uniscribe (3204063)) | Windows versions Vista, Server 2008, 7, 8.1, 10,
|
14 Dec 2016 | VULN404 | (Microsoft : Security Update for Windows Secure Kernel Mode (3205642)) | Windows versions 10, Server 2016 running Secure
|
9 Dec 2016 | STAT49 | |
|
2 Dec 2016 | STAT48 | |
|
2 Dec 2016 | INFO001 | Vague d'infection par le Ransomware Locky |
|
30 Nov 2016 | VULN403 | Xen : ARM guests may induce host asynchronous abort | Systems running Xen versions with ARM support.
|
30 Nov 2016 | VULN402 | Apache Subversion : Unrestricted XML entity expansion in mod_dontdothat and Subversion clients using http(s):// | Systems running Apache Subversion versions 1 prior
|
29 Nov 2016 | VULN401 | Mozilla : Security vulnerabilities fixed in Firefox 50.0.1 | Systems running Firefox versions 49, 50 prior to
|
28 Nov 2016 | VULN400 | phpmyadmin : Multiple Vulnerabilities fixed in phpmyadmin | Systems running phpmyadmin versions 4 prior to
|
28 Nov 2016 | VULN399 | Xen : Privilege Elevation and DoS Vulnerabilities fixed in Xen | Systems running Xen.
|
25 Nov 2016 | STAT47 | |
|
24 Nov 2016 | VULN398 | Foxit : Vulnerabilities fixed in Foxit Reader, Foxit PhantomPDF | Systems running Foxit Reader, Foxit PhantomPDF
|
23 Nov 2016 | VULN396 | VMware : VMSA-2016-0022 VMware product updates address information disclosure vulnerabilities | Systems running VMware vCenter Server versions
|
23 Nov 2016 | VULN395 | VMware : VMSA-2016-0021 VMware product updates address partial information disclosure vulnerability | Systems running VMware Identity Manager versions
|
21 Nov 2016 | VULN394 | Splunk : Splunk Enterprise 6.5.0, 6.4.4, 6.3.8, 6.2.12, 6.1.12, 6.0.13, and 5.0.17 address multiple vulnerabilities | Systems running Splunk Enterprise versions 6,
|
18 Nov 2016 | STAT46 | |
|
18 Nov 2016 | VULN391 | Jenkins : Jenkins Security Advisory 2016-11-16 Remote code execution vulnerability | Systems running Jenkins versions 2.32, LTS 2.19.3.
|
16 Nov 2016 | VULN390 | VMware : vRealize Operations update addresses REST API deserialization vulnerability | Systems running vRealize Operations versions 6.x,
|
15 Nov 2016 | VULN389 | Apache Wicket : Apache Wicket CSRF detection vulnerability | Systems running Apache Wicket versions 6.x, 7.x,
|
15 Nov 2016 | VULN388 | Apache Openmeetings : Apache Openmeetings RMI Registry Java Deserialization RCE | Systems running Apache Openmeetings versions 3.1
|
14 Nov 2016 | STAT45 | |
|
14 Nov 2016 | VULN387 | Google Chrome : Google Chrome Stable Channel Update for Desktop | Systems running Google Chrome versions prior to
|
14 Nov 2016 | VULN386 | PHP : PHP versions 5.6.28, 7.0.13 fixes multiple security vulnerabilities | Systems running PHP versions prior to 5.6.28,
|
14 Nov 2016 | VULN385 | VMware : VMware Workstation and Fusion updates address critical out-of-bounds memory access vulnerability | Systems running VMware Workstation,
|
10 Nov 2016 | VULN384 | VMware : VMware product updates address local privilege escalation vulnerability in Linux kernel | Systems running VMware Identity Manager,
|
9 Nov 2016 | VULN383 | Adobe : Security updates available for Adobe Flash Player | Systems running Adobe Flash Player.
|
9 Nov 2016 | VULN382 | Microsoft : Critical Cumulative Security Update for Internet Explorer | Systems running Internet Explorer versions 9, 10,
|
9 Nov 2016 | VULN381 | Microsoft : Important Security Update for Microsoft Virtual Hard Disk Driver | Windows versions Vista, Server 2008, 7, 8.1,
|
9 Nov 2016 | VULN380 | Microsoft : Important Security Update for SQL Server | Systems running Microsoft SQL Server versions
|
9 Nov 2016 | VULN379 | Microsoft : Important Security Update for Windows Kernel-Mode Drivers | Windows versions Vista, Server 2008, 7, 8.1,
|
9 Nov 2016 | VULN378 | Microsoft : Important Security Update for Common Log File System Driver | Windows versions Vista, Server 2008, 7, 8.1,
|
9 Nov 2016 | VULN377 | Microsoft : Important Security Update for Microsoft Office | Systems running Microsoft Office.
|
9 Nov 2016 | VULN376 | Microsoft : Critical Security Update for Microsoft Graphics Component | Windows version Vista, Server 2008, 7, 8.1,
|
9 Nov 2016 | VULN375 | Microsoft : Critical Security Update for Microsoft Video Control | Windows version Vista, Server 2008, 7, 8.1,
|
9 Nov 2016 | VULN374 | Microsoft : Critical Security Update for Microsoft Windows | Windows versions Vista, Server 2008, 7, 8.1,
|
9 Nov 2016 | VULN373 | Microsoft : Critical Cumulative Security Update for Microsoft Edge | Systems running Microsoft Edge.
|
7 Nov 2016 | VULN372 | MariaDB : MariaDB 10.0.28, 10.1.19, 5.5.53 fixes multiple security vulnerabilities | Systems running MariaDB versions prior to 10.0.28,
|
7 Nov 2016 | VULN371 | cURL : Multiple vulnerabilities fixed in cURL | Systems running curl versions prior to 7.51.0.
|
4 Nov 2016 | STAT44 | |
|
28 Oct 2016 | STAT43 | |
|
28 Oct 2016 | VULN370 | Apache Tomcat : Apache Tomcat multiple vulnerabilities | Systems running Apache Tomcat versions 9, 8.5,
|
28 Oct 2016 | VULN369 | Shibboleth IdP : Shibboleth Identity Provider Security Advisory [27 October 2016] | Systems running Shibboleth IdP versions 3 prior to
|
27 Oct 2016 | VULN368 | Cisco : Cisco IP Interoperability and Collaboration System Universal Media Services Unauthorized Access Vulnerability | Cisco IP Interoperability and Collaboration System
|
27 Oct 2016 | VULN367 | Cisco : Cisco Email Security Appliance Denial of Service Vulnerabilities | Cisco AsyncOS Software for Cisco Email Security
|
27 Oct 2016 | VULN366 | Adobe : Security updates available for Adobe Flash Player | Systems running Adobe Flash Player versions prior
|
26 Oct 2016 | VULN365 | VMware : VMware product updates address multiple information disclosure issues | Mac OS X running VMware Fusion versions 8.x prior
|
25 Oct 2016 | VULN364 | APPLE : APPLE-SA-2016-10-24-5 watchOS 3.1 | watchOS versions prior to 3.1.
|
25 Oct 2016 | VULN363 | APPLE : APPLE-SA-2016-10-24-4 tvOS 10.0.1 | tvOS versions prior to 10.0.1.
|
25 Oct 2016 | VULN362 | APPLE : APPLE-SA-2016-10-24-3 Safari 10.0.1 | Systems running Safari versions prior to 10.0.1.
|
25 Oct 2016 | VULN361 | APPLE : APPLE-SA-2016-10-24-2 macOS Sierra 10.12.1 | macOS X versions prior to 10.12.1.
|
25 Oct 2016 | VULN360 | APPLE : APPLE-SA-2016-10-24-1 iOS 10.1 | iOS versions prior to 10.1.
|
21 Oct 2016 | STAT42 | |
|
20 Oct 2016 | VULN359 | Oracle : October 2016 Critical Patch Update Released | Systems running Oracle Database Server,
|
19 Oct 2016 | VULN358 | Cisco : Cisco ASA Software Identity Firewall Feature Buffer Overflow Vulnerability | Cisco ASA Software.
|
19 Oct 2016 | VULN357 | Cisco : Cisco Firepower Detection Engine HTTP Denial of Service Vulnerability | Cisco Firepower System Software.
|
19 Oct 2016 | VULN356 | VeraCrypt : VeraCrypt 1.19 fix vulnerabilities | Systems running VeraCrypt versions prior to 5.6.27,
|
19 Oct 2016 | VULN354 | Apache Struts : Possible path traversal in the Convention plugin | Systems running Apache Struts versions 2.3.20 up
|
17 Oct 2016 | VULN353 | Apache OpenOffice : Windows Installer vulnerabilities | Systems running Apache OpenOffice versions prior
|
17 Oct 2016 | VULN352 | US-CERT : Heightened DDoS Threat Posed by Mirai and Other Botnets | IoT devices software.
|
14 Oct 2016 | STAT41 | |
|
14 Oct 2016 | VULN351 | Microsoft : Critical Security Update for Adobe Flash Player | Windows versions 8.1, Server 2012, RT 8.1, 10
|
14 Oct 2016 | VULN350 | Microsoft : Moderate Security Update for Microsoft Internet Messaging API | Windows version Vista, Server 2008, 7 running
|
14 Oct 2016 | VULN349 | Microsoft : Important Security Update for,Diagnostics Hub | Windows versions 10 running Diagnostics Hub.
|
14 Oct 2016 | VULN348 | Microsoft : Important Security Update for Windows Registry | Windows versions Vista, Server 2008, 7, 8.1, 10,
|
14 Oct 2016 | VULN347 | Microsoft : Important Security Update for Windows Kernel-Mode Drivers | Windows versions Vista, 7, 8.1, RT 8.1, 10
|
14 Oct 2016 | VULN346 | Microsoft : Critical Security Update for Microsoft Video Control | Windows versions Vista, 7, 8.1, RT 8.1, 10
|
14 Oct 2016 | VULN345 | Microsoft : Important Security Update for Microsoft Office | Systems running Microsoft Office.
|
14 Oct 2016 | VULN344 | Microsoft : Critical Security Update for Microsoft Graphics Component | Windows running Microsoft Graphics Component,
|
14 Oct 2016 | VULN343 | Microsoft : Critical Cumulative Security Update for Microsoft Edge | Systems running Microsoft Edge.
|
14 Oct 2016 | VULN342 | (Microsoft : Critical Cumulative Security Update,for Internet Explorer (3192887)) | Systems running Internet Explorer versions 9, 10,
|
12 Oct 2016 | VULN340 | Adobe : Security Updates Available for Adobe Acrobat and Reader | Systems running Adobe Acrobat, Adobe Reader.
|
12 Oct 2016 | VULN341 | Adobe : Security update available for the Creative Cloud Desktop Application | Systems running Creative Cloud Desktop Application.
|
7 Oct 2016 | STAT40 | |
|
30 Sep 2016 | STAT39 | |
|
30 Sep 2016 | VULN339 | ISC BIND : Assertion Failure in buffer.c While Building Responses to a Specifically Constructed Request | Systems running Bind versions 9 prior to 9.9.9-P3,
|
28 Sep 2016 | VULN338 | Cisco : Cisco IOS Software Common Industrial Protocol Request Denial of Service Vulnerability | Cisco IOS Software.
|
28 Sep 2016 | VULN337 | Cisco : Cisco IOS and IOS XE Software Denial of Service and Memory Leak Vulnerabilities | Cisco IOS, Cisco IOS XE.
|
23 Sep 2016 | VULN336 | Cisco : Cisco Email Security Appliance Internal Testing Interface Vulnerability | Cisco Email Security Appliance software.
|
23 Sep 2016 | VULN335 | Cisco : IKEv1 Information Disclosure Vulnerability in Multiple Cisco Products | Cisco IOS, Cisco IOS XE, Cisco IOS XR.
|
23 Sep 2016 | STAT38 | |
|
22 Sep 2016 | VULN334 | Drupal : Drupal Core - Critical - Multiple Vulnerabilities - SA-CORE-2016-004 | Systems running Drupal Core versions 8.x prior to
|
16 Sep 2016 | STAT37 | |
|
16 Sep 2016 | VULN333 | curl : curl escape and unescape integer overflows | Systems running curl, libcurl versions 7.11.1 up
|
16 Sep 2016 | VULN332 | PHP : PHP versions PHP 5.6.26, 7.0.11 fix multiple security bugs | Systems running PHP versions prior to 5.6.26,
|
15 Sep 2016 | VULN331 | VMware : VMware ESXi, Workstation, Fusion, and Tools updates address multiple security issues | VMware ESXi,
|
15 Sep 2016 | VULN330 | EMC : EMC Documentum D2 Authentication Bypass Vulnerability | Systems running EMC Documentum D2 version 4.5, 4.6.
|
14 Sep 2016 | VULN328 | Microsoft : Important Security Updates for Microsoft Windows | Windows versions Vista, Server 2008, 7, 8.1,
|
14 Sep 2016 | VULN327 | Microsoft : Critical Security Update in OLE Automation for VBScript Scripting Engine | Windows versions Vista, Server 2008, 7, 8.1,
|
14 Sep 2016 | VULN326 | Microsoft : Important Security Update for Silverlight | Systems running Microsoft Silverlight versions 5.
|
14 Sep 2016 | VULN325 | Microsoft : Critical Security Update for Microsoft Office | Systems running Microsoft Office versions 2007,
|
14 Sep 2016 | VULN324 | Microsoft : Critical Cumulative Security Update for Microsoft Edge | Systems running Microsoft Exchange Server versions
|
14 Sep 2016 | VULN323 | Microsoft : Critical Security Update for Microsoft Graphics Component | Windows versions Vista, Server 2008, 7, 8.1,
|
14 Sep 2016 | VULN322 | Microsoft : Critical Cumulative SecurityUpdate for Microsoft Edge | Systems running Microsoft Edge.
|
14 Sep 2016 | VULN321 | Microsoft : Critical Cumulative SecurityUpdate for Internet Explorer | Systems running Internet Explorer.
|
14 Sep 2016 | VULN320 | Adobe : Security update available forAdobe Digital Editions | Windows, Mac OS X, iOS, Android running
|
14 Sep 2016 | VULN319 | Adobe : Security update available forAdobe AIR SDK & Compiler | Windows, Mac OS X running Adobe AIR SDK & Compiler
|
14 Sep 2016 | VULN318 | Adobe : Security updates available forAdobe Flash Player | Windows, Mac OS X, Linux, ChromeOS running
|
14 Sep 2016 | VULN316 | APPLE : APPLE-SA-2016-09-13-1 iOS 10 | iOS versions prior to 10.
|
13 Sep 2016 | VULN315 | Percona Server : Percona Server CriticalUpdate CVE-2016-6662 | Systems running Percona Server versions prior to
|
13 Sep 2016 | VULN314 | MariaDB : MariaDB Server versions andthe Remote Root Code Execution Vulnerability CVE-2016-6662 | Systems running MariaDB Server versions prior to
|
12 Sep 2016 | VULN313 | Xen : Multiple Vulnerabilities fixrd inXen | Systems running Xen.
|
9 Sep 2016 | STAT36 | |
|
9 Sep 2016 | VULN312 | Cisco : Cisco ACE30 Application ControlEngine Module and Cisco ACE 4710 Application Control Engine Denial of ServiceVulnerability | Cisco ACE30 software, Cisco ACE 4710 software.
|
8 Sep 2016 | VULN311 | WordPress : WordPress 4.6.1 Security andMaintenance Release | WordPress versions prior to 4.6.1.
|
8 Sep 2016 | VULN310 | Fortinet : FortiWAN MultipleVulnerabilities | FortiWAN versions prior to 4.2.4.
|
2 Sep 2016 | STAT35 | |
|
2 Sep 2016 | VULN309 | APPLE : APPLE-SA-2016-09-01-1 Safari9.1.3 | Systems running Safari versions prior to 9.1.3.
|
2 Sep 2016 | VULN308 | APPLE : APPLE-SA-2016-09-01-2 SecurityUpdate 2016-001 El Capitan and Security Update 2016-005 Yosemite | OS X Yosemite v10.10.5, OS X El Capitan v10.11.6.
|
1 Sep 2016 | VULN307 | Adobe : Hotfixes available forColdFusion | Systems running ColdFusion versions 10, 11.
|
29 Aug 2016 | VULN303 | QNAP NAS : Security Alert for ReportedVulnerabilities in QTS | QTS firmware versions prior to 4.2.0, 4.2.1, 4.2.2.
|
29 Aug 2016 | VULN302 | Ruby on Rails : XSS and Unsafe QueryGeneration fixed in Rails 5.0.0.1, 4.2.7.1, and 3.2.22.3 | Systems running Rails versions prior to 5.0.0.1,
|
26 Aug 2016 | VULN301 | APPLE : APPLE-SA-2016-08-25-1 iOS 9.3.5 | iOS versions prior to 9.3.5.
|
26 Aug 2016 | STAT34 | |
|
24 Aug 2016 | VULN300 | VMware : VMware Identity Manager andvRealize Automation updates address multiple security issues | Systems running VMware Identity Manager,
|
19 Aug 2016 | STAT33 | |
|
18 Aug 2016 | VULN299 | Fortiguard : Cookie Parser BufferOverflow Vulnerability | FortiOS versions 4.x prior to 4.1.11, 4.2.13,
|
18 Aug 2016 | VULN298 | Cisco : Cisco Application PolicyInfrastructure Controller Enterprise Module Remote Code ExecutionVulnerability | Cisco Application Policy Infrastructure Controller
|
18 Aug 2016 | VULN297 | Cisco : Cisco ASA SNMP Remote CodeExecution Vulnerability | Cisco ASA Software.
|
18 Aug 2016 | VULN296 | Cisco : Cisco Firepower ManagementCenter Vulnerabilities | Systems running Cisco Firepower Management Center,
|
16 Aug 2016 | VULN295 | VMware : VMware Photon OS OVA defaultpublic ssh key | Systems running VMware Photon OS.
|
12 Aug 2016 | VULN294 | Drupal : Vulnerabilities fixed in GoogleAnalytics, Piwik, OAuth2 Client, Require Login | Systems running Google Analytics for Drupal,
|
12 Aug 2016 | VULN293 | Joomla! : [20160802] - Core - XSSVulnerability | Systems running Joomla! Core versions 1.6.0 up to
|
12 Aug 2016 | VULN292 | Vmware : vRealize Log Insight updateaddresses directory traversal vulnerability | Systems running vRealize Log Insight versions 3.x,
|
12 Aug 2016 | STAT32 | |
|
11 Aug 2016 | VULN291 | Cisco : Cisco IOS XR Software for CiscoASR 9001 Aggregation Services Routers Fragmented Packet Denial of ServiceVulnerability | Cisco ASR 9001 Aggregation Services Routers.
|
10 Aug 2016 | VULN290 | (Microsoft : Important Security Updatefor ActiveSyncProvider (3182332)) | Windows versions 10 running ActiveSyncProvider.
|
10 Aug 2016 | VULN289 | (Microsoft : Critical Security Update forMicrosoft Windows PDF Library (3182248)) | Windows versions Vista, Server 2008, 7, 8.1,
|
10 Aug 2016 | VULN288 | (Microsoft : Important Security Updatefor Windows Authentication Methods (3178465)) | Windows versions Vista, Server 2008, 7, 8.1,
|
10 Aug 2016 | VULN287 | (Microsoft : Important Security Updatefor Secure Boot (3179577)) | Windows versions 8.1, Server 2012, RT 8.1, 10
|
10 Aug 2016 | VULN286 | (Microsoft : Important Security Updatefor Microsoft Office (3177451)) | Systems running Microsoft Office versions 2007,
|
10 Aug 2016 | VULN285 | (Microsoft : Important: Security Updatefor Windows Kernel-Mode Drivers (3178466)) | Windows versions Vista, Server 2008, 7, 8.1,
|
10 Aug 2016 | VULN284 | (Microsoft : Critical - Security Updatefor Microsoft Graphics Component (3177393)) | Systems running Windows, Microsoft Office, Skype
|
10 Aug 2016 | VULN283 | (Microsoft : Critical Cumulative SecurityUpdate for Microsoft Edge (3177358)) | Systems running Microsoft Edge.
|
10 Aug 2016 | VULN282 | (Microsoft : Critical Cumulative SecurityUpdate for Internet Explorer (3177356)) | Systems running Internet Explorer.
|
5 Aug 2016 | STAT31 | |
|
29 Jul 2016 | STAT30 | |
|
22 Jul 2016 | STAT29 | |
|
19 Jul 2016 | VULN281 | Apple OS X El Capitan: Multiplevulnerabilities | Systems running Safari web browser
|
19 Jul 2016 | VULN280 | Apple iOS: Multiple vulnerabilities | Systems running iOS
|
19 Jul 2016 | VULN279 | Apple :Apple watchOS: Multiplevulnerabilities | Systems running Appple watchOS
|
19 Jul 2016 | VULN278 | Apple :Apple tvOS: Multiplevulnerabilities | Systems running Apple tvOS
|
19 Jul 2016 | VULN277 | Apple : Safari multiples vulnerabilites | Systems running Safari web browser
|
15 Jul 2016 | STAT28 | |
|
15 Jul 2016 | VULN276 | Drupal : Highly Critical - Remote codeexecution Vulnerabilities in modules | Systems running Drupal versions 7.x with RESTWS,
|
15 Jul 2016 | VULN275 | Cisco : Cisco IOS XR for NCS 6000 PacketTimer Leak Denial of Service Vulnerability | Cisco IOS XR for Cisco Network Convergence System
|
8 Jul 2016 | STAT27 | |
|
8 Jul 2016 | VULN274 | Apache Qpid : deserialization ofuntrusted input while using JMS ObjectMessage | Systems running Qpid AMQP 0-x JMS client versions
|
8 Jul 2016 | VULN273 | Samba : Client side SMB2/3 requiredsigning can be downgraded | Systems running Samba versions 4.0.0 up to
|
6 Jul 2016 | VULN272 | Apache : X509 Client certificate basedauthentication can be bypassed when HTTP/2 is used | Systems running Apache HTTPD versions 2.4.18 up to
|
1 Jul 2016 | STAT26 | |
|
30 Jun 2016 | VULN271 | Cisco : Cisco Prime Infrastructure andEvolved Programmable Network Manager Authentication Bypass API Vulnerability | Cisco Prime Infrastructure software,
|
30 Jun 2016 | VULN270 | Cisco : Cisco Prime CollaborationProvisioning Lightweight Directory Access Protocol Authentication BypassVulnerability | Cisco Prime Collaboration Provisioning software.
|
30 Jun 2016 | VULN269 | Cisco : Cisco Firepower System SoftwareStatic Credential Vulnerability | Cisco Firepower System Software.
|
24 Jun 2016 | STAT25 | |
|
24 Jun 2016 | VULN268 | Phpmyadmin : Multiple Securityvulnerabilities fixed in phpmyadmin | Systems running phpmyadmin versions 4.6.x, 4.4.x,
|
23 Jun 2016 | VULN267 | WordPress : WordPress 4.5.3 Maintenanceand Security Release | Systems running WordPress versions prior to 4.5.3.
|
23 Jun 2016 | VULN266 | EMC Documentum : EMC Documentum WebTopand WebTop Clients Improper Authorization Vulnerability | Systems running EMC Documentum WebTop,
|
23 Jun 2016 | VULN265 | Cisco : Cisco Email Security Appliance.zip File Scanning Security Bypass Vulnerability | Cisco Email Security Appliance software version
|
23 Jun 2016 | VULN264 | Libarchive : Libarchive 3.2.1 SecurityRelease | Systems running Libarchive version prior to 3.2.1.
|
23 Jun 2016 | VULN263 | Apache Tomcat : CVE-2016-3092 ApacheTomcat Denial of Service | Systems running Apache Tomcat version prior to
|
21 Jun 2016 | VULN262 | APPLE : AirPort Base Station FirmwareUpdate 7.6.7 and,7.7.7 | AirPort Base Station Firmware version prior to
|
20 Jun 2016 | VULN261 | QNAP : Security vulnerabilitiesaddressed in QTS 4.2.1 Build 20160601 | QTS version prior to 4.2.1 Build
|
20 Jun 2016 | VULN260 | Apache Struts : Multiple vulnerabilitiesfixed in Apache Struts | Systems running Apache Struts versions 2 prior to
|
17 Jun 2016 | STAT24 | |
|
17 Jun 2016 | VULN259 | Google Chrome : Google Chrome stablechannel updated to 51.0.2704.103 | Systems running Google Chrome version prior to
|
17 Jun 2016 | VULN258 | IBM : Vulnerabilities in IBM NotesKeyView PDF Filters | Systems running IBM Notes version 8.5, 8.5.1.5,
|
16 Jun 2016 | VULN257 | RSA : RSA Archer GRC Platform SensitiveInformation Disclosure,Vulnerability | Systems running RSA Archer version 5.5.x
|
16 Jun 2016 | VULN256 | DRUPAL : Drupal Core - ModeratelyCritical - Multiple Vulnerabilities - SA-CORE-2016-002 | Systems running DRUPAL core version 7.x, 8.x prior
|
16 Jun 2016 | VULN255 | Cisco : Cisco RV110W, RV130W, and RV215WRouters Arbitrary Code Execution Vulnerability | Cisco Wireless VPN Firewall/Routers software.
|
15 Jun 2016 | VULN254 | Adobe : Security update available forthe Creative Cloud Desktop Application | Systems running Adobe Creative Cloud Desktop
|
15 Jun 2016 | VULN253 | Microsoft : Security Update forMicrosoft Exchange Server | Systems running Microsoft Exchange Server versions
|
15 Jun 2016 | VULN252 | Microsoft : Security Updates forMicrosoft Windows | Windows version Vista, Server 2008, 7, 8.1,
|
15 Jun 2016 | VULN251 | (Microsoft : Security Update forMicrosoft Office (3163610)) | Systems running Microsoft Office versions 2007,
|
15 Jun 2016 | VULN250 | Microsoft : Cumulative Security Updatefor JScript and VBScript | Systems running VBScript versions 5.7, 5.8,
|
15 Jun 2016 | VULN249 | Microsoft : Cumulative Security Updatefor Microsoft Edge | Systems running Microsoft Edge.
|
15 Jun 2016 | VULN248 | Microsoft : Cumulative Security Updatefor Internet Explorer | Systems running Internet Explorer versions 9, 10,
|
15 Jun 2016 | VULN247 | Microsoft : Security Update forMicrosoft Windows DNS Server | Windows version Server 2012.
|
15 Jun 2016 | VULN246 | Adobe : Hotfixes available forColdFusion | Systems running ColdFusion versions 10, 11, 2016
|
15 Jun 2016 | VULN245 | Adobe : Critical vulnerability in AdobeFlash Player | Systems running Adobe Flash Player versions
|
15 Jun 2016 | VULN244 | VMware : VMware vCenter Server updatesaddress an important reflective cross-site scripting issue | Systems running vCenter Server versions prior to
|
10 Jun 2016 | STAT23 | |
|
3 Jun 2016 | STAT22 | |
|
3 Jun 2016 | VULN236 | Apache Struts : Two securityvulnerabilities reported | Systems running Apache Struts versions prior to
|
3 Jun 2016 | VULN235 | Xen : Unsanitised inputs in libxl devicehandling code | Systems running Xen.
|
2 Jun 2016 | VULN234 | Cisco : Cisco Prime Network AnalysisModule multiple vulnerabilities | Cisco Prime Network Analysis Module (NAM) releases,
|
1 Jun 2016 | VULN233 | (Nginx : nginx security advisory(CVE-2016-4450)) | Systems running nginx versions prior to 1.11.1,
|
1 Jun 2016 | VULN232 | GraphicsMagick : GraphicsMagick 1.3.24fixes two possible shell exploits | Systems running GraphicsMagick versions prior to
|
1 Jun 2016 | VULN231 | cURL : Windows DLL hijacking | Systems running libcurl versions 7.11.1 up to and
|
24 May 2016 | VULN222 | Xen : Unrestricted qemu logging | Systems running Xen.
|
27 May 2016 | STAT21 | |
|
26 May 2016 | VULN230 | phpMyAdmin : Multiple Vulnerabilitiesfixed in phpMyAdmin | Systems running phpMyAdmin versions prior to 4.6.2,
|
26 May 2016 | VULN229 | Cisco : Cisco Products IPv6 NeighborDiscovery Crafted Packet Denial of Service Vulnerability | Cisco IOS XR Software, Cisco IOS XE Software.
|
25 May 2016 | VULN228 | Cisco : Cisco UCS Invicta SoftwareDefault GPG Key Vulnerability | Systems running Cisco UCS Invicta Software
|
25 May 2016 | VULN227 | ZDI : Trend Micro InterScan Web Securitymultiple vulnerabilities | Systems running Trend Micro InterScan Web Security.
|
25 May 2016 | VULN226 | IBM : Apache Tomcat as used in IBMQRadar SIEM is susceptible to multiple vulnerabilities | Systems running IBM Security QRadar SIEM versions
|
25 May 2016 | VULN225 | Apache : CVE-2016-3088 - ActiveMQFileserver web application vulnerabilities | Systems running Apache ActiveMQ versions 5.0.0 up
|
25 May 2016 | VULN224 | TYPO3 : Missing Access Check in TYPO3CMS | Systems running TYPO3 CMS versions 4.3.0 up to and
|
25 May 2016 | VULN223 | VMware : VMware vCenter Server updatesaddress an important cross-site scripting issue | Systems running VMware vCenter Server versions 6,
|
20 May 2016 | VULN221 | (IBM : InstallAnywhere generatesinstallation executables,which are vulnerable to an DLL-plantingvulnerability (CVE-2016-4560)) | Systems running IBM Security AppScan Source
|
20 May 2016 | STAT20 | |
|
20 May 2016 | VULN220 | (IBM Domino : Vulnerability identified inIBM Domino Java Console,(CVE-2016-0304)) | Systems running IBM Domino versions 9.0.x, 8.5.x.
|
19 May 2016 | VULN219 | Cisco : Cisco Web Security Appliancemultiple Vulnerabilities | Cisco AsyncOS.
|
18 May 2016 | VULN218 | cURL : TLS certificate check bypass withmbedTLS/PolarSSL | Systems running libcurl versions 7.21.0 up to and
|
18 May 2016 | VULN217 | Bugzilla : 4.4.11 and 5.0.2 SecurityAdvisory | Systems running Bugzilla versions prior to 4.4.12,
|
18 May 2016 | VULN216 | Xen : Arbitrary memory mappings, DoS andarbitrary code execution fixed | Systems running Xen.
|
18 May 2016 | VULN215 | Moodle : Multiple vulnerabilities fixedin Moodle | Systems running Moodle versions prior to 3.0.4,
|
17 May 2016 | VULN214 | APPLE : APPLE-SA-2016-05-16-3 watchOS2.2.1 | watchOS versions prior to 2.2.1.
|
17 May 2016 | VULN213 | APPLE : APPLE-SA-2016-05-16-1 tvOS9.2.1 | tvOS versions prior to 9.2.1.
|
17 May 2016 | VULN212 | APPLE : APPLE-SA-2016-05-16-6 iTunes12.4 | Systems running iTunes versions prior to 12.4.
|
17 May 2016 | VULN211 | APPLE : APPLE-SA-2016-05-03-1 Xcode7.3.1 | Systems running Xcode versions prior to 7.3.1.
|
17 May 2016 | VULN210 | APPLE : APPLE-SA-2016-05-16-2 iOS 9.3.2 | iOS versions prior to 9.3.2.
|
17 May 2016 | VULN209 | APPLE : APPLE-SA-2016-05-16-5 Safari9.1.1 | Systems running Safari versions prior to 9.1.1.
|
17 May 2016 | VULN208 | APPLE : APPLE-SA-2016-05-16-4 OS X ElCapitan 10.11.5 and Security Update 2016-003 | Mac OS X versions prior to 10.11.5.
|
17 May 2016 | VULN207 | VMware : VMware product updates addresscritical and important security issues | Systems running vCenter Server versions prior to
|
13 May 2016 | STAT19 | |
|
11 May 2016 | VULN205 | US-CERT : Exploitation of SAP BusinessApplications | Systems running SAP Business Applications.
|
11 May 2016 | VULN204 | Adobe : Security Updates Available forAdobe Acrobat and Reader | Systems running Adobe Acrobat, Adobe Reader
|
11 May 2016 | VULN203 | Adobe : Security Advisory for AdobeFlash Player | Systems running Adobe Flash Player versions up to
|
11 May 2016 | VULN202 | Microsoft : Important Security Updatefor Volume Manager Driver | Windows version Server 2008, 8.1, RT 8.1,
|
11 May 2016 | VULN201 | Microsoft : Important Security Updatefor Virtual Secure Mode | Windows version 10 running Virtual Secure Mode.
|
11 May 2016 | VULN200 | Microsoft : Important Security Updatefor .NET Framework | Windows version Vista, Server 2008, 7, 8.1, RT 8.1,
|
11 May 2016 | VULN199 | Microsoft : Important Security Updatefor Microsoft RPC | Windows version Vista, Server 2008, 7, 8.1, RT,
|
11 May 2016 | VULN198 | Microsoft : Important Security Updatefor Windows Kernel-Mode Drivers | Windows version Vista, Server 2008, 7, 8.1, RT,
|
11 May 2016 | VULN197 | Microsoft : Important Security Updatefor Windows IIS | Windows version Vista, Server 2008 running
|
11 May 2016 | VULN196 | Microsoft : Critical Security Update forWindows Shell | Windows version Server 2012, 8.1, RT 8.1, 10
|
11 May 2016 | VULN195 | Microsoft : Critical Security Update forWindows Journal | Windows version Vista, 7, 8.1, RT 8.1, 10
|
11 May 2016 | VULN194 | Microsoft : Critical Security Update forMicrosoft Graphics Component | Windows version Vista, 7, 8.1, RT 8.1, 10, Server
|
11 May 2016 | VULN193 | Microsoft : Critical Security Update forMicrosoft Office | Systems running Microsoft Office versions 2007,
|
11 May 2016 | VULN192 | Microsoft : Critical Cumulative SecurityUpdate for Microsoft Edge | Systems running Microsoft Edge.
|
11 May 2016 | VULN191 | Microsoft : Critical Cumulative SecurityUpdate for Internet Explorer | Systems running Internet Explorer versions 9, 10,
|
11 May 2016 | VULN190 | Microsoft : Critical Security Update forJScript and VBScript | Windows version Vista, Server 2008.
|
9 May 2016 | VULN189 | RSA : Patch 14 for RSA AuthenticationManager 8.1 SP1 to Address Multiple Vulnerabilities | Systems running RSA Authentication Manager
|
9 May 2016 | VULN188 | WordPress : WordPress 4.5.2 SecurityRelease and ImageMagick Vulnerability Information | Systems running WordPress versions prior to 4.5.2.
|
9 May 2016 | VULN187 | Shibboleth : Shibboleth SP software feature implemented incorrectly | Systems running Shibboleth Service Provider.
|
6 May 2016 | STAT18 | |
|
4 May 2016 | VULN186 | ImageMagick : ImageMagick SecurityIssue | Systems running ImageMagick version prior to
|
4 May 2016 | VULN185 | OpenSSL : Multiple vulnerabilities fixedin OpenSSL | Systems running OpenSSL version 1.0.2.x , 1.0.1.x
|
3 May 2016 | VULN184 | Apache Subversion : Authentication andDoS vulnerabilities fixed | Systems running Apache Subversion version prior to
|
2 May 2016 | VULN183 | NTP : April 2016 NTP-4.2.8p7 SecurityVulnerability Announcement | Systems running NTP version prior to 4.2.8p7.
|
29 Apr 2016 | STAT17 | |
|
26 Apr 2016 | VULN182 | Apache Struts : Possible Remote CodeExecution vulnerabilities fixed | Systems running Apache Struts version 2 prior to
|
22 Apr 2016 | STAT16 | |
|
22 Apr 2016 | VULN181 | Roundcube : Updates 1.1.5 and 1.0.9published | Systems running Roundcube version prior to 1.1.5,
|
22 Apr 2016 | VULN180 | Squid : Buffer overflow and denial ofservice issue fixed | Systems running Squid versions 2.x, 3.x, 4.x prior
|
21 Apr 2016 | VULN179 | Cisco : Multiple Cisco Products libSRTPDenial of Service Vulnerability | Cisco products running SRTP version prior to 1.5.3.
|
21 Apr 2016 | VULN178 | Cisco : Cisco Adaptive SecurityAppliance Software DHCPv6 Relay Denial of Service Vulnerability | Cisco Adaptive Security Appliance Software.
|
21 Apr 2016 | VULN177 | Cisco : Cisco Wireless LAN ControllerManagement Interface Denial of Service Vulnerability | Cisco AireOS Software.
|
20 Apr 2016 | VULN176 | Oracle : April 2016 Critical PatchUpdate Released | Systems running Oracle Database Server,
|
15 Apr 2016 | STAT15 | |
|
15 Apr 2016 | VULN175 | Asterisk : Crash/Denial of Servicevulnerabilities fixed | Systems running Asterisk Open Source versions 13.x
|
15 Apr 2016 | VULN174 | Xen : hugetlbfs use may crash PV Linuxguests | Systems running Xen.
|
15 Apr 2016 | VULN173 | VMware : VMware product updates addressa critical security issue in the VMware Client Integration Plugin | Systems running vCenter Server versions 6.0,
|
13 Apr 2016 | VULN172 | Cisco : Cisco Unified Computing SystemCentral Software Arbitrary Command Execution Vulnerability | Cisco Unified Computing System Central Software.
|
13 Apr 2016 | VULN171 | Microsoft : Update to Improve WirelessMouse Input Filtering | Windows version 8.1, 7, 10.
|
13 Apr 2016 | VULN170 | (Microsoft : Security Update for AdobeFlash Player (3154132)) | Windows 8.1, Server 2012, RT 8.1, 10
|
13 Apr 2016 | VULN169 | (Microsoft : Security Update for HTTP.sys(3148795)) | Windows versions 10 running HTTP.sys.
|
13 Apr 2016 | VULN168.1 | (Microsoft : Security Update for CSRSS(3148528)) | Windows versions 8.1, Server 2012, RT 8.1, 10.
|
13 Apr 2016 | VULN168 | (Microsoft : Security Update for CSRSS(3148528)) | Windows versions 8.1, Server 2012, 10
|
13 Apr 2016 | VULN167 | (Microsoft : Security Update for SAM andLSAD Remote Protocols (3148527)) | Windows versions Vista, Server 2008, 7, 8.1,
|
13 Apr 2016 | VULN166 | (Microsoft : Security Update forSecondary Logon (3148538)) | Windows version 10.
|
13 Apr 2016 | VULN165 | (Microsoft : Security Update for WindowsHyper-V (3143118)) | Windows versions 8.1, Server 2012, 10
|
13 Apr 2016 | VULN164 | (Microsoft : Security Update for WindowsOLE (3146706)) | Windows versions Vista, Server 2008, 7, 8.1,
|
13 Apr 2016 | VULN163 | (Microsoft : Security Update forMicrosoft Office -Critical (3148775)) | Systems running Microsoft Office versions 2007,
|
13 Apr 2016 | VULN162 | (Microsoft : Security Update for .NETFramework(3148789)) | Systems running .NET Framework.
|
13 Apr 2016 | VULN161 | (Microsoft : Security Update forMicrosoft XML Core Services (3148541)) | Windows versions Vista, Server 2008, 7, 8.1, 10,
|
13 Apr 2016 | VULN160 | (Microsoft : Critical Security Update forMicrosoft Graphics Component (3148522)) | Windows versions Vista, Server 2008, 7, 8.1, 10, RT,
|
13 Apr 2016 | VULN159 | (Microsoft : Cumulative Security Updatefor Microsoft Edge (3148532)) | Cisco IOS XR Software versions 4.2.3, 4.3.0,
|
13 Apr 2016 | VULN158 | (Microsoft : Cumulative Security Updatefor Internet Explorer (3148531)) | Systems running Internet Explorer versions 9, 10,
|
13 Apr 2016 | VULN157 | Cisco : Cisco IOS XR for Cisco ASR 9000Series Aggregation Services Routers Interface Flap Vulnerability | Cisco IOS XR Software versions 4.2.3, 4.3.0,
|
13 Apr 2016 | VULN156 | Adobe : Security hotfix available forRoboHelp Server | Systems running RoboHelp Server versions 9.0.1.
|
13 Apr 2016 | VULN155 | Adobe : Security update available forthe Creative Cloud Desktop Application | Systems running Creative Cloud Desktop Application
|
13 Apr 2016 | VULN154 | TYPO3 : Multiple vulnerabilities fixedin TYPO3 | Systems running Samba versions prior to 4.4.2,
|
13 Apr 2016 | VULN153 | Samba : Samba 4.4.2, 4.3.8 and 4.2.11Security Releases Available for Download | Systems running Samba version prior to 4.4.2,
|
11 Apr 2016 | VULN152 | PostgreSQL : 2016-03-31 Security UpdateRelease | Systems running PostgreSQL version prior to 9.5.2,
|
11 Apr 2016 | VULN151 | Citrix : Persistent Cross-Site ScriptingVulnerability in Citrix XenMobile Server 10.x Web User Interface | Systems running Citrix XenMobile Server versions
|
8 Apr 2016 | STAT14 | |
|
7 Apr 2016 | VULN150 | US-CERT : Autodesk Backburner Managercontains a stack-based buffer overflow vulnerability | Systems running Autodesk Backburner version 2016.
|
7 Apr 2016 | VULN149 | Cisco : Cisco Prime Infrastructure andEvolved Programmable Network Manager Vulnerabilities | Systems running Cisco Prime Infrastructure,
|
7 Apr 2016 | VULN148 | Cisco : Cisco TelePresence Server Denialof Service Vulnerabilities | Cisco TelePresence Server sofware versions 3, 4.
|
7 Apr 2016 | VULN147 | Cisco : Cisco UCS Invicta Default SSHKey Vulnerability | Cisco UCS Invicta Software.
|
4 Apr 2016 | VULN146 | PHP : PHP 7.0.5, 5.6.20, 5.5.34 fixessecurity issues | Systems running PHP version prior to 7.0.5, 5.6.20,
|
4 Apr 2016 | VULN145 | Squid : Buffer overrun in pinger ICMPv6and DoS issue in HTTP Response processing | Systems running Squid version 3, 4 prior to 4.0.8,
|
1 Apr 2016 | STAT13 | |
|
31 Mar 2016 | VULN144 | Cisco : Cisco Firepower Malware BlockBypass Vulnerability | Systems running Cisco Firepower System Software .
|
31 Mar 2016 | VULN143 | Open vSwitch : CVE-2016-2074 MPLS bufferoverflow vulnerabilities in Open vSwitch | Systems running Open vSwitch version 2.4.x, 2.3.x,
|
31 Mar 2016 | VULN142 | Apache Openmeetings : Multiplevulnerabilities fixed in Openmeetings 3.1.1 | Systems running Apache Openmeetings versions
|
31 Mar 2016 | VULN141 | Red Hat : Important Red Hat JBoss BPMSuite 6.2.2 update | Systems running Red Hat JBoss BPM Suite versions
|
30 Mar 2016 | VULN140 | Xen : broken AMD FPU FIP/FDP/FOP leak workaround | Systems running Xen versions 4.
|
29 Mar 2016 | VULN139 | Npm : Package install scriptsvulnerability | Systems running npm.
|
24 Mar 2016 | VULN138 | Cisco : Cisco IOS Software Wide AreaApplication Services Express Denial of Service Vulnerability | Cisco IOS Software.
|
25 Mar 2016 | STAT12 | |
|
24 Mar 2016 | VULN137 | Cisco : Cisco IOS and NX-OS SoftwareLocator/ID Separation Protocol Packet Denial of Service Vulnerability | Cisco IOS, Cisco NX-OS Software.
|
24 Mar 2016 | VULN136 | Cisco : Cisco IOS and IOS XE SoftwareDenial of Service Vulnerabilities | Cisco IOS XE, Cisco IOS.
|
24 Mar 2016 | VULN135 | Cisco : Cisco IOS and IOS XE and CiscoUnified Communications Manager Software Session Initiation Protocol MemoryLeak Vulnerability | Cisco IOS, Cisco IOS XE, Cisco Unified
|
24 Mar 2016 | VULN134 | Oracle : Oracle Security Alert forCVE-2016-0636 | Systems running Oracle Java SE.
|
22 Mar 2016 | VULN133 | US-CERT : Solarwinds Dameware RemoteMini Controller Windows service vulnerable to stack buffer overflow | Windows running Dameware Remote Mini Controller.
|
22 Mar 2016 | VULN132 | Moodle : Multiple vulnerabilities fixedin Moodle | Systems running Moodle version prior to 3.0.3,
|
22 Mar 2016 | VULN128 | APPLE : APPLE-SA-2016-03-21-7 OS XServer 5.1 | Mac OS X Server version prior to 5.1.
|
22 Mar 2016 | VULN126 | APPLE : APPLE-SA-2016-03-21-5 OS X ElCapitan 10.11.4 and Security Update,2016-002 | Mac OS X versions prior to El Capitan 10.11.4.
|
22 Mar 2016 | VULN131 | APPLE : APPLE-SA-2016-03-21-2 watchOS2.2 | watchOS version prior to 2.2.
|
22 Mar 2016 | VULN130 | APPLE : APPLE-SA-2016-03-21-3 tvOS 9.2 | tvOS versions prior to 9.2.
|
22 Mar 2016 | VULN129 | APPLE : APPLE-SA-2016-03-21-4 Xcode 7.3 | Mac OS X running Xcode version prior to 7.3.
|
22 Mar 2016 | VULN125 | APPLE : APPLE-SA-2016-03-21-1 iOS 9.3 | iOS versions prior to 9.3.
|
22 Mar 2016 | VULN127 | APPLE : APPLE-SA-2016-03-21-6 Safari9.1 | Systems running Safari version prior to 9.1.
|
21 Mar 2016 | VULN124 | GitLab : What Git vulnerabilitiesCVE-2016-2324 and 2315 mean for GitLab and you | Systems running GitLab version prior to 8.2.4,
|
21 Mar 2016 | VULN123 | Git : Git v2.7.4 fix a heap corruption -buffer overflow vulnerability | Systems running Git versions prior to 2.7.4.
|
18 Mar 2016 | STAT11 | |
|
18 Mar 2016 | VULN122 | US-CERT : Quagga bgpd with BGP peersenabled for VPNv4 contains a buffer overflow vulnerability | Systems running Quagga version prior to
|
18 Mar 2016 | VULN121 | HP : ArcSight ESM and ESM Express,Remote Arbitrary File Download, Local Arbitrary Command Execution | Systems running ArcSight ESM versions 5.x, 6.5.x
|
18 Mar 2016 | VULN120 | Symantec : Symantec Endpoint ProtectionMultiple Security Issues | Systems running Symantec Endpoint Protection
|
17 Mar 2016 | VULN119 | Xen : I/O port access privilegeescalation in x86-64 Linux | Linux running Xen.
|
16 Mar 2016 | VULN118 | Apache Struts : Possible Remote CodeExecution and XSS vulnerabilities fixed | Systems running Apache Struts versions prior to
|
16 Mar 2016 | VULN117 | Red Hat : Important kernel securityupdate | Red Hat Enterprise Linux versions 5.
|
16 Mar 2016 | VULN116 | VMware : VMware vRealize Automation andvRealize Business Advanced and Enterprise address Cross-Site Scripting (XSS)issues | Systems running VMware vRealize Automation
|
15 Mar 2016 | VULN115 | Apache ActiveMQ : ActiveMQ Web Console -Cross-Site Scripting and Clickjacking | Systems running Apache ActiveMQ versions 5 prior
|
15 Mar 2016 | VULN114 | Exim : Security release forCVE-2016-1531: 4.84.2, 4.85.2, 4.86.2, 4.87 RC5 | Systems running Exim versions prior to 4.84.2,
|
11 Mar 2016 | STAT10 | |
|
11 Mar 2016 | VULN113 | SPIP : Mise à jour CRITIQUE de sécurité - Sortie de SPIP 3.1.1, SPIP 3.0.22 et SPIP 2.1.29 | Systems running SPIP versions prior to 3.1.1,
|
11 Mar 2016 | VULN112 | OpenSSH : OpenSSH 7.2p2 fix possiblecommand injection in xauth | Systems running OpenSSH versions prior to 7.2p2.
|
10 Mar 2016 | VULN111 | Microsoft : Security Update forMicrosoft Windows to Address Elevation of Privilege | Windows versions Vista, Server 2008, 7.
|
10 Mar 2016 | VULN110 | Microsoft : Important Security Updatefor Windows OLE to Address Remote Code Execution | Windows version Vista, Server 2008, 7, 8.1,
|
10 Mar 2016 | VULN109 | (Microsoft : Important Security Updatefor Microsoft Office to Address Remote Code Execution (3141806)) | Systems running Microsoft Office,
|
10 Mar 2016 | VULN108 | (Microsoft : Security Update forMicrosoft Windows PDF Library to Address Remote Code Execution (3143081)) | Windows versions 8.1, 10, Server 2012 running
|
10 Mar 2016 | VULN107 | (Microsoft : Security Update for WindowsMedia to Address Remote Code Execution (3143146)) | Windows versions 7, 8.1, Server 2008, Server 2012,
|
10 Mar 2016 | VULN105 | (Microsoft : Critical Security Update forGraphic Fonts to Address Remote Code Execution (3143148)) | Windows versions Vista, 7, 8.1, 10, Server 2008,
|
10 Mar 2016 | VULN106 | (Microsoft : Important Security Updatefor Windows Library Loading to Address Remote Code Execution (3140709)) | Windows versions Vista, Server 2008.
|
10 Mar 2016 | VULN104 | Cisco : Cisco Cable Modem with DigitalVoice Remote Code Execution Vulnerability | Cisco Cable Modem with Digital Voice Model DPC2203
|
10 Mar 2016 | VULN103 | Cisco : Cisco Wireless ResidentialGateway Vulnerabilities fixed | Cisco Wireless Residential Gateway software.
|
10 Mar 2016 | VULN102 | Cisco : Cisco ASA Content Security andControl Security Services Module Denial of Service Vulnerability | Cisco ASA Content Security and Control Security
|
10 Mar 2016 | VULN101 | BIND : DoS vulnerability related to DNScookies fixed | Systems running BIND 9 versions prior to 9.10.3-P4.
|
9 Mar 2016 | VULN100 | (Microsoft : Cumulative Security Updatefor Microsoft Edge (3142019)) | Windows version 10 running Microsoft Edge.
|
9 Mar 2016 | VULN099 | Samba : Two vulnerabilities fixed | Systems running Samba versions 3, 4 prior to
|
9 Mar 2016 | VULN098 | (Microsoft : Cumulative Security Updatefor Internet Explorer (3142015)) | Systems running Internet Explorer versions 9, 10,
|
8 Mar 2016 | VULN097 | ISC DHCP : CVE-2016-2774 DoSvulnerability fixed | Systems running ISC DHCP versions prior to
|
8 Mar 2016 | VULN096 | PuTTY : PuTTY 0.67 released fixing aremote code execution vulnerability | Systems running PuTTY versions prior to 0.67.
|
4 Mar 2016 | STAT09 | |
|
4 Mar 2016 | VULN095 | Ruby on Rails : Rails 4.2.5.2, 4.1.14.2and 3.2.22.2 have been released! | Systems running Rails versions prior to 4.2.5.2,
|
4 Mar 2016 | VULN094 | Apache Wicket : Apache Wicket XSSvulnerabilities | Systems running Apache Wicket versions 1.5.x, 6.x,
|
4 Mar 2016 | VULN093 | Django : Django security releases issued1.9.3 and 1.8.10 | Systems running Django versions prior to 1.9.3,
|
3 Mar 2016 | VULN092 | phpMyAdmin : XSS and man-in-the-middlevulnerabilities fixed | Systems running phpMyAdmin versions 4.5.x, 4.4.x,
|
3 Mar 2016 | VULN091 | Google Chrome : Chrome 49.0.2623.75fixes several vulnerabilities | Systems running Google Chrome versions prior to
|
3 Mar 2016 | VULN090 | Cisco : Cisco Web Security ApplianceHTTPS Packet Processing Denial of Service Vulnerability | Cisco WSA Software.
|
3 Mar 2016 | VULN089 | Cisco : Cisco NX-OS Software TCPNetstack Denial of Service Vulnerability | Cisco NX-OS Software.
|
3 Mar 2016 | VULN088 | Cisco : Cisco Nexus 3000 Series and 3500Platform Switches Insecure Default Credentials Vulnerability | Cisco NX-OS Software.
|
3 Mar 2016 | VULN087 | Cisco : Cisco NX-OS Software SNMP PacketDenial of Service Vulnerability | Cisco NX-OS Software.
|
3 Mar 2016 | VULN086 | Cisco : Multiple Vulnérabilises in OpenSSL Affecting Cisco Products March 2016 | Cisco software running SSL versions 2.
|
1 Mar 2016 | VULN085 | OpenSSL : OpenSSL Security Advisory [1stMarch 2016] | Systems running OpenSSL versions prior to 1.0.2g,
|
29 Feb 2016 | VULN084 | Wireshark : Multiple vulnerabilitiesfixed in Wireshark | . Systems running Wireshark versions 1, 2 prior to
|
26 Feb 2016 | STAT08 | |
|
26 Feb 2016 | VULN083 | IBM : IBM QRadar SIEM and IncidentForensics fix for Glibc and IBM Java SDK vulnerabilities | Systems running IBM Security QRadar SIEM
|
26 Feb 2016 | VULN082 | (Palo Alto : ESM Console XSSvulnerability (CVE-2015-2223) (PAN-SA-2016-0001)) | Traps ESM Console versions prior to 3.1.5.3691,
|
26 Feb 2016 | VULN081 | Palo Alto : Palo Alto Networks PAN-OSmultiple vulnerabilities | PAN-OS versions prior to 5.0.18, 6.0.13, 6.1.10,
|
26 Feb 2016 | VULN080 | APPLE : APPLE-SA-2016-02-25-1 Apple TV7.2.1 | Apple TV Software versions prior to 7.2.1.
|
25 Feb 2016 | VULN079 | Apache : Apache Xerces-C XML ParserCrashes on Malformed Input | Systems running Apache Xerces-C XML Parser library
|
25 Feb 2016 | VULN078 | Cisco : Cisco FirePOWER ManagementCenter Unauthenticated Information Disclosure Vulnerability | Cisco FirePOWER Management Center versions 5.x,
|
25 Feb 2016 | VULN077 | Cisco : Cisco ACE 4710 ApplicationControl Engine Command Injection Vulnerability | CISCO ACE A5 software versions up to A5(3.0).
|
25 Feb 2016 | VULN076 | Jenkins : Multiple vulnerabilities fixedin Jenkins | Systems running Jenkins versions prior to 1.650,
|
25 Feb 2016 | VULN075 | Squid : Multiple Denial of Serviceissues in HTTP Response processing | Systems running Squid versions 3.x, 4.x prior to
|
25 Feb 2016 | VULN074 | Drupal Core : Critical - MultipleVulnerabilities - SA-CORE-2016-001 | Systems running Drupal Core versions 6.x, 7.x, 8.x
|
24 Feb 2016 | VULN073 | Blackberry : BSRT-2016-001Vulnerabilities in BES12 Management Console impacts BES12 | Systems running BES versions prior to 12.4.
|
24 Feb 2016 | VULN072 | Cisco : Cisco Nexus 2000 Series FabricExtender Software Default Credential Vulnerability | Cisco Nexus 2000 Series Fabric Extender Software.
|
24 Feb 2016 | VULN071 | TYPO3 : Multiple Vulnerabilities fixedin TYPO3 | Systems running TYPO3 versions 6.2, 7.6
|
23 Feb 2016 | VULN070 | Apache Tomcat : Vulnerabilities fixed inApache Tomcat | Systems running Apache Tomcat versions 6, 7, 8, 9
|
22 Feb 2016 | VULN069 | LibreOffice : LotusWordPro Multiplebounds overflows | Systems running versions prior to 5.0.5, 5.1.0.
|
22 Feb 2016 | VULN068 | Cisco : Vulnerability in GNU glibcAffecting Cisco Products February 2016 | Cisco software with GNU glibc.
|
22 Feb 2016 | VULN067 | Cisco : Cisco ASR 5000 Series StarOS SSHSubsystem Privilege Escalation Vulnerability | Cisco ASR 5000 Series StarOS prior to
|
22 Feb 2016 | VULN066 | Symantec : Symantec EncryptionManagement Server Multiple Security Issues | Systems running Symantec Encryption Management
|
22 Feb 2016 | VULN065 | Novell : CVE-2015-5970 ZCM ZENworksChangePassword XPath Injection Information Disclosure Vulnerability | Systems running Novell ZENworks CM version 11.4,
|
22 Feb 2016 | VULN064 | VMware : VMware product updates addressa critical glibc security vulnerability | Systems running VMware ESXi version 5.5, 6.0,
|
19 Feb 2016 | STAT07 | |
|
19 Feb 2016 | VULN063 | Squid : Remote Denial of service issuein SSL/TLS processing | Systems running Squid.
|
19 Feb 2016 | VULN062 | Xen : VMX guest user mode may crashguest with non-canonical RIP | Systems running Xen.
|
17 Feb 2016 | VULN061 | Google : Glibc getaddrinfo stack-basedbuffer overflow CVE-2015-7547 | Systems running glibc.
|
16 Feb 2016 | VULN060 | Postgresql : 2016-02-11 Security UpdateRelease | Systems running Postgresql versions prior to
|
12 Feb 2016 | VULN058 | Microsoft : Important Security Updatefor Microsoft Office to Address Remote Code Execution | Systems running Microsoft Office versions 2007,
|
12 Feb 2016 | VULN059 | (Microsoft : Important Security Updatefor WebDAV to Address Elevation of Privilege (3136041)) | Windows versions Vista, Server 2008, 7, 8.1, 10,
|
12 Feb 2016 | VULN057 | Microsoft : Critical Security Update forMicrosoft Windows to Address Remote Code Execution | Windows versions Vista, Server 2008, 7, 8.1, 10,
|
12 Feb 2016 | VULN056 | Apache : CVE-2015-3251 Apache CloudStackVM Credential Exposure | Systems running Apache CloudStack versions 4.4.4,
|
12 Feb 2016 | VULN055 | EMC Documentum : EMC Documentum xCPSecurity Update for Multiple Vulnerabilities | Systems running EMC Documentum xCP versions 2.1,
|
12 Feb 2016 | STAT06 | |
|
11 Feb 2016 | VULN053 | (Microsoft : Security Update forMicrosoft Windows PDF Library to Address Remote Code Execution (3138938)) | Cisco ASA Software.
|
11 Feb 2016 | VULN054 | (Microsoft : Security Update for WindowsJournal to Address Remote Code Execution (3134811)) | Windows versions Vista, Server 2008, 7, 8.1,
|
11 Feb 2016 | VULN051 | Microsoft : Cumulative Security Updatefor Internet Explorer (3134220 | Systems running Internet Explorer versions 9, 10,
|
11 Feb 2016 | VULN052 | (Microsoft : Cumulative Security Updatefor Microsoft Edge (3134225)) | Windows version 10 running Microsoft Edge.
|
11 Feb 2016 | VULN050 | Cisco : Cisco ASA Software IKEv1 andIKEv2 Buffer Overflow Vulnerability | Cisco ASA Software.
|
9 Feb 2016 | VULN049 | Oracle Java : Security AlertCVE-2016-0603 Released | Windows running Java versions 6, 7, 8 prior to
|
5 Feb 2016 | STAT05 | |
|
4 Feb 2016 | VULN048 | Cisco : Cisco Application PolicyInfrastructure Controller Access Control Vulnerability | Cisco Application Policy Infrastructure
|
4 Feb 2016 | VULN047 | Cisco : Cisco ASA-CX and Cisco PrimeSecurity Manager Privilege Escalation Vulnerability | Cisco ASA-CX software, Cisco Prime Security
|
4 Feb 2016 | VULN046 | Cisco : Cisco Nexus 9000 Series ACI ModeSwitch ICMP Record Route Vulnerability | Cisco Nexus 9000 software.
|
4 Feb 2016 | VULN045 | Asterisk : Vulnerabilities fixed inAsterisk | Systems running Asterisk versions prior to 11.21.1,
|
29 Jan 2016 | STAT04 | |
|
29 Jan 2016 | VULN044 | OpenSSL : OpenSSL Security Advisory[28th Jan 2016] | Systems running OpenSSL versions prior to 1.0.2f,
|
29 Jan 2016 | VULN042 | Phpmyadmin : Multiple vulnerabilitiesfixed in Phpmyadmin | Systems running phpmyadmin versions 4.0.x prior to
|
29 Jan 2016 | VULN043 | Apache Hive : CVE-2015-7521 Apache Hiveauthorization bug disclosure | Systems running Apache Hive versions 1.0, 1.1, 1.2.
|
28 Jan 2016 | VULN041 | Rails : Rails 5.0.0.beta1.1, 4.2.5.1,4.1.14.1, 3.2.22.1, and rails-html-sanitizer 1.0.3 | Systems running Rails versions prior to
|
27 Jan 2016 | VULN040 | Cisco : Cisco RV220W ManagementAuthentication Bypass Vulnerability | Cisco RV220W Wireless Network Security Firewall
|
27 Jan 2016 | VULN039 | Cisco : Cisco Wide Area ApplicationService CIFS Denial of Service Vulnerability | Cisco Wide Area Application Service software.
|
27 Jan 2016 | VULN038 | Xen : Vulnerabilities fixed in Xen | Xen versions 3.3, 3.4.0, 3.4.1, from 4.1 onwards.
|
27 Jan 2016 | VULN037 | cURL : NTLM credentials not-checked forproxy connection re-use | Systems running libcurl versions 7.10.7 up to and
|
27 Jan 2016 | VULN036 | NTP : January 2016 NTP-4.2.8p6 SecurityVulnerability Announcement | Systems running NTP versions prior to 4.2.8p6.
|
22 Jan 2016 | VULN035 | Cisco : Cisco Unified Computing SystemManager and Cisco Firepower 9000 Remote Command Execution Vulnerability | Cisco UCS Manager software, Cisco Firepower 9000
|
22 Jan 2016 | VULN034 | Cisco : Cisco Modular Encoding PlatformD9036 Software Default Credentials Vulnerability | Cisco Modular Encoding Platform D9036 Software.
|
22 Jan 2016 | VULN033 | Debian : fuse security update | Debian running fuse versions prior to
|
22 Jan 2016 | VULN032 | Google Chrome : Google Chrome48.0.2564.82 fixes multiple vulnerabilities | Systems running Google Chrome versions prior to
|
22 Jan 2016 | VULN031 | Cisco : Cisco Web Security ApplianceSecurity Bypass Vulnerability | Cisco Web Security Appliance (WSA) versions
|
22 Jan 2016 | STAT03 | |
|
20 Jan 2016 | VULN030 | Debian : Local privilege escalation andother vulnerabilities fixed in Debian | Linux,
|
20 Jan 2016 | VULN029 | Oracle : January 2016 Critical PatchUpdate Released | Systems running Oracle Database Server,
|
20 Jan 2016 | VULN028 | APPLE : APPLE-SA-2016-01-19-3 Safari9.0.3 | Systems running Safari versions 9 prior to 9.0.3.
|
20 Jan 2016 | VULN027 | APPLE : OS X El Capitan 10.11.3 andSecurity Update 2016-001 | OS X versions prior to El Capitan 10.11.3.
|
20 Jan 2016 | VULN026 | APPLE : APPLE-SA-2016-01-19-1 iOS 9.2.1 | iOS versions 9 prior 9.2.1.
|
20 Jan 2016 | VULN025 | BIND : Vulnerabilities fixed in BIND9.9.8-P3, 9.10.3-P3 | Systems running BIND versions 9 prior to 9.9.8-P3,
|
19 Jan 2016 | VULN024 | Moodle : Vulnerabilities fixed in Moodle2.7.12, 2.8.10, 2.9.4, 3.0.2 | Systems running Moodle versions prior to 2.7.12,
|
18 Jan 2016 | VULN023 | Cisco : Cisco FireSIGHT ManagementCenter Cross-Site Scripting Vulnerabilities | Cisco FireSIGHT software.
|
15 Jan 2016 | STAT02 | |
|
14 Jan 2016 | VULN022 | OpenSSH : Vulnerabilities fixed inOpenSSH clients | OpenSSH clients versions between 5.4 and 7.1.
|
14 Jan 2016 | VULN021 | Juniper : Multiple vulnerabilities fixedin Junos | Junos versions prior to 12.1X44-D60, 12.1X46-D45,
|
14 Jan 2016 | VULN020 | Cisco : Cisco Aironet 1800 Series AccessPoint Denial of Service Vulnerability | Cisco Aironet 1800 Series Access Point software.
|
14 Jan 2016 | VULN019 | Cisco : Cisco Identity Services EngineUnauthorized Access Vulnerability | Systems running Cisco Identity Services Engine
|
14 Jan 2016 | VULN018 | Cisco : Cisco Wireless LAN ControllerUnauthorized Access Vulnerability | Systems running Cisco Wireless LAN Controller
|
13 Jan 2016 | VULN017 | Cisco : Cisco Aironet 1800 Series AccessPoint Default Static Account Credentials Vulnerability | Cisco Aironet 1800 Series Access Point software.
|
13 Jan 2016 | VULN016 | Adobe : Security Updates Available forAdobe Acrobat and Reader | Systems running Adobe Acrobat, Adobe Reader
|
13 Jan 2016 | VULN015 | (Microsoft : Important Security Updatefor Microsoft Exchange Server to Address Spoofing (3124557)) | Systems running Microsoft Exchange Server version
|
13 Jan 2016 | VULN014 | (Microsoft : Important Security Updatefor Windows Kernel to Address Elevation of Privilege (3124605)) | Windows version Vista, Server 2008, 7, 8, 8.1,
|
13 Jan 2016 | VULN013 | (Microsoft : Important Security Updatefor Microsoft Windows to Address Remote Code Execution (3124901)) | Windows version Vista, Server 2008, 7, 8, 8.1,
|
13 Jan 2016 | VULN012 | (Microsoft : Critical Security Update forSilverlight to Address Remote Code Execution (3126036)) | Systems running Silverlight version 5.
|
13 Jan 2016 | VULN011 | (Microsoft : Critical Security Update forWindows Kernel-Mode Drivers to Address Remote Code Execution (3124584)) | Windows version Vista, Server 2008, 7, 8, 8.1,
|
13 Jan 2016 | VULN010 | (Microsoft : Critical Security Update forMicrosoft Office to Address Remote Code Execution (3124585)) | Systems running Microsoft Office versions 2007,
|
13 Jan 2016 | VULN009 | (Microsoft : Critical Cumulative SecurityUpdate for JScript and VBScript to Address Remote Code Execution (3125540)) | Windows version Vista, Server 2008 running
|
13 Jan 2016 | VULN008 | (Microsoft : Critical Cumulative SecurityUpdate for Microsoft Edge (3124904)) | Windows version 10 running Microsoft Edge.
|
13 Jan 2016 | VULN007 | Microsoft : Critical Cumulative SecurityUpdate for Internet Explorer | Systems running Internet Explorer versions 7, 8,
|
13 Jan 2016 | VULN006 | Cisco : Cisco Adaptive SecurityAppliance Non-DCERPC Traffic Bypass Vulnerability | Cisco ASA Software versions 9.4.1 up to and
|
13 Jan 2016 | VULN005 | Fortiguard : FortiOS SSH UndocumentedInteractive Login Vulnerability | FortiOS versions 4.3.x, 5.0.x prior to 4.3.17,
|
13 Jan 2016 | VULN004 | ISC DHCP : CVE-2015-8605 UDP payloadlength not properly checked | Systems running ISC DHCP versions 4, 3 prior to
|
11 Jan 2016 | VULN003 | WordPress : WordPress 4.4.1 Security andMaintenance Release | Systems running WordPress versions prior to 4.4.1.
|
8 Jan 2016 | STAT01 | |
|
8 Jan 2016 | VULN002 | APPLE : APPLE-SA-2016-01-07-1 QuickTime7.7.9 | Systems running QuickTime versions prior to 7.7.9.
|
8 Jan 2016 | VULN001 | VMware : VMware ESXi, Workstation,Player and Fusion updates address important guest privilege escalationvulnerability | Systems running VMware ESXi versions 6.0, 5.5,
|
|