28 Dec 2018 | STAT52 | |
|
28 Dec 2018 | VULN424.1 | Qt : Qt 5.11.3 Released with Important Security Updates | Systems running Qt versions prior to 5.11.3.
|
27 Dec 2018 | VULN424 | Drupal : E-Sign - Moderately critical - Cross site scripting - SA-CONTRIB-2018-080 | Systems running E-Sign for Drupal versions prior
|
27 Dec 2018 | VULN425 | Drupal : JSON:API - Moderately critical - Access bypass - SA-CONTRIB-2018-081 | Systems running JSON API for Drupal versions
|
27 Dec 2018 | VULN423 | (Apache CouchDB : CVE-2018-17188 Remote Privilege Escalations (Affects all versions < 2.3.0)) | Systems running Apache CouchDB versions prior to
|
26 Dec 2018 | VULN421 | Apache Oozie : CVE-2018-11799 Apache Oozie security vulnerability | Systems running Apache Oozie versions prior to
|
26 Dec 2018 | VULN422 | Apache Tika : [CVE-2018-17197] Apache Tika Denial of Service -- Infinite Loop in Tika's SQLite3Parser | Systems running Apache Tika versions 1.8 up to
|
21 Dec 2018 | STAT51 | |
|
21 Dec 2018 | VULN420 | Shibboleth IdP : Shibboleth Identity Provider Security Advisory [19 December 2018] | Systems running Shibboleth Identity Provider
|
21 Dec 2018 | VULN419 | Shibboleth IdP : Shibboleth Service Provider Security Advisory [19 December 2018] | Systems running Shibboleth Identity Provider
|
14 Dec 2018 | STAT50 | |
|
14 Dec 2018 | VULN418 | WebKitGTK+ WPE WebKit: Multiple vulnerabilities fixed in WebKitGTK+, WPE WebKit | Systems running WebKitGTK+ versions prior to
|
13 Dec 2018 | VULN417 | (Adobe : Security updates available for Adobe Acrobat and Reader (APSB18-41)) | Systems running Adobe Acrobat, Adobe Reader
|
13 Dec 2018 | VULN416 | Google Chrome : Use after free vulnerability fixed in Google Chrome | Systems running Google Chrome versions prior to
|
13 Dec 2018 | VULN415 | WordPress : WordPress 5.0.1 Security Release | Systems running WordPress versions prior to 5.0.1.
|
12 Dec 2018 | VULN414 | Mozilla : Multiple vulnerabilities fixed in Firefox 64, Firefox ESR | Systems running Firefox versions prior to 64,
|
12 Dec 2018 | VULN413 | Phpmyadmin : Local file inclusion, XSRF/CSRF, XSS vulnerabilities fixed | Systems running phpmyadmin versions prior to 4.8.4.
|
12 Dec 2018 | VULN412 | Microsoft : Microsoft Security Update Summary for December 11, 2018 | Systems running Internet Explorer, Microsoft Edge,
|
10 Dec 2018 | VULN411 | Jenkins : Jenkins Security Advisory 2018-12-05 | Systems running Jenkins (core) versions prior to
|
7 Dec 2018 | STAT49 | |
|
5 Dec 2018 | VULN410 | Kubernetes : v1.10.11, v1.11.5, v1.12.3 released to address CVE-2018-1002105 | Systems running Kubernetes versions prior to
|
5 Dec 2018 | VULN409 | Google Chrome : Google Chrome 71.0.3578.80 contain multiple security fixes | Systems running Google Chrome versions prior to
|
3 Dec 2018 | VULN408 | Ruby on Rails : Rails 4.2.11, 5.0.7.1, 5.1.6.1 and 5.2.1.1 contain important security fixes | Systems running Rails versions prior to 4.2.11,
|
30 Nov 2018 | STAT48 | |
|
30 Nov 2018 | VULN407 | DRUPAL : Access bypass and Cross site scripting in Drupal plugins | Systems running GatherContent for Drupal,
|
29 Nov 2018 | VULN404 | Node.js : Multiple vulnerabilities fixed in November 2018 Security Releases | Systems running Node.js versions 6 and later.
|
29 Nov 2018 | VULN405 | Wireshark : Multiple dissector crash and infinite loop vulnerabilities fixed | Systems running Wireshark versions prior to 2.6.5,
|
29 Nov 2018 | VULN406 | GitLab : GitLab Security Release: 11.5.1, 11.4.8, and 11.3.11 | Systems running GitLab versions prior to 11.5.1,
|
28 Nov 2018 | VULN403 | FreeBSD : Multiple vulnerabilities in NFS server code | FreeBSD running NFS.
|
28 Nov 2018 | VULN402 | Cisco : Cisco Prime License Manager SQL Injection Vulnerability | Systems running Cisco Prime License Manager.
|
27 Nov 2018 | VULN401 | Apache Hadoop : CVE-2018-11766 Apache Hadoop privilege escalation vulnerability | Systems running Apache Hadoop versions 2.7.4 to
|
27 Nov 2018 | VULN400 | PowerDNS : Crafted query can cause a denial of service | Systems running PowerDNS versions 4.1.0 up to and
|
27 Nov 2018 | VULN399 | Samba : Multiple vulnerabilities fixed in Samba | Systems running Samba versions 4 prior to 4.7.12,
|
23 Nov 2018 | STAT47 | |
|
23 Nov 2018 | VULN398 | VMware : VMware Workstation and Fusion updates address, an integer overflow issue | Systems running VMware Workstation versions prior
|
22 Nov 2018 | VULN397 | Google Chrome : Vulnerabilities fixed in Google Chrome, Chrome OS | Systems running Google Chrome, Chrome OS versions
|
22 Nov 2018 | VULN396 | Red Hat : Important: kernel security update | Red Hat Enterprise Linux version 6.4.
|
22 Nov 2018 | VULN395 | (Adobe : Security updates available for Adobe Flash Player (APSB18-44)) | Systems running Adobe Flash Player versions prior
|
22 Nov 2018 | VULN394 | Citrix XenServer : CTX239432 Citrix XenServer Security Update | Systems running Citrix XenServer versions 7.6, 7.5,
|
22 Nov 2018 | VULN393 | Xen : Multiple vulnerabilities fixed in Xen | Systems running Xen.
|
22 Nov 2018 | VULN392 | Apache Hadoop : Apache Hadoop distributed cache archive vulnerability | Systems running Apache Hadoop versions prior to
|
22 Nov 2018 | VULN391 | WebKit : WebKitGTK+ and WPE WebKit Security Advisory | Systems running WebKitGTK+ versions prior to 2.22.4,
|
21 Nov 2018 | VULN389 | GitLab : GitLab Critical Security Release 11.5.0-rc12, 11.4.6, 11.3.10 | Systems running GitLab versions prior to
|
21 Nov 2018 | VULN390 | VMware : vSphere Data Protection (VDP) updates address multiple security issues | Systems running vSphere Data Protection
|
20 Nov 2018 | VULN388 | Moodle : Login CSRF vulnerability in login form | Systems running Moodle versions prior to 3.6,
|
16 Nov 2018 | STAT46 | |
|
16 Nov 2018 | VULN387 | Nagios : Nagios XI 5.5.7 fixes multiple Security vulnerabilities | Systems running Nagios XI versions prior to 5.5.7.
|
14 Nov 2018 | VULN386 | Adobe : Security updates available for Adobe Acrobat and Reader | Systems running Adobe Acrobat and Reader versions
|
14 Nov 2018 | VULN385 | OTRS : Security Updates for OTRS Framework | Systems running OTRS versions prior to 6.0.14,
|
14 Nov 2018 | VULN384 | Adobe : Security updates available for Adobe Photoshop CC APSB18-43 | windows, macOS running Adobe Photoshop CC
|
14 Nov 2018 | VULN383 | Adobe : Security updates available for Flash Player | Systems running Adobe Flash Player versions prior
|
14 Nov 2018 | VULN381 | Microsoft : Microsoft Security Update Summary for November 13, 2018 | Systems running Internet Explorer, Microsoft Edge,
|
14 Nov 2018 | VULN382 | VMware : VMware vRealize Log Insight updates address an, authorization bypass vulnerability | Systems running VMware vRealize Log Insight
|
13 Nov 2018 | VULN380 | Roundcube : XSS vulnerability fixed in Roundcube 1.3.8 | Systems running Roundcube versions prior to 1.3.8.
|
13 Nov 2018 | VULN379 | (OpenSSL : Microarchitecture timing vulnerability in ECC scalar multiplication (CVE-2018-5407)) | Systems running OpenSSL versions prior to 1.1.0i.
|
13 Nov 2018 | VULN378 | Apache Qpid Proton : Apache Qpid Proton-J transport TLS wrapper hostname,verification mode not implemented | Systems running Apache Qpid Proton-J versions prior
|
12 Nov 2018 | VULN377 | PostgreSQL : PostgreSQL 11.1, 10.6, 9.6.11, 9.5.15, 9.4.20, and 9.3.25 Released! | Systems running PostgreSQL versions prior to 11.1,
|
12 Nov 2018 | VULN376 | VMware : VMware ESXi, Workstation, and Fusion updates address, uninitialized stack memory usage | Systems running VMware ESXi, VMware Workstation,
|
9 Nov 2018 | STAT45 | |
|
9 Nov 2018 | VULN375 | Cisco : Cisco Unity Express Arbitrary Command Execution Vulnerability | Systems running Cisco Unity Express software.
|
8 Nov 2018 | VULN372 | Cisco : Cisco Stealthwatch Management Console Authentication Bypass Vulnerability | Systems running Cisco Stealthwatch Enterprise
|
8 Nov 2018 | VULN370 | PowerDNS : Multiple vulnerabilities fixed | Systems running PowerDNS versions prior to 4.1.5,
|
8 Nov 2018 | VULN373 | Cisco : Cisco Meeting Server Information Disclosure Vulnerability | Systems running Cisco Meeting Server.
|
8 Nov 2018 | VULN369 | Hive : Vulnerabilities fixed in Hive, HiveServer2 | Systems running Hive, HiveServer2 versions prior to
|
8 Nov 2018 | VULN371 | Apache Syncope : Stored XSS and XXE on BPMN definitions | Systems running Apache syncope versions prior to
|
8 Nov 2018 | VULN374 | Cisco : Cisco Small Business Switches Privileged Access Vulnerability | Cisco Small Business Switches firmware.
|
7 Nov 2018 | VULN368 | Xen : guest use of HLE constructs may lock up host | Systems running Xen.
|
7 Nov 2018 | VULN367 | nginx : Vulnerabilities fixed in Nginx | Systems running nginx versions prior to 1.15.6,
|
5 Nov 2018 | VULN366 | Ruby : Vulnerabilities fixed in Array#pack, String#unpack and in the openssl extension library | Systems running Ruby versions 2.3, 2.4, 2.5, 2.6.
|
5 Nov 2018 | VULN364 | Citrix NetScaler : Cross-Site Scripting Vulnerability in Citrix NetScaler | Systems running Citrix NetScaler versions prior to
|
5 Nov 2018 | VULN365 | Icecast : Icecast Security Release 2.4.4 | Systems running Icecast versions prior to 2.4.4.
|
5 Nov 2018 | VULN363 | GitLab : GitLab Critical Security Release: 11.4.4, 11.3.9, 11.2.8 | Systems running GitLab versions prior to 11.4.4,
|
5 Nov 2018 | VULN362 | Apache Struts : Immediately upgrade commons-fileupload to version 1.3.3 when running Struts 2.3.36 or prior | Systems running Apache Struts versions up to and
|
2 Nov 2018 | STAT44 | |
|
2 Nov 2018 | VULN361 | US-CERT : Texas Instrument Microcontrollers CC2640 and CC2650 are vulnerable to variable and heap overflow | Texas Instrument Microcontrollers CC2640 and
|
2 Nov 2018 | VULN360 | Mozilla : Security vulnerabilities fixed in Thunderbird ESR 60.3 | Systems running Thunderbird versions prior to ESR
|
2 Nov 2018 | VULN357 | Cisco : Cisco Adaptive Security Appliance Software and Cisco Firepower Threat Defense Software Denial of Service Vulnerability | Windows running Cisco Adaptive Security Appliance
|
2 Nov 2018 | VULN356 | Apache Tomcat : CVE-2018-11759 Apache Tomcat JK (mod_jk) Connector path traversal | Windows running Apache Tomcat JK mod_jk Connector
|
2 Nov 2018 | VULN359 | Cisco : Texas Instruments Bluetooth Low Energy Denial ,of Service and Remote Code Execution Vulnerability | Cisco Wireless LAN Controller Software.
|
2 Nov 2018 | VULN358 | Dell : Dell EMC Integrated Data Protection Appliance Undocumented Accounts Vulnerability | Dell EMC Integrated Data Protection Appliance
|
31 Oct 2018 | VULN350 | APPLE : APPLE-SA-2018-10-30-2 macOS Mojave 10.14.1, Security Update 2018-001,High Sierra, Security Update 2018-005 Sierra | macOS versions prior to 10.14.1.
|
31 Oct 2018 | VULN354 | APPLE : APPLE-SA-2018-10-30-4 watchOS 5.1 | watchOS versions prior to 5.1.
|
31 Oct 2018 | VULN352 | APPLE : APPLE-SA-2018-10-30-3 Safari 12.0.1 | Systems running Safari versions prior to 12.0.1.
|
31 Oct 2018 | VULN355 | APPLE : APPLE-SA-2018-10-30-7 iCloud for Windows 7.8 | Windows running iCloud versions prior to 7.8.
|
31 Oct 2018 | VULN353 | APPLE : APPLE-SA-2018-10-30-5 tvOS 12.1 | tvOS versions prior to 12.1.
|
31 Oct 2018 | VULN351 | APPLE : APPLE-SA-2018-10-30-6 iTunes 12.9.1 | Systems running iTunes versions prior to 12.9.1.
|
31 Oct 2018 | VULN349 | APPLE : APPLE-SA-2018-10-30-1 iOS 12.1 | iOS versions prior to 12.1.
|
31 Oct 2018 | VULN348 | Project curl : Multiple vulnerabilities fixed in libcurl | Systems running libcurl versions prior to 7.62.0.
|
30 Oct 2018 | VULN347 | (OpenSSL : Timing vulnerability in ECDSA signature generation (CVE-2018-0735)) | Systems running OpenSSL versions prior to 1.1.1a,
|
29 Oct 2018 | VULN341 | Citrix XenServer : Denial of Service Vulnerability fixed in Citrix XenServer | Systems running Citrix XenServer versions 7.6, 7.5,
|
29 Oct 2018 | VULN342 | Xen : x86 Nested VT-x usable even when disabled | Systems running Xen versions 4.9 or later.
|
29 Oct 2018 | VULN344 | Jenkins : Sandbox Bypass in Script Security and Pipeline Groovy Plugins | Systems running Pipeline: Groovy Plugin versions
|
29 Oct 2018 | VULN346 | Wallix : libssh Authentication Bypass Vulnerability Affecting WALLIX Products | WALLIX Bastion software.
|
29 Oct 2018 | VULN345 | X.Org : Privilege escalation and file overwrite in X.Org X server 1.19 and later | Systems running X.Org X server versions 1.19 and
|
29 Oct 2018 | VULN343 | Squid : Cross-Site Scripting and Denial of Service issues fixed in Squid | Systems running Squid versions 3, 4 prior to 4.4.
|
26 Oct 2018 | STAT43 | |
|
26 Oct 2018 | VULN340 | Apache Impala : CVE-2018-11785 and CVE-2018-11792 fixed in Apache Impala 3.0.1 release | Systems running Apache Impala versions prior to
|
26 Oct 2018 | VULN339 | Apache Spark : CVE-2018-11804 Apache Spark build/mvn runs zinc, and can expose information from build machines | Systems running Apache Spark versions 1.3.x release
|
24 Oct 2018 | VULN338 | Cisco : Cisco Webex Meetings Desktop App Update Service Command Injection Vulnerability | Windows running Cisco Webex Meetings Desktop App.
|
24 Oct 2018 | VULN337 | Mozilla : Security vulnerabilities fixed in Firefox 63 and 60.3. | Systems running Firefox versions prior to 63,
|
19 Oct 2018 | STAT42 | |
|
19 Oct 2018 | VULN336 | libssh : Authentication bypass in server code | Systems running libssh versions prior to 0.8.4,
|
18 Oct 2018 | VULN335 | Drupal Core : Drupal Core - Multiple Vulnerabilities - SA-CORE-2018-006 | Systems running Drupal Core versions 7.x, 8.x
|
17 Oct 2018 | VULN334 | Juniper : Multiple Security Vulnerabilities fixed in Junos OS | Junos OS.
|
17 Oct 2018 | VULN333 | Oracle : October 2018 Critical Patch Update Released | Systems running Oracle Database Server,
|
17 Oct 2018 | VULN332 | VMware : VMware ESXi, Workstation, and Fusion updates address an out-of-bounds read vulnerability | Systems running VMware ESXi, VMware Workstation,
|
12 Oct 2018 | STAT41 | |
|
5 Oct 2018 | VULN321 | Apache Ranger : Apache Ranger Stack based buffer overflow | systems running Apache Ranger versions prior to
|
11 Oct 2018 | VULN331 | Jenkins : Jenkins Security Advisory 2018-10-10 | Systems running Jenkins weekly versions prior to
|
10 Oct 2018 | VULN329 | Microsoft : Microsoft Security Update Summary for October 9, 2018 | Systems running Internet Explorer, Microsoft Edge,
|
10 Oct 2018 | VULN330 | Adobe : Security Updates Available for Adobe Technical Communications Suite | Windows running Adobe Technical Communications
|
10 Oct 2018 | VULN326 | VMware : VMware ESXi, Workstation, and Fusion workarounds address a denial-of-service vulnerability | Systems running VMware ESXi, VMware Workstation,
|
10 Oct 2018 | VULN327 | Joomla! : Multiple vulnerabilities fixed in Joomla! | Systems running Joomla! versions prior to 3.8.13.
|
10 Oct 2018 | VULN328 | Apache Tika : Apache Tika Denial of Service via XML Entity Expansion,Vulnerability | Systems running Apache Tika versions prior to
|
9 Oct 2018 | VULN324 | APPLE : APPLE-SA-2018-10-08-1 iOS 12.0.1 | iOS versions prior to 12.0.1.
|
9 Oct 2018 | VULN325 | APPLE : APPLE-SA-2018-10-08-2 iCloud for Windows 7.7 | Windows running iCloud versions prior to 7.7.
|
8 Oct 2018 | VULN323 | Apache PDFBox parser : [CVE-2018-11797] DoS vulnerability in Apache PDFBox parser | systems running Apache PDFBox parser versions prior
|
8 Oct 2018 | VULN322 | Git : Git 2.14.5, 2.15.3, 2.16.5, 2.17.2, 2.18.1, and 2.19.1 | systems running Git versions prior to 2.14.5,
|
5 Oct 2018 | STAT40 | |
|
5 Oct 2018 | VULN320 | VMware : VMware Workspace ONE Unified Endpoint Management Console (A/W Console) update resolves SAML authentication bypass vulnerability | systems running VMware Workspace ONE Unified
|
4 Oct 2018 | VULN319 | Apache Tomcat : CVE-2018-11784 Apache Tomcat - Open Redirect | systems running Apache Tomcat versions prior to
|
4 Oct 2018 | VULN318 | strongSwan : Denial-of-service vulnerability in the gmp plugin | systems running strongSwan versions prior to 5.7.1
|
3 Oct 2018 | VULN311 | Cisco : Cisco Digital Network Architecture Center Authentication Bypass Vulnerabilities | Systems running Cisco DNA Center Software.
|
3 Oct 2018 | VULN317 | Cisco : Cisco Webex Network Recording Player and Cisco Webex Player Remote Code Execution Vulnerabilities | Windows running Cisco Webex Network Recording
|
3 Oct 2018 | VULN316 | Cisco : Cisco Firepower Threat Defense Software FTP Inspection Denial of Service Vulnerability | Systems running Cisco Firepower Threat Defense
|
3 Oct 2018 | VULN314 | Cisco : Cisco SD-WAN Solution Certificate Validation ,Bypass Vulnerability | Systems running Cisco SD-WAN Solution versions
|
3 Oct 2018 | VULN312 | Cisco : Cisco HyperFlex Software Static Signing Key Vulnerability | Systems running Cisco HyperFlex Software versions
|
3 Oct 2018 | VULN310 | Cisco : Cisco Prime Infrastructure Arbitrary File Upload and Command Execution Vulnerability | Systems running Cisco Prime Infrastructure versions
|
3 Oct 2018 | VULN315 | Cisco : Cisco Prime Collaboration Provisioning Intermittent Hard-Coded Password Vulnerability | Systems running Cisco Prime Collaboration
|
3 Oct 2018 | VULN313 | Cisco : Cisco Adaptive Security Appliance Direct Memory Access Denial of Service Vulnerability | Systems running Cisco Adaptive Security Appliance
|
3 Oct 2018 | VULN309 | Cisco : Cisco Firepower System Software Detection Engine Denial of Service Vulnerability | Cisco Firepower System Software.
|
3 Oct 2018 | VULN308 | US-CERT: TP-Link EAP Controller lacks RMI authentication and is vulnerable to deserialization attacks | Systems running TP-LINK EAP Controller versions
|
3 Oct 2018 | VULN307 | Foxit : Security updates available in Foxit Reader 9.3 and Foxit PhantomPDF 9.3 | Systems running Foxit Reader, Foxit PhantomPDF
|
3 Oct 2018 | VULN306 | GitLab : GitLab Security Release: 11.3.1, 11.2.4, and 11.1.7 | Systems running GitLab Community Edition (CE),
|
3 Oct 2018 | VULN305 | Mozilla : Security vulnerabilities fixed in Firefox 62.0.3 and Firefox ESR 60.2.2 | Systems running Firefox versions prior to 62.0.3,
|
28 Sep 2018 | STAT38.1 | |
|
26 Sep 2018 | VULN302 | Citrix : Citrix ShareFile StorageZones Controller Multiple Security Updates | Systems running Citrix ShareFile StorageZones
|
26 Sep 2018 | VULN301 | Apache httpd : DoS vulnerability fixed in Apache httpd | Systems running Apache versions 2.4.18 up to
|
26 Sep 2018 | VULN300 | Jenkins : Jenkins Security Advisory 2018-09-25 | Systems running Jenkins plugins
|
25 Sep 2018 | VULN297 | APPLE : APPLE-SA-2018-9-24-2 iTunes 12.9 for Windows | Windows running iTunes versions prior to 12.9.
|
25 Sep 2018 | VULN298 | APPLE : APPLE-SA-2018-9-17-2 watchOS 5 | watchOS versions prior to 5.
|
25 Sep 2018 | VULN299 | Dell EMC : Dell EMC ESRS Policy Manager Remote Code Execution Vulnerability | Systems running Dell EMC ESRS Policy Manager.
|
25 Sep 2018 | VULN296 | APPLE : APPLE-SA-2018-9-24-1 macOS Mojave 10.14 | macOS versions prior to 10.14.
|
24 Sep 2018 | VULN295 | Mozilla : Security vulnerabilities fixed in Firefox 62.0.2 and ESR 60.2.1 | Systems running Firefox versions prior to 62.0.2,
|
24 Sep 2018 | VULN294 | Dell EMC : RSA® Authentication Manager Multiple Vulnerabilities | Systems running RSA® Authentication Manager
|
24 Sep 2018 | VULN293 | Cisco : Cisco Video Surveillance Manager Appliance Default Password Vulnerability | Systems running Cisco Video Surveillance Manager
|
21 Sep 2018 | STAT38 | |
|
21 Sep 2018 | VULN292 | Asterisk : Remote crash vulnerability in HTTP websocket upgrade | Systems running Asterisk versions prior to 1.31.1,
|
21 Sep 2018 | VULN291 | MediaWiki : Security release: 1.27.5 / 1.29.3 / 1.30.1 / 1.31.1 | Systems running MediaWiki versions prior to 1.31.1,
|
20 Sep 2018 | VULN290 | Apache Tika : Apache Tika Denial of Service and Zip Slip Vulnerabilities | Systems running Apache Tika versions prior to 1.19.
|
20 Sep 2018 | VULN289 | Moodle : Multiple vulnerabilities fixed | Systems running Moodle versions prior to 3.5.2,
|
20 Sep 2018 | VULN288 | ISC BIND : CVE-2018-5741 Update policies krb5-subdomain and ms-subdomain | Systems running ISC BIND prior to 9.11.5, 9.12.3.
|
20 Sep 2018 | VULN286 | Cisco : Cisco IOS XE Software Static Credential Vulnerability | Cisco IOS XE versions 16.5 and later,
|
20 Sep 2018 | VULN287 | Cisco : Cisco Webex Network Recording Player Remote Code Execution Vulnerabilities | Systems running ARF recording players available
|
18 Sep 2018 | VULN285 | APPLE : APPLE-SA-2018-9-17-3 tvOS 12 | tvOS versions prior to 12.
|
18 Sep 2018 | VULN284 | APPLE : APPLE-SA-2018-9-17-4 Safari 12 | Systems running Safari versions prior to 12.
|
18 Sep 2018 | VULN283 | APPLE : APPLE-SA-2018-9-17-1 iOS 12 | iOS versions prior to 12.
|
17 Sep 2018 | VULN282 | Apache SpamAssassin : Apache SpamAssassin 3.4.2 resolves CVE-2017-15705, CVE-2016-1238, CVE-2018-11780 & CVE-2018-11781 | Systems running Apache SpamAssassin versions prior
|
14 Sep 2018 | STAT37 | |
|
14 Sep 2018 | VULN281 | Microsoft : Microsoft Security Update Summary for September 2018 and Security Advisory Notification | Systems running Internet Explorer, Microsoft Edge,
|
14 Sep 2018 | VULN280 | Apache Camel : A new security advisory has been released for Apache Camel, that is fixed in the recent 2.20.4, 2.21.2 and 2.22.1 releases | Systems running Apache Camel versions prior to
|
7 Sep 2018 | STAT36 | |
|
7 Sep 2018 | VULN279 | Mozilla : Multiple security vulnerabilities fixed in Firefox 62 and 60.2 | Systems running Firefox versions prior to 62, 60.2.
|
7 Sep 2018 | VULN278 | Google Chrome : Google Chrome 69.0.3497.81 fixes multiple vulnerabilities | Systems running libcurl version 7.15.4 up to and
|
7 Sep 2018 | VULN277 | X.Org : Security issues in libX11 and libXcursor | Systems running libX11 versions prior to 1.1.6,
|
6 Sep 2018 | VULN276 | Google Chrome : Google Chrome 69.0.3497.81 fixes multiple vulnerabilities | Systems running Google Chrome versions prior to
|
6 Sep 2018 | VULN274 | Cisco : Cisco Umbrella Enterprise Roaming Client and Enterprise Roaming Module Privilege Escalation Vulnerabilities | Systems running Cisco Umbrella ERC versions prior
|
6 Sep 2018 | VULN275 | Cisco : Cisco Data Center Network Manager Privilege Escalation to Underlying Operating System Vulnerability | Systems running Cisco Data Center Network Manager
|
6 Sep 2018 | VULN273 | Cisco : Cisco Webex Teams Information Disclosure and Modification Vulnerability | Systems running Cisco Webex Teams versions
|
6 Sep 2018 | VULN272 | Cisco : Cisco Umbrella API Unauthorized Access Vulnerability | Systems running Cisco Umbrella API.
|
6 Sep 2018 | VULN270 | Cisco : Cisco Integrated Management Controller Command Injection Vulnerability | Systems running Cisco Integrated Management
|
6 Sep 2018 | VULN271 | Cisco : Cisco SD-WAN Solution multiple vulnerabilities | Systems running Cisco SD-WAN Solution.
|
6 Sep 2018 | VULN269 | Cisco : Cisco Prime Access Registrar Denial of Service Vulnerability | Systems running Cisco Prime Access Registrar,
|
6 Sep 2018 | VULN268 | Cisco : Cisco Webex Meetings Client for Windows Privilege Escalation Vulnerability | Windows running Cisco Webex Meetings Client for
|
6 Sep 2018 | VULN267 | Cisco : Cisco RV110W, RV130W, and RV215W Routers Management Interface multiple vulnerabilities | Cisco RV110W Wireless-N VPN Firewall firmware,
|
6 Sep 2018 | VULN266 | VMware : AirWatch Agent and VMware Content Locker updates resolve, data protection vulnerabilities | Systems running AirWatch Agent,
|
31 Aug 2018 | VULN259 | Joomla! : Multiple vulnerabilities fixed in Joomla! | Systems running Joomla! versions prior to 3.8.12.
|
31 Aug 2018 | VULN264 | Mozilla Thunderbird : Security vulnerabilities fixed in Thunderbird 60 | Systems running Mozilla Thunderbird versions prior
|
31 Aug 2018 | VULN265 | Microsoft : Microsoft Security Update Summary for August | Systems running Internet Explorer, Microsoft Edge,
|
31 Aug 2018 | VULN262 | Citrix XenServer : XenServer Multiple Security Updates | Systems running Citrix XenServer versions 7.5, 7.4,
|
31 Aug 2018 | VULN263 | Samba : Multiple vulnerabilities fixed in Samba | Systems running Samba versions since 3.2.0 prior to
|
31 Aug 2018 | VULN261 | Xen : Multiple vulnerabilities fixed in Xen | Systems running Xen.
|
31 Aug 2018 | VULN260 | phpMyAdmin : PMASA-2018-5 XSS in the import dialog | Systems running phpMyAdmin versions prior to 4.8.3.
|
31 Aug 2018 | VULN258 | Apache Struts : CVE-2018-11776 Possible Remote Code Execution fixed | Systems running Struts versions 2.3, 2.5 prior to
|
31 Aug 2018 | VULN257 | US-CERT : Microsoft Windows task scheduler contains a local privilege escalation vulnerability in the ALPC interface | Windows.
|
31 Aug 2018 | VULN256 | Jenkins : Jenkins Security Advisory 2018-08-15 | Systems running Jenkins weekly versions prior to
|
31 Aug 2018 | STAT35 | |
|
24 Aug 2018 | STAT34 | |
|
17 Aug 2018 | STAT33 | |
|
16 Aug 2018 | VULN255 | Jenkins : Jenkins Security Advisory 2018-08-15 | Systems running Jenkins weekly versions prior to
|
10 Aug 2018 | STAT31.1 | |
|
3 Aug 2018 | STAT31 | |
|
2 Aug 2018 | VULN253 | Drupal : Drupal Core - 3rd-party libraries -SA-CORE-2018-005 | Systems running Drupal core versions 8.x prior to
|
2 Aug 2018 | VULN252 | Django : CVE-2018-14574 Open redirect possibility in CommonMiddleware | Systems running Django versions prior to 2.0.8,
|
2 Aug 2018 | VULN251 | Cisco : Cisco Prime Collaboration Provisioning Unauthorized Password Change Denial of Service Vulnerability | Systems running Cisco Prime Collaboration
|
27 Jul 2018 | VULN249 | Apache OpenWhisk : PHP Runtime and Docker Skeleton Runtime for Apache OpenWhisk | Systems running Apache OpenWhisk.
|
27 Jul 2018 | STAT30 | |
|
26 Jul 2018 | VULN248 | Xen : Linux Uninitialized state in PV syscall return path | 64-bit x86 PV Linux systems.
|
25 Jul 2018 | VULN247 | Google Chrome : Chrome 68.0.3440.75 fixes security vulnerabilities | Systems running Google Chrome versions prior to
|
24 Jul 2018 | VULN246 | Atlassian Sourcetree : Sourcetree - Remote Code Execution vulnerabilities - CVE-2018-11235 | Systems running Sourcetree versions prior to
|
24 Jul 2018 | VULN245 | Apache TomEE : CVE-2018-8031 Apache TomEE Webapp XSS | Systems running Apache TomEE versions prior to
|
24 Jul 2018 | VULN244 | US-CERT : Bluetooth implementations may not sufficiently validate elliptic curve parameters during Diffie-Hellman key exchange | Systems running Bluetooth implementations.
|
24 Jul 2018 | VULN243 | Apache Tomcat : Apache Tomcat multiple Vulnerabilities | Systems running Apache Tomcat versions prior to
|
20 Jul 2018 | STAT29 | |
|
20 Jul 2018 | VULN242 | GitLab : Remote Code Execution Vulnerability in GitLab Projects Import | Systems running GitLab versions prior to 11.0.4,
|
20 Jul 2018 | VULN241 | Apache Ignite : Apache Ignite security issues | Systems running Apache Ignite versions prior to
|
20 Jul 2018 | VULN240 | VMware : VMware Horizon View Agent, VMware ESXi, Workstation, and Fusion updates resolve multiple security issues | Systems running VMware Horizon View Agent,
|
19 Jul 2018 | VULN239 | Apache Ambari : CVE-2018-8042 Passwords for Hadoop credential stores are visible in Ambari Agent standard out | Systems running Apache Ambari versions 2.5.x, 2.6.x
|
19 Jul 2018 | VULN238 | Jenkins : Jenkins Security Advisory 2018-07-18 | Systems running Jenkins weekly versions prior to
|
19 Jul 2018 | VULN237 | Cisco : Cisco Webex Network Recording Players Remote Code Execution Vulnerabilities | Systems running Webex Network Recording Player,
|
19 Jul 2018 | VULN236 | Cisco : Cisco Policy Suite Policy multiple Unauthenticated Access and Default Password vulnerabilities | Systems running Cisco Policy Suite Policy versions
|
19 Jul 2018 | VULN235 | Cisco : Cisco Nexus 9000 Series Fabric Switches Application-Centric Infrastructure Mode DHCP Version 6 Denial of Service Vulnerability | NX-OS Software.
|
19 Jul 2018 | VULN234 | Cisco : Cisco SD-WAN multiple security vulnerabilities | Cisco SD-WAN software versions prior to 18.3.0.
|
18 Jul 2018 | VULN232 | Oracle : July 2018 Critical Patch Update Released | Systems running Oracle Database Server,
|
18 Jul 2018 | VULN233 | Apache HTTP : Apache HTTP Server 2.4.34 fix security vulnerabilities | Systems running Apache HTTP versions prior to
|
18 Jul 2018 | VULN231 | WordPress : WordPress 4.9.7 Security and Maintenance Release | Systems running WordPress versions prior to 4.9.7.
|
13 Jul 2018 | STAT28 | |
|
13 Jul 2018 | VULN230 | ISC : CVE-2018-5739 ISC Kea 1.4.0 failure to release memory may exhaust system resources | Systems running ISC Kea versions prior to 1.4.0-P1.
|
13 Jul 2018 | VULN229 | Apache Spark : Apache Spark XSS and local privilege escalation Vulnerabilities | Systems running Apache Spark versions prior to
|
13 Jul 2018 | VULN228 | VMware : VMware Tools update addresses an out-of-bounds read vulnerability | Systems running VMware Tools versions prior to
|
12 Jul 2018 | VULN227 | Cisco : Cisco StarOS IPv4 Fragmentation Denial of Service Vulnerability | Cisco StarOS versions prior to N5.1.11 (21.6.5),
|
12 Jul 2018 | VULN226 | Cisco : Cisco IP Phone 6800, 7800, and 8800 Series with Multiplatform Firmware Web UI Command Injection Vulnerability | Cisco IP Phone 6800, 7800, 8800 Series firmware
|
11 Jul 2018 | VULN222 | Project curl : SMTP send heap buffer overflow | Systems running curl versions 7.54.1 up to and
|
11 Jul 2018 | VULN225 | Apache Solr : CVE-2018-8026 XXE vulnerability due to Apache Solr configset upload | Systems running Apache Solr versions prior to
|
11 Jul 2018 | VULN223 | Apache CouchDB : CVE-2018-8007 Apache CouchDB administrative privilege escalation | Systems running Apache CouchDB versions prior to
|
11 Jul 2018 | VULN224 | Adobe : Security updates available for Flash Player APSB18-24 | Systems running Flash Player versions prior to
|
11 Jul 2018 | VULN221 | Microsoft : Microsoft Security Update Summary for July 10, 2018 | Windows versions 7, 8.1, RT 8.1, 10,
|
10 Jul 2018 | VULN220 | APPLE : APPLE-SA-2018-7-9-4 macOS High Sierra 10.13.6, Security Update,2018-004 Sierra, Security Update 2018-004 El Capitan | macOS versions prior to 10.13.6.
|
10 Jul 2018 | VULN219 | APPLE : APPLE-SA-2018-7-9-1 iOS 11.4.1 | iOS versions prior to 11.4.1.
|
10 Jul 2018 | VULN218 | APPLE : APPLE-SA-2018-7-9-5 Safari 11.1.2 | Systems running Safari versions prior to 11.1.2.
|
6 Jul 2018 | STAT27 | |
|
29 Jun 2018 | STAT26 | |
|
29 Jun 2018 | VULN215 | Citrix : CTX235748 Citrix XenServer Multiple Security Updates | Systems running Citrix XenServer versions 7.5, 7.4,
|
29 Jun 2018 | VULN216 | Apache CXF : CVE-2018-8039: Apache CXF TLS hostname verification does not work correctly,with com.sun.net.ssl.* | Systems running Apache CXF versions prior to 3.2.5,
|
29 Jun 2018 | VULN217 | VMware : VMware ESXi, Workstation, and Fusion updates address, multiple out-of-bounds read vulnerabilities | Systems running VMware ESXi, VMware Workstation,
|
28 Jun 2018 | VULN214 | Xen : Multiple vulnerabilities fixed in Xen | Systems running Xen versions from 3.4 onwards.
|
26 Jun 2018 | VULN213 | Jenkins : Jenkins Security Advisory 2018-06-25 | Systems running AWS CodeBuild Plugin for Jenkins,
|
22 Jun 2018 | STAT25 | |
|
21 Jun 2018 | VULN212 | WebKitGTK+ and WPE WebKit : WebKitGTK+ and WPE WebKit Security Advisory WSA-2018-0005 | Systems running WebKitGTK+, WPE WebKit.
|
21 Jun 2018 | VULN211 | Cisco : Multiple vulnerabilities fixed in Cisco NX-OS, Cisco FXOS | Cisco NX-OS, Cisco FXOS.
|
15 Jun 2018 | STAT24 | |
|
13 Jun 2018 | VULN207 | ( OpenSSL : Client DoS due to large DH parameter (CVE-2018-0732)) | Systems running OpenSSL versions prior to 1.1.0i,
|
13 Jun 2018 | VULN208 | Apache Geode : CVE-2017-15695 Apache Geode remote code execution vulnerability | Systems running Apache Geode versions prior to
|
13 Jun 2018 | VULN210 | Microsoft : Microsoft Security Update Summary for June 12, 2018, Security advisories and revisions | Windows versions 7, 8.1, RT 8.1, 10,
|
13 Jun 2018 | VULN209 | Bind : CVE-2018-5738: Some versions of BIND can improperly permit recursive query service to unauthorized clients | Systems running BIND versions prior to 9.9.13,
|
13 Jun 2018 | VULN206 | Asterisk : Vulnerabilities fixed in Asterisk | Systems running Asterisk Open Source
|
12 Jun 2018 | VULN205 | VMware : VMware AirWatch Agent updates resolve remote code execution vulnerability | Systems running VMware AirWatch Agent.
|
8 Jun 2018 | VULN200 | APPLE : APPLE-SA-2018-06-01-1 macOS High Sierra 10.13.5, Security Update 2018-003 Sierra, Security Update 2018-003 El Capitan | Systems running macOS versions prior to
|
8 Jun 2018 | VULN203 | APPLE : APPLE-SA-2018-06-01-3 iCloud for Windows 7.5 | Windows running iCloud versions prior to
|
8 Jun 2018 | VULN201 | APPLE : APPLE-SA-2018-06-01-4 iOS 11.4 | iOS versions prior to 11.4.
|
8 Jun 2018 | VULN204 | APPLE : APPLE-SA-2018-06-01-5 watchOS 4.3.1 | watchOS versions prior to 4.3.1.
|
8 Jun 2018 | VULN202 | APPLE-SA-2018-06-01-2 Safari 11.1.1 | Systems running Safari versions prior to 11.1.1.
|
8 Jun 2018 | STAT23 | |
|
7 Jun 2018 | VULN193.1 | Cisco : Cisco Prime Collaboration Provisioning Multiple Vulnerabilities | Systems running Cisco Prime Collaboration
|
7 Jun 2018 | VULN192.2 | Cisco : Cisco IOS XE Software Authentication, Authorization, and Accounting Login Authentication Remote Code Execution Vulnerability | Â Cisco IOS XE Software .
|
7 Jun 2018 | VULN195.1 | Cisco : Cisco Adaptive Security Appliance Web Services Denial of Service Vulnerability | Systems running Cisco Adaptive Security
|
7 Jun 2018 | VULN199.1 | Cisco : Cisco IP Phone 6800, 7800, and 8800 Series with Multiplatform Firmware Session Initiation Protocol Denial of Service Vulnerability | Cisco IP Phone software with Multiplatform
|
7 Jun 2018 | VULN198.1 | Cisco : Multiple Cisco Products Disk Utilization Denial of Service Vulnerability | Cisco .
|
7 Jun 2018 | VULN197.1 | Cisco : Cisco Web Security Appliance Layer 4 Traffic Monitor Security Bypass Vulnerability | Systems running Cisco Web Security
|
7 Jun 2018 | VULN196.1 | Cisco : Cisco Meeting Server Information Disclosure Vulnerability | Systems running Cisco Meeting Server.
|
7 Jun 2018 | VULN194.1 | Cisco : Cisco Network Services Orchestrator Arbitrary Command Execution Vulnerability | Systems running Cisco Network Services
|
1 Jun 2018 | STAT22 | |
|
30 May 2018 | VULN198 | Git : Git fixes Remote Code Execution Vulnerability | Systems running Git versions prior to 2.17.1,
|
30 May 2018 | VULN199 | GitLab : GitLab Security Release 10.8.2, 10.7.5, and 10.6.6 | Systems running GitLab versions prior to 10.8.2,
|
30 May 2018 | VULN197 | VMware : VMware Horizon Client update addresses a privilege escalation vulnerability | Systems running VMware Horizon Client versions
|
25 May 2018 | STAT21 | |
|
23 May 2018 | VULN196 | VMware : VMware Workstation and Fusion updates address signature bypass and multiple denial-of-service vulnerabilities | Systems running VMware Workstation versions
|
22 May 2018 | VULN195 | Shibboleth IdP : Shibboleth Identity Provider Security Advisory [16 May 2018] | Systems running Shibboleth Identity Provider
|
22 May 2018 | VULN194 | Project curl : buffer overflow and buffer over-read vulnerabilities fixed in curl 7.60.0 | Systems running curl versions prior to 7.60.0.
|
22 May 2018 | VULN193 | Mozilla Thunderbird : Security vulnerabilities fixed in Thunderbird 52.8 | Systems running Thunderbird versions prior to 52.8.
|
22 May 2018 | VULN192.1 | Apache Solr : CVE-2018-8010 XXE vulnerability due to Apache Solr configset upload | Systems running Apache Solr versions 6, 7 prior to
|
22 May 2018 | VULN192 | Apache Solr : CVE-2018-8010 XXE vulnerability due to Apache Solr configset upload | Systems running Apache Solr versions 6, 7 prior to
|
22 May 2018 | VULN191 | ISC BIND : BIND 9.12 Vulnerabilities can cause assertion failures in rbtdb.c | Systems running Bind versions 9.12.0,
|
22 May 2018 | VULN190 | Cisco : CPU Side-Channel Information Disclosure Vulnerabilities: May 2018 | Systems running Cisco Software.
|
18 May 2018 | STAT20 | |
|
17 May 2018 | VULN189 | Cisco : Cisco Meeting Server Media Services Denial of Service Vulnerability | Systems running Cisco Meeting Server Software
|
17 May 2018 | VULN188 | Cisco : Cisco Enterprise NFV Infrastructure Software Linux Shell Access Vulnerability | Systems running Cisco Enterprise NFV Infrastructure
|
17 May 2018 | VULN187 | Cisco : Cisco IoT Field Network Director Cross-Site Request Forgery Vulnerability | Systems running Connected Grid Network Management
|
17 May 2018 | VULN186 | Cisco : Cisco Digital Network Architecture Center Vulnerabilities | Systems running Cisco Digital Network Architecture
|
17 May 2018 | VULN185 | Cisco : Cisco Identity Services Engine EAP TLS Certificate Denial of Service Vulnerability | Systems running Cisco Identity Services Engine
|
11 May 2018 | STAT19 | |
|
9 May 2018 | VULN184 | Microsoft : Microsoft Security Update Summary for May 08, 2018 | Windows
|
4 May 2018 | STAT18 | |
|
3 May 2018 | VULN181 | Cisco : Cisco Prime File Upload Servlet Path Traversal and Remote Code Execution Vulnerability | Systems running Cisco Prime Data Center Network
|
3 May 2018 | VULN182 | Cisco : Cisco Meeting Server Remote Code Execution Vulnerability | Systems running Cisco Meeting Server software
|
3 May 2018 | VULN183 | Cisco : Cisco WebEx Advanced Recording Format Remote Code Execution Vulnerability | Systems running Cisco WebEx Network Recording
|
3 May 2018 | VULN180 | Cisco : Cisco Secure Access Control System Remote Code Execution Vulnerability | Cisco Secure ACS versions prior to 5.8 Patch 7.
|
3 May 2018 | VULN179 | Cisco : Cisco Wireless LAN Controller Denial of Service vulnerabilities | Cisco Wireless LAN Controller software.
|
3 May 2018 | VULN178 | Cisco : Cisco Aironet Series Access Points Vulnerabilities | Cisco Aironet Series Access Point software.
|
2 May 2018 | VULN177 | Apache Hadoop : CVE-2016-6811 Apache Hadoop Privilege escalation vulnerability | Systems running Apache Hadoop versions from 2.2.0
|
30 Apr 2018 | VULN176 | QNAP : Security Advisory for XSS Vulnerabiltiy in QTS | Systems running QTS versions prior to 4.3.3 build
|
27 Apr 2018 | STAT17 | |
|
27 Apr 2018 | VULN175 | Apache UIMA : Apache UIMA XML external entity expansion (XXE) attack exposure | Systems running Apache UIMA.
|
26 Apr 2018 | VULN174 | Apache Tika : Multiple vulnerabilities fixed in Apache Tika | Systems running Apache Tika versions prior to 1.18.
|
26 Apr 2018 | VULN173 | Drupal : Vulnerabilities fixed in Multiple modules for Drupal | Systems running JSON API for Drupal versions prior
|
26 Apr 2018 | VULN172 | Drupal core : Highly critical - Remote Code Execution - SA-CORE-2018-004 | Systems running Drupal core versions prior to
|
25 Apr 2018 | VULN171 | Xen : Information leak and possible DoS vulnerabilities fixed | Systems running Xen.
|
25 Apr 2018 | VULN170 | APPLE : APPLE-SA-2018-04-24-3 Safari 11.1 | Systems running Safari versions 11.1.
|
25 Apr 2018 | VULN169 | APPLE : APPLE-SA-2018-04-24-2 Security Update 2018-001 | macOS versions prior to 10.13.4.
|
25 Apr 2018 | VULN168 | APPLE : APPLE-SA-2018-04-24-1 iOS 11.3.1 | iOS versions prior to 11.3.1.
|
20 Apr 2018 | STAT16 | |
|
20 Apr 2018 | VULN167 | Drupal : Moderately critical - Cross Site Scripting - SA-CORE-2018-003 | Systems running Drupal core versions prior to
|
20 Apr 2018 | VULN166 | VMware : Horizon DaaS update addresses a broken authentication, issue | Systems running VMware Horizon DaaS versions from
|
20 Apr 2018 | VULN165 | phpmyadmin : CSRF vulnerability allowing arbitrary SQL execution | Systems running phpmyadmin versions 4.8 prior to
|
19 Apr 2018 | VULN164 | Sympa : 2018-001 Security flaws in template editing | Systems running Sympa versions prior to 6.2.32.
|
19 Apr 2018 | VULN163 | Cisco : Cisco Firepower 2100 Series Security Appliances IP Fragmentation Denial of Service Vulnerability | Cisco Firepower Threat Defense (FTD) Software.
|
19 Apr 2018 | VULN162 | Google Chrome : April 2018 Critical Patch Update Released | Systems running Google Chrome versions prior to
|
19 Apr 2018 | VULN161 | Oracle : April 2018 Critical Patch Update Released | Systems running Oracle Database Server,
|
19 Apr 2018 | VULN160 | Squid : Denial of Service issue in ESI Response processing | Systems running Squid versions 3, 4 prior to
|
19 Apr 2018 | VULN159 | Cisco : Cisco Adaptive Security Appliance Application Layer Protocol Inspection Denial of Service Vulnerabilities | Cisco ASA Software, Cisco FTD Software.
|
19 Apr 2018 | VULN157 | Cisco : Cisco StarOS Interface Forwarding Denial of Service Vulnerability | Cisco StarOS.
|
19 Apr 2018 | VULN152 | Cisco : Cisco Firepower Detection Engine Secure Sockets Layer Denial of Service Vulnerability | Systems running Cisco Firepower System Software.
|
19 Apr 2018 | VULN153 | Cisco : Cisco Adaptive Security Appliance Flow Creation Denial of Service Vulnerability | Cisco Adaptive Security Appliance (ASA) Software,
|
19 Apr 2018 | VULN158 | Cisco : Cisco Adaptive Security Appliance TLS Denial of Service Vulnerability | Cisco ASA Software, Cisco FTD Software.
|
19 Apr 2018 | VULN155 | Cisco : Cisco ASA Software, FTD Software, and AnyConnect Secure Mobility Client SAML Authentication Session Fixation Vulnerability | Systems running Cisco AnyConnect Secure Mobility
|
19 Apr 2018 | VULN156 | Cisco : Cisco UCS Director Virtual Machine Information Disclosure Vulnerability for End User Portal | Systems running Cisco Unified Computing System
|
19 Apr 2018 | VULN154 | Cisco : Cisco Adaptive Security Appliance Virtual Private Network SSL Client Certificate Bypass Vulnerability | Cisco Adaptive Security Appliance software,
|
19 Apr 2018 | VULN151 | Cisco : Cisco IOS XR Software UDP Broadcast Forwarding Denial of Service Vulnerability | Cisco IOS XR.
|
19 Apr 2018 | VULN150 | Cisco : Cisco Wireless LAN Controller Default Simple Network Management Protocol Community Strings | Cisco Wireless LAN Controller Software.
|
19 Apr 2018 | VULN149 | Cisco : Cisco WebEx Clients Remote Code Execution Vulnerability | Systems running Cisco WebEx Clients.
|
17 Apr 2018 | VULN148 | (OpenSSL : Cache timing vulnerability in RSA Key Generation (CVE-2018-0737)) | Systems running OpenSSL versions prior to 1.1.0i,
|
17 Apr 2018 | VULN147 | Jenkins : Jenkins Security Advisory 2018-04-16 | Systems running Email Extension Plugin for Jenkins,
|
13 Apr 2018 | VULN146 | VMware : VMSA-2018-0009 vRealize Automation updates address multiple security issues | Systems running vRealize Automation (vRA)
|
13 Apr 2018 | STAT15 | |
|
12 Apr 2018 | VULN145 | Apache : CVE-2018-1308 XXE attack through Apache Solr's DIH's dataConfig request parameter | Systems running Apache Solr versions prior to
|
12 Apr 2018 | VULN144 | (Juniper : Junos OS: Kernel crash upon receipt of crafted CLNP packets (CVE-2018-0016)) | Junos OS versions 15.1, 15.1X49, 15.1X53.
|
11 Apr 2018 | VULN143 | Jenkins : Jenkins Security Advisory 2018-04-11 | Systems running Jenkins versions weekly 2.116, LTS
|
11 Apr 2018 | VULN142 | Adobe : Security updates available for Flash Player APSB18-08 | Systems running Adobe Experience Manager versions
|
11 Apr 2018 | VULN141 | Adobe : Security Updates Available for Adobe Digital Editions APSB18-13 | Systems running Adobe Digital Editions versions
|
11 Apr 2018 | VULN140 | Adobe : Security Update Available for InDesign APSB18-11 | Systems running Adobe InDesign versions prior to
|
11 Apr 2018 | VULN139 | Adobe : Security updates available for ColdFusion APSB18-14 | Systems running Adobe ColdFusion versions 11, 2016
|
11 Apr 2018 | VULN138 | Adobe : Security updates available for Flash Player APSB18-08 | Systems running Adobe Flash Player versions prior
|
11 Apr 2018 | VULN137 | Microsoft : Microsoft Security Update Summary for April 10, 2018 | Windows versions 7, 8.1, RT 8.1, 10,
|
10 Apr 2018 | VULN136 | Cisco : Action Required to Secure the Cisco IOS and IOS XE Smart Install Feature | Cisco IOS, Cisco IOS XE running Smart Install
|
6 Apr 2018 | STAT14 | |
|
5 Apr 2018 | VULN135 | WebKitGTK+ : WebKitGTK+ Security Advisory WSA-2018-0003 | Systems running WebKitGTK+ versions prior to
|
5 Apr 2018 | VULN134 | Microsoft : Microsoft Malware Protection Engine Remote Code Execution Vulnerability Security Vulnerability | Systems running Microsoft Malware Protection
|
4 Apr 2018 | VULN133 | Apache Ignite : CVE-2018-1295 Possible Execution of Arbitrary Code Within,Deserialization Endpoints of Apache Ignite | Systems running Apache Ignite versions prior to
|
4 Apr 2018 | VULN131 | Wireshark : Multiple Security Vulnerabilities fixed in Wireshark | Systems running wireshark versions 2.2, 2.4 prior
|
4 Apr 2018 | VULN132 | Cacti : Cacti 1.1.37 fixes Path-Based Cross-Site Scripting issues | Systems running Cacti versions prior to 1.1.37.
|
4 Apr 2018 | VULN130 | WordPress : WordPress 4.9.5 Security and Maintenance Release | Systems running WordPress versions prior to 4.9.5.
|
3 Apr 2018 | VULN129 | APPLE : APPLE-SA-2018-3-29-8 iCloud for Windows 7.4 | Windows running iCloud versions prior to 7.4.
|
3 Apr 2018 | VULN125 | Microsoft : Windows Kernel Elevation of Privilege Vulnerability Security Vulnerability | Windows versions 7, Server 2008.
|
3 Apr 2018 | VULN128 | APPLE : APPLE-SA-2018-3-29-7 iTunes 12.7.4 for Windows | Windows running iTunes versions prior to 12.7.4.
|
3 Apr 2018 | VULN127 | APPLE : APPLE-SA-2018-3-29-6 Safari 11.1 | Systems running Safari versions prior to 11.1.
|
3 Apr 2018 | VULN126 | APPLE : APPLE-SA-2018-3-29-5 macOS High Sierra 10.13.4, Security Update 2018-002 Sierra, and Security Update 2018-002 El Capitan | macOS versions prior to High Sierra 10.13.4.
|
30 Mar 2018 | STAT13 | |
|
30 Mar 2018 | VULN124 | APPLE : APPLE-SA-2018-3-29-4 Xcode 9.3 | Systems running Xcode versions prior to 9.3.
|
30 Mar 2018 | VULN123 | APPLE : APPLE-SA-2018-3-29-3 tvOS 11.3 | tvOS versions prior to 11.3.
|
30 Mar 2018 | VULN122 | APPLE : APPLE-SA-2018-3-29-2 watchOS 4.3 | watchOS versions prior to 4.3.
|
30 Mar 2018 | VULN121 | APPLE : APPLE-SA-2018-3-29-1 iOS 11.3 | iOS versions prior to 11.3.
|
29 Mar 2018 | VULN120 | Drupal : Drupal core - Highly critical - Remote Code Execution - SA-CORE-2018-002 | Systems running Drupal versions 6, 7.x, 8.x prior
|
29 Mar 2018 | VULN119 | Cisco : Multiple Vulnerabilities fixed in Cisco IOS, Cisco IOS XE | Cisco IOS, Cisco IOS XE.
|
28 Mar 2018 | VULN118 | Moodle : Vulnerabilities fixed in Moodle | Systems running Moodle versions 3 prior to 3.4.2,
|
28 Mar 2018 | VULN114 | Mozilla Firefox : Use-after-free in compositor | Systems running Firefox versions prior to 59.0.2,
|
28 Mar 2018 | VULN117 | OpenSSL : OpenSSL Security Advisory [27 Mar 2018] | Systems running OpenSSL versions 1.1.0, 1.0.2
|
28 Mar 2018 | VULN116 | Apache Struts : A crafted XML request can be used to perform a DoS attack when using the Struts REST plugin | Systems running Apache Struts versions 2.1.1 up to
|
28 Mar 2018 | VULN115 | Jenkins : Jenkins Security Advisory 2018-03-26 | Systems running Ansible Plugin for Jenkins,
|
28 Mar 2018 | VULN113 | Apache : Apache HTTP Server 2.4.33 security Release | Systems running Apache HTTP Server versions prior
|
14 Mar 2018 | VULN099 | Project curl : Out of bounds write, NULL pointer dereference and buffer over-read vulnerabilities | Systems running curl versions 7.20.0 up to and
|
14 Mar 2018 | VULN098 | Adobe : Security updates available for Flash Player | APSB18-05 | Systems running Flash Player versions prior to
|
16 Mar 2018 | VULN104 | VMware : Workstation and Fusion updates address a denial-of-service vulnerability | Systems running VMware Workstation versions 14.x,
|
23 Mar 2018 | STAT12 | |
|
23 Mar 2018 | VULN112 | Atlassian : Bitbucket Server - Remote Code Execution via in Browser Editing - CVE-2018-5225 | Systems running Atlassian Bitbucket Server
|
22 Mar 2018 | VULN111 | Citrix : Citrix XenServer Multiple Security Updates | Systems running Citrix XenServer versions 7.x
|
22 Mar 2018 | VULN110 | Drupal : Drupal 7 and 8 core highly critical release on March 28th, 2018 PSA-2018-001 | Systems running Drupal versions 7.x, 8.x.
|
20 Mar 2018 | VULN109 | Dell EMC : DSA-2018-037 Dell EMC NetWorker Buffer Overflow Vulnerability | Systems running Dell EMC NetWorker versions prior
|
20 Mar 2018 | VULN108 | Kamailio : Kamailio security announcement for the tmx and lcr modules | Systems running Kamailio versions prior to 4.4.7,
|
20 Mar 2018 | VULN106 | Apache : CVE-2018-1324 Apache Commons Compress denial of service vulnerability | Systems running Apache Commons Compress versions
|
20 Mar 2018 | VULN105 | Mozilla : Out of bounds memory write while processing Vorbis audio data | Systems running Firefox versions prior to 59.0.1,
|
20 Mar 2018 | VULN107 | US-CERT : Bouncy Castle BKS-V1 keystore files vulnerable to trivial hash collisions | Systems running Legion of the Bouncy Castle.
|
16 Mar 2018 | STAT11 | |
|
14 Mar 2018 | VULN103 | Mozilla : Critical security vulnerabilities fixed in Firefox 59 and ESR 52.7 | Systems running Firefox versions prior to 59,
|
14 Mar 2018 | VULN102 | Joomla! : Core - SQLi vulnerability User Notes | Systems running Joomla! versions 3.5.0 up to and
|
14 Mar 2018 | VULN101 | Adobe : Security updates available for Adobe Connect | APSB18-06 | Systems running Adobe Connect versions prior to
|
14 Mar 2018 | VULN100 | Adobe : Security update available for Adobe Dreamweaver CC | APSB18-07 | Systems running Adobe Dreamweaver CC versions
|
14 Mar 2018 | VULN097 | Samba : DoS and Arbitrary password modification vulnerabilities fixed | Systems running Samba versions 4 prior to 4.7.6,
|
14 Mar 2018 | VULN096 | Microsoft : Microsoft Security Update Summary for March 13, 2018 | Windows versions 7, 8.1, RT 8.1, 10,
|
13 Mar 2018 | VULN095 | Apache Tomcat : CVE-2018-1323 Apache Tomcat JK ISAPI Connector path traversal | Systems running Apache Tomcat JK ISAPI Connector
|
9 Mar 2018 | STAT10 | |
|
8 Mar 2018 | VULN094 | Cisco : Cisco Secure Access Control System Java Deserialization Vulnerability | Cisco Secure ACS versions prior to 5.8 patch 9.
|
8 Mar 2018 | VULN093 | Cisco : Cisco Prime Collaboration Provisioning Hard-Coded Password Vulnerability | Systems running Cisco Prime Collaboration
|
8 Mar 2018 | VULN092 | Cisco : Cisco Web Security Appliance FTP Authentication Bypass Vulnerability | Cisco AsyncOS for Cisco Web Security Appliance
|
7 Mar 2018 | VULN091 | Google Chrome : Chrome 65.0.3325.146 includes 45 security fixes | Systems running Google Chrome versions prior to
|
7 Mar 2018 | VULN090 | Django : Django security releases issued 2.0.3, 1.11.11, and 1.8.19 | Systems running Django versions prior to 2.0.3,
|
7 Mar 2018 | VULN089 | PostgreSQL : PostgreSQL 10.3, 9.6.8, 9.5.12, 9.4.17, and 9.3.22 2018-03-01 Security Update Release | Systems running PostgreSQL versions up to and
|
2 Mar 2018 | STAT09 | |
|
2 Mar 2018 | VULN088 | NTP : February 2018 ntp-4.2.8p11 NTP Security Vulnerability Announcement | Systems running ntp versions prior to 4.2.8p11.
|
1 Mar 2018 | VULN087 | Apache Xerces-C XML Parser : Apache Xerces-C DTD vulnerability processing external paths | Systems running Apache Xerces-C XML Parser library
|
1 Mar 2018 | VULN086 | Citrix : Authentication Bypass Vulnerability in Citrix NetScaler Application Delivery Controller (ADC) and NetScaler Gateway | Systems running Citrix NetScaler Application
|
1 Mar 2018 | VULN085 | ISC BIND : A malformed request can trigger an assertion failure in badcache.c | Systems running ISC BIND versions 9.10.5-S1 to
|
1 Mar 2018 | VULN084 | ISC DHCP : buffer overflow and reference counter overflow fixed | Systems running ISC DHCP versions 4 prior to
|
28 Feb 2018 | VULN083 | US-CERT : Multiple SAML libraries may allow authentication bypass via incorrect XML canonicalization and DOM traversal | Systems running SAML libraries.
|
28 Feb 2018 | VULN082 | Xen : Patches available for several DoS vulnerabilities | Systems running Xen.
|
28 Feb 2018 | VULN081 | Shibboleth SP : Shibboleth Project's XMLTooling library critical security issue | Systems running XMLTooling-C library versions
|
27 Feb 2018 | VULN080 | Wireshark : Multiple dissector and parser crashes fixed in Wireshark | Systems running Wireshark versions 2 prior
|
27 Feb 2018 | VULN079 | Wicket jQuery UI : CVE-2017-15719 - Wicket jQuery UI: XSS in WYSIWYG editor | Systems running Wicket jQuery UI versions prior to
|
27 Feb 2018 | VULN078 | Apache OpenMeetings : CVE-2018-1286 - Apache OpenMeetings - Insufficient Access Controls | Systems running Apache OpenMeetings versions prior
|
27 Feb 2018 | VULN077 | Apache Geode : CVE-2017-15692 Apache Geode unsafe deserialization of application objects and in TcpServer | Systems running Apache Geode versions 1 prior to
|
27 Feb 2018 | VULN076 | Jenkins : Multiple vulnerabilities in various plugins | Systems running Azure Slave Plugin for Jenkins,
|
23 Feb 2018 | STAT08 | |
|
23 Feb 2018 | VULN075 | Asterisk : Multiple Denial of Service vulnerabilities fixed | Systems running Asterisk Asterisk Open Source
|
23 Feb 2018 | VULN074 | Drupal core : Critical - Multiple Vulnerabilities - SA-CORE-2018-001 | Systems running Drupal core versions 7, 8 prior to
|
23 Feb 2018 | VULN073 | Apache Geode : CVE-2017-15696 Apache Geode configuration request authorization vulnerability | Systems running Apache Geode versions 1 prior to
|
23 Feb 2018 | VULN071 | Micro Focus : CVE-2018-6488 Micro Focus Universal CMDB Arbitrary Code Execution Vulnerabillity | Systems running Micro Focus Universal CMDB
|
23 Feb 2018 | VULN072 | McAfee : ePolicy Orchestrator update fixes multiple Java vulnerabilities | Systems running McAfee ePolicy Orchestrator
|
23 Feb 2018 | VULN070 | Apache Tomcat : CVE-2018-1304 and CVE-2018-1305 vulnerabilities fixed | Systems running Apache Tomcat versions prior to
|
22 Feb 2018 | VULN069 | LibreOffice : CVE-2018-6871 Remote arbitrary file disclosure vulnerability via WEBSERVICE formula | Systems running LibreOffice versions prior to
|
22 Feb 2018 | VULN068 | Cisco : Cisco Unified Customer Voice Portal Interactive Voice Response Connection Denial of Service Vulnerability | Systems running Cisco Unified Customer Voice
|
22 Feb 2018 | VULN067 | Cisco : Cisco Unified Communications Domain Manager Remote Code Execution Vulnerability | Systems running Cisco Unified Communications
|
22 Feb 2018 | VULN066 | Cisco : Cisco Elastic Services Controller Service Portal Vulnerabilities | Systems running Cisco Elastic Services Controller
|
22 Feb 2018 | VULN065 | phpMyAdmin : self-cross site scripting (XSS) vulnerability fixed | Systems running phpMyAdmin version 4.7.x prior to
|
20 Feb 2018 | VULN064 | Ubuntu : USN-3574-1: Bind vulnerability | Ubuntu versions 12.04 LTS running Bind version 9.
|
20 Feb 2018 | VULN061 | Ruby : Multiple vulnerabilities in RubyGems | Systems running RubyGems versions prior to 2.7.6.
|
20 Feb 2018 | VULN063 | APPLE : APPLE-SA-2018-02-19-3 tvOS 11.2.6 | tvOS versions prior to 11.2.6.
|
20 Feb 2018 | VULN062 | Bugzilla : 4.4.12 and 5.0.3 Security Advisory | Systems running Bugzilla versions prior to
|
20 Feb 2018 | VULN060 | APPLE : APPLE-SA-2018-02-19-4 watchOS 4.2.3 | watchOS versions prior to 4.2.3.
|
20 Feb 2018 | VULN059 | APPLE : APPLE-SA-2018-02-19-1 iOS 11.2.6 | iOS versions prior to 11.2.6.
|
20 Feb 2018 | VULN058 | APPLE : APPLE-SA-2018-02-19-2 macOS High Sierra 10.13.3 Supplemental Update | macOS X versions up to and including 10.13.3.
|
19 Feb 2018 | VULN057 | Apache Oozie : [CVE-2017-15712] Apache Oozie Server vulnerability | Systems running Apache Oozie versions prior to
|
19 Feb 2018 | VULN056 | Quagga : Quagga Security Note 2018-1114 | Systems running Quagga versions prior to 1.2.3.
|
16 Feb 2018 | STAT07 | |
|
15 Feb 2018 | VULN055 | Jenkins : Jenkins Security Advisory 2018-02-14 | Systems running Jenkins versions prior to 2.107,
|
14 Feb 2018 | VULN054 | Adobe : Security updates available for Adobe Experience Manager APSB18-04 | Systems running Adobe Experience Manager versions
|
14 Feb 2018 | VULN053 | Adobe : Security updates available for Adobe Acrobat and Reader | APSB18-02 | Windows, Mac OS X running Adobe Acrobat versions
|
14 Feb 2018 | VULN052 | Microsoft : Microsoft Security Update Summary for February 13, 2018 | Windows versions 7, 8.1, RT 8.1, 10,
|
13 Feb 2018 | VULN051 | Atlassian : Sourcetree - Various vulnerabilities - CVE-2017-14592, CVE-2017-14593, CVE-2017-17458 | Systems running Atlassian Sourcetree for macOS
|
13 Feb 2018 | VULN050 | Rsync : rsync 3.1.3 fixes vulnerability | Systems running rsync versions prior to 3.1.3.
|
13 Feb 2018 | VULN049 | Jenkins : Jenkins Security Advisory 2018-02-05 | Systems running Android Lint Plugin for Jenkins,
|
12 Feb 2018 | VULN048 | Django : Django security releases issued: 2.0.2 and 1.11.10 | Systems running Django versions prior to 2.0.2,
|
12 Feb 2018 | VULN047 | PostgreSQL : 2018-02-08 Security Update Release | Systems running PostgreSQL versions prior to 10.2,
|
12 Feb 2018 | VULN046 | Mailman : Mailman 2.1.26 Security release Feb 4, 2018 | Systems running Mailman versions prior to 2.1.26.
|
12 Feb 2018 | VULN045 | Exim : buffer overflow vulnerability fixed in exim | Systems running exim versions prior to 4.90.1.
|
12 Feb 2018 | VULN044 | VMware : VMware Virtual Appliance updates address side-channel analysis due to speculative execution | Systems running vCloud Usage Meter,
|
12 Feb 2018 | VULN043 | simplesamlphp : simplesamlphp vulnerabilities fixed | Systems running simplesamlphp versions prior to
|
12 Feb 2018 | VULN042 | WordPress : WordPress 4.9.4 fixes severe bug in 4.9.3 security release | Systems running WordPress versions prior to 4.9.4.
|
9 Feb 2018 | STAT06 | |
|
2 Feb 2018 | STAT05 | |
|
30 Jan 2018 | VULN041 | Mozilla : Arbitrary code execution through unsanitized browser UI | Systems running Firefox versions prior to 58.0.1.
|
30 Jan 2018 | VULN040 | Cisco : Cisco Adaptive Security Appliance Remote Code Execution and Denial of Service Vulnerability | Cisco Adaptive Security Appliance Software
|
26 Jan 2018 | STAT04 | |
|
25 Jan 2018 | VULN038 | WebKitGTK+ : WebKitGTK+ Security Advisory WSA-2018-0002 | Systems running WebKitGTK+ versions prior to
|
25 Jan 2018 | VULN039 | Google Chrome : Google Chrome 64.0.3282.119 fixes multiple security vulnerabilities | Systems running Google Chrome versions prior to
|
25 Jan 2018 | VULN037 | APPLE : APPLE-SA-2018-1-23-4 tvOS 11.2.5 | tvOS versions prior to 11.2.5.
|
25 Jan 2018 | VULN036 | APPLE : APPLE-SA-2018-1-23-3 watchOS 4.2.2 | watchOS versions prior to 4.2.2.
|
25 Jan 2018 | VULN035 | APPLE : APPLE-SA-2018-1-23-5 Safari 11.0.3 | Systems running Safari versions prior to 11.0.3.
|
25 Jan 2018 | VULN034 | APPLE : APPLE-SA-2018-1-23-2 macOS High Sierra 10.13.3, Security Update 2018-001 Sierra, and Security Update 2018-001 El Capitan | macOS versions prior to 10.13.3.
|
25 Jan 2018 | VULN033 | APPLE : APPLE-SA-2018-1-23-1 iOS 11.2.5 | iOS versions prior to 11.2.5.
|
25 Jan 2018 | VULN032 | Jenkins : Jenkins Security Advisory 2018-01-22 | Systems running Ant for Jenkins,
|
24 Jan 2018 | VULN031 | curl : vulnerabilities fixed in libcurl version 7.58.0 | Systems running libcurl versions prior to 7.58.0.
|
24 Jan 2018 | VULN030 | Shibboleth : Implications of ROBOT TLS vulnerability | Systems running Shibboleth IdP, Shibboleth SP.
|
22 Jan 2018 | VULN029 | SQUID : Denial of Service issues fixed in SQUID | Systems running Squid versions 3, 4 prior to
|
22 Jan 2018 | VULN028 | unbound : unbound versions 1.6.8 fixes security vulnerability | Systems running unbound versions prior to 1.6.8.
|
22 Jan 2018 | VULN027 | Apache : CVE-2017-15713 Apache Hadoop MapReduce job history server vulnerability | Systems running Apache Hadoop versions prior to
|
19 Jan 2018 | VULN026 | GitLab : GitLab Security Release: 10.3.4, 10.2.6, and 10.1.6 | Systems running GitLab versions prior to 10.3.4,
|
19 Jan 2018 | STAT03 | |
|
18 Jan 2018 | VULN025 | Cisco : Cisco NX-OS Software Pong Packet Denial of Service Vulnerability | Cisco NX-OS Software versions prior to 7.3(0)D1(1).
|
18 Jan 2018 | VULN024 | Cisco : Cisco Email Security and Content Security Management Appliance Privilege Escalation Vulnerability | Cisco NX-OS Software versions prior to 9.8.0-015,
|
18 Jan 2018 | VULN023 | Cisco : Cisco Unified Customer Voice Portal Denial of Service Vulnerability | Cisco AsyncOS ESA Software versions prior to
|
17 Jan 2018 | VULN022 | Wordpress : WordPress 4.9.2 Security and Maintenance Release | Systems running wordpress versions prior to 4.9.2.
|
17 Jan 2018 | VULN021 | ISC : CVE-2017-3144 Failure to properly clean up closed OMAPI connections can exhaust available sockets | Systems running ISC DHCP server.
|
17 Jan 2018 | VULN020 | Oracle : January 2018 Critical Patch Update Released | Systems running Oracle Database Server,
|
17 Jan 2018 | VULN019 | ISC : CVE-2017-3145 Improper fetch cleanup sequencing in the resolver can cause named to crash | Systems running BIND versions 9 prior to 9.9.11-P1,
|
15 Jan 2018 | VULN018 | Shibboleth : Shibboleth SP software vulnerable to forged user attribute data | Systems running XMLTooling-C library versions
|
12 Jan 2018 | STAT02 | |
|
12 Jan 2018 | VULN017 | Wireshark : Multiple dissector and file parser DoS Security vulnerabilities fixed | Systems running Wireshark versions prior to
|
11 Jan 2018 | VULN016 | Adobe : Security updates available for Flash Player APSB18-01 | Systems running Adobe Flash Player versions prior
|
11 Jan 2018 | VULN015 | AWStats : AWStats 7.7 includes Security fix for path traversal vulnerability | Systems running AWStats versions prior to 7.7.
|
11 Jan 2018 | VULN012 | APPLE : APPLE-SA-2018-1-8-3 Safari 11.0.2 | Systems running Safari versions prior to 11.0.2.
|
11 Jan 2018 | VULN014 | WebKitGTK+ : Mitigations for Spectre vulnerabilities introduced in WebKitGTK+ | Systems running WebKitGTK+ versions prior to
|
11 Jan 2018 | VULN013 | APPLE : APPLE-SA-2018-1-8-2 macOS High Sierra 10.13.2 Supplemental Update | macOS High Sierra.
|
11 Jan 2018 | VULN011 | APPLE : APPLE-SA-2018-1-8-1 iOS 11.2.2 | iOS versions prior to 11.2.2.
|
11 Jan 2018 | VULN010 | Microsoft : Microsoft Security Update Summary for January 9, 2018 | Windows running Adobe Flash Player for Windows,
|
11 Jan 2018 | VULN009 | VMware : VMware vSphere, Workstation and Fusion updates add Hypervisor-Assisted Guest Remediation for speculative execution issue | Systems running VMware vCenter Server,
|
11 Jan 2018 | VULN008 | VMware : VMware Workstation, and Fusion updates resolve use-after-free and integer-overflow vulnerabilities | Systems running VMware Workstation versions 12.x,
|
8 Jan 2018 | VULN007 | Cisco : CPU Side-Channel Information Disclosure Vulnerabilities | Cisco software.
|
5 Jan 2018 | STAT01 | |
|
4 Jan 2018 | VULN006 | US-CERT : CPU hardware vulnerable to side-channel attacks | Systems running on various CPU hardware
|
4 Jan 2018 | VULN005 | Microsoft : Microsoft Security Update Summary for January 3, 2018 | Windows versions 7, 8.1, 10, Server 2008,
|
4 Jan 2018 | VULN004 | Xen : Information leak and memory leak vulnerabilities | Systems running Xen.
|
4 Jan 2018 | VULN003 | VMware : VMware ESXi, Workstation and Fusion updates address side-channel analysis due to speculative execution | Systems running VMware vSphere ESXi versions 6.5,
|
3 Jan 2018 | VULN002 | VMware : vSphere Data Protection (VDP) updates address multiple security issues | Systems running VMware vSphere Data Protection
|
3 Jan 2018 | VULN001 | phpMyAdmin : XSRF/CSRF vulnerability in phpMyAdmin | Systems running phpMyAdmin versions 4.7.x
|