LIVE FEED
1531 events · 13 sources · newest first
Events in view
1531
all sources
Critical
1531
severity
Active sources
13
collectors
Last sync
2026-08-30 00:00
UTC
All sources
NVD CVE · 1810CISA KEV · 1686News · 444CISA advisory · 124eCFR · 98DoD CIO CMMC · 21DC3 DCISE · 19DOJ FCA · 16NIST · 15Fed. Register · 14DCSA · 11Cyber AB docs · 10OIRA · 2
2018-01-29
NVD CVE
CVE-2018-0101: A vulnerability in the Secure Sockets Layer (SSL) VPN functionality of the Cisco
CRITICAL
A vulnerability in the Secure Sockets Layer (SSL) VPN functionality of the Cisco Adaptive Security Appliance (ASA) Software could allow an unauthenticated, remote attacker to cause a reload of the affected system or...
2017-10-04
NVD CVE
CVE-2017-12149: In Jboss Application Server as shipped with Red Hat Enterprise Application Platf
CRITICAL
◈ 2 sources · orig. NVD CVE
In Jboss Application Server as shipped with Red Hat Enterprise Application Platform 5.2, it was found that the doFilter method in the ReadOnlyAccessFilter of the HTTP Invoker does not restrict classes for which it...
2017-08-23
NVD CVE
CVE-2017-11357: Progress Telerik UI for ASP.NET AJAX before R2 2017 SP2 does not properly restri
CRITICAL
◈ 2 sources · orig. NVD CVE
Progress Telerik UI for ASP.NET AJAX before R2 2017 SP2 does not properly restrict user input to RadAsyncUpload, which allows remote attackers to perform arbitrary file uploads or execute arbitrary code.
2017-06-29
NVD CVE
CVE-2017-10684: In ncurses 6.0, there is a stack-based buffer overflow in the fmt_entry function
CRITICAL
In ncurses 6.0, there is a stack-based buffer overflow in the fmt_entry function. A crafted input will lead to a remote arbitrary code execution attack.
2017-06-29
NVD CVE
CVE-2017-10685: In ncurses 6.0, there is a format string vulnerability in the fmt_entry function
CRITICAL
In ncurses 6.0, there is a format string vulnerability in the fmt_entry function. A crafted input will lead to a remote arbitrary code execution attack.
2017-05-23
NVD CVE
CVE-2016-9841: inffast.c in zlib 1.2.8 might allow context-dependent attackers to have unspecif
CRITICAL
inffast.c in zlib 1.2.8 might allow context-dependent attackers to have unspecified impact by leveraging improper pointer arithmetic.
2017-04-06
NVD CVE
CVE-2016-8735: Remote code execution is possible with Apache Tomcat before 6.0.48, 7.x before 7
CRITICAL
◈ 2 sources · orig. NVD CVE
Remote code execution is possible with Apache Tomcat before 6.0.48, 7.x before 7.0.73, 8.x before 8.0.39, 8.5.x before 8.5.7, and 9.x before 9.0.0.M12 if JmxRemoteLifecycleListener is used and an attacker can reach...
2016-04-07
NVD CVE
CVE-2016-1019: Adobe Flash Player 21.0.0.197 and earlier allows remote attackers to cause a den
CRITICAL
◈ 2 sources · orig. NVD CVE
Adobe Flash Player 21.0.0.197 and earlier allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via unspecified vectors, as exploited in the wild in April 2016.
2012-08-28
NVD CVE
CVE-2012-4681: Multiple vulnerabilities in the Java Runtime Environment (JRE) component in Orac
CRITICAL
◈ 2 sources · orig. NVD CVE
Multiple vulnerabilities in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 6 and earlier allow remote attackers to execute arbitrary code via a crafted applet that bypasses SecurityManager...
2012-05-03
NVD CVE
CVE-2012-1710: Unspecified vulnerability in the Oracle WebCenter Forms Recognition component in
CRITICAL
◈ 2 sources · orig. NVD CVE
Unspecified vulnerability in the Oracle WebCenter Forms Recognition component in Oracle Fusion Middleware 10.1.3.5 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors...
2010-08-11
NVD CVE
CVE-2010-2861: Multiple directory traversal vulnerabilities in the administrator console in Ado
CRITICAL
◈ 2 sources · orig. NVD CVE
Multiple directory traversal vulnerabilities in the administrator console in Adobe ColdFusion 9.0.1 and earlier allow remote attackers to read arbitrary files via the locale parameter to (1)...