Vulnerabilities
Vulnerable Software
Security Vulnerabilities - CVEs Published In June 2017
The MessageStatusReceiver service in the AndroidManifest.XML in Android 5.1.1 and earlier allows local users to alter sent/received statuses of SMS and MMS messages without the associated "WRITE_SMS" permission.
CVSS Score
5.5
EPSS Score
0.0
Published
2017-06-27
res_query in libresolv in glibc before 2.25 allows remote attackers to cause a denial of service (NULL pointer dereference and process crash).
CVSS Score
7.5
EPSS Score
0.004
Published
2017-06-27
Logstash 1.5.x before 1.5.3 and 1.4.x before 1.4.4 allows remote attackers to read communications between Logstash Forwarder agent and Logstash server.
CVSS Score
7.5
EPSS Score
0.012
Published
2017-06-27
Directory traversal vulnerability in ManageEngine Firewall Analyzer before 8.0.
CVSS Score
6.5
EPSS Score
0.362
Published
2017-06-27
ManageEngine Firewall Analyzer before 8.0 does not restrict access permissions.
CVSS Score
7.5
EPSS Score
0.067
Published
2017-06-27
Samsung Gallery on the Samsung Galaxy S6 allows local users to cause a denial of service (process crash).
CVSS Score
5.5
EPSS Score
0.001
Published
2017-06-27
Samsung Gallery in the Samsung Galaxy S6 allows local users to cause a denial of service (process crash).
CVSS Score
5.5
EPSS Score
0.002
Published
2017-06-27
stalin 0.11-5 allows local users to write to arbitrary files.
CVSS Score
5.5
EPSS Score
0.001
Published
2017-06-27
Use after free vulnerability in Adobe Flash Player Desktop Runtime before 20.0.0.267, Adobe Flash Player Extended Support Release before 18.0.0.324, Adobe Flash Player for Google Chrome before 20.0.0.267, Adobe Flash Player for Microsoft Edge and Internet Explorer 11 before 20.0.0.267, Adobe Flash Player for Internet Explorer 10 and 11 before 20.0.0.267, Adobe Flash Player for Linux before 11.2.202.559, AIR Desktop Runtime before 20.0.0.233, AIR SDK before 20.0.0.233, AIR SDK & Compiler before 20.0.0.233, AIR for Android before 20.0.0.233.
CVSS Score
9.8
EPSS Score
0.01
Published
2017-06-27
The glance-manage db in all versions of HPE Helion Openstack Glance allows deleted image ids to be reassigned, which allows remote authenticated users to cause other users to boot into a modified image without notification of the change.
CVSS Score
8.4
EPSS Score
0.006
Published
2017-06-27


Contact Us

Shodan ® - All rights reserved