CSV
14,736 results for "vulnerability" Page 79
CVE-2018-2893 CRITICAL Exploit

Vulnerability in the Oracle WebLogic Server component of Oracle Fusion Middleware (subcomponent: WLS Core Components). Supported versions that are affected are 10.3.6.0, 12.1.3.0, 12.2.1.2 and 12.2.1.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via T3 to compromise Oracle WebLogic Server. Successful attacks of this vulnerability can result in takeover of Oracle WebLogic Server. CVSS 3.0 Base Score 9.8 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H).

Jul 18, 2018 4 affected product(s) NVD
9.8
CVSS
71.2%
EPSS
⚡ 70.6
CVE-2018-2894 CRITICAL

Vulnerability in the Oracle WebLogic Server component of Oracle Fusion Middleware (subcomponent: WLS - Web Services). Supported versions that are affected are 12.1.3.0, 12.2.1.2 and 12.2.1.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle WebLogic Server. Successful attacks of this vulnerability can result in takeover of Oracle WebLogic Server. CVSS 3.0 Base Score 9.8 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H).

Jul 18, 2018 4 affected product(s) NVD
9.8
CVSS
50.2%
EPSS
⚡ 54.3
CVE-2018-14009 CRITICAL

Codiad through 2.8.4 allows Remote Code Execution, a different vulnerability than CVE-2017-11366 and CVE-2017-15689.

Jul 12, 2018 1 affected product(s) NVD
9.8
CVSS
38.4%
EPSS
⚡ 50.7
CVE-2016-9498 CRITICAL

ManageEngine Applications Manager 12 and 13 before build 13200, allows unserialization of unsafe Java objects. The vulnerability can be exploited by remote user without authentication and it allows to execute remote code compromising the application as well as the operating system. As Application Manager's RMI registry is running with privileges of system administrator, by exploiting this vulnerability an attacker gains highest privileges on the underlying operating system.

Jul 13, 2018 2 affected product(s) NVD
9.8
CVSS
22.0%
EPSS
⚡ 45.8
CVE-2018-8327 CRITICAL

A remote code execution vulnerability exists in PowerShell Editor Services, aka "PowerShell Editor Services Remote Code Execution Vulnerability." This affects PowerShell Editor, PowerShell Extension.

Jul 11, 2018 2 affected product(s) NVD
9.8
CVSS
21.2%
EPSS
⚡ 45.6
CVE-2018-4947 CRITICAL

Adobe Acrobat and Reader versions 2018.011.20038 and earlier, 2017.011.30079 and earlier, and 2015.006.30417 and earlier have a Heap Overflow vulnerability. Successful exploitation could lead to arbitrary code execution in the context of the current user.

Jul 9, 2018 6 affected product(s) NVD
9.8
CVSS
15.6%
EPSS
⚡ 43.9
CVE-2018-4948 CRITICAL

Adobe Acrobat and Reader versions 2018.011.20038 and earlier, 2017.011.30079 and earlier, and 2015.006.30417 and earlier have a Heap Overflow vulnerability. Successful exploitation could lead to arbitrary code execution in the context of the current user.

Jul 9, 2018 6 affected product(s) NVD
9.8
CVSS
15.6%
EPSS
⚡ 43.9
CVE-2018-4966 CRITICAL

Adobe Acrobat and Reader versions 2018.011.20038 and earlier, 2017.011.30079 and earlier, and 2015.006.30417 and earlier have a Heap Overflow vulnerability. Successful exploitation could lead to arbitrary code execution in the context of the current user.

Jul 9, 2018 6 affected product(s) NVD
9.8
CVSS
15.6%
EPSS
⚡ 43.9
CVE-2018-4968 CRITICAL

Adobe Acrobat and Reader versions 2018.011.20038 and earlier, 2017.011.30079 and earlier, and 2015.006.30417 and earlier have a Heap Overflow vulnerability. Successful exploitation could lead to arbitrary code execution in the context of the current user.

Jul 9, 2018 6 affected product(s) NVD
9.8
CVSS
15.6%
EPSS
⚡ 43.9
CVE-2018-4978 CRITICAL

Adobe Acrobat and Reader versions 2018.011.20038 and earlier, 2017.011.30079 and earlier, and 2015.006.30417 and earlier have a Heap Overflow vulnerability. Successful exploitation could lead to arbitrary code execution in the context of the current user.

Jul 9, 2018 6 affected product(s) NVD
9.8
CVSS
15.6%
EPSS
⚡ 43.9
CVE-2018-4984 CRITICAL

Adobe Acrobat and Reader versions 2018.011.20038 and earlier, 2017.011.30079 and earlier, and 2015.006.30417 and earlier have a Heap Overflow vulnerability. Successful exploitation could lead to arbitrary code execution in the context of the current user.

Jul 9, 2018 6 affected product(s) NVD
9.8
CVSS
15.6%
EPSS
⚡ 43.9
CVE-2018-12463 CRITICAL

An XML external entity (XXE) vulnerability in Fortify Software Security Center (SSC), version 17.1, 17.2, 18.1 allows remote unauthenticated users to read arbitrary files or conduct server-side request forgery (SSRF) attacks via a crafted DTD in an XML request.

Jul 12, 2018 3 affected product(s) NVD
9.8
CVSS
13.8%
EPSS
⚡ 43.4
CVE-2018-4987 CRITICAL

Adobe Acrobat and Reader versions 2018.011.20038 and earlier, 2017.011.30079 and earlier, and 2015.006.30417 and earlier have an Untrusted pointer dereference vulnerability. Successful exploitation could lead to arbitrary code execution in the context of the current user.

Jul 9, 2018 6 affected product(s) NVD
9.8
CVSS
13.5%
EPSS
⚡ 43.2
CVE-2018-4958 CRITICAL

Adobe Acrobat and Reader versions 2018.011.20038 and earlier, 2017.011.30079 and earlier, and 2015.006.30417 and earlier have a Use-after-free vulnerability. Successful exploitation could lead to arbitrary code execution in the context of the current user.

Jul 9, 2018 6 affected product(s) NVD
9.8
CVSS
11.8%
EPSS
⚡ 42.7
CVE-2018-4959 CRITICAL

Adobe Acrobat and Reader versions 2018.011.20038 and earlier, 2017.011.30079 and earlier, and 2015.006.30417 and earlier have a Use-after-free vulnerability. Successful exploitation could lead to arbitrary code execution in the context of the current user.

Jul 9, 2018 6 affected product(s) NVD
9.8
CVSS
11.8%
EPSS
⚡ 42.7
CVE-2018-4961 CRITICAL

Adobe Acrobat and Reader versions 2018.011.20038 and earlier, 2017.011.30079 and earlier, and 2015.006.30417 and earlier have a Use-after-free vulnerability. Successful exploitation could lead to arbitrary code execution in the context of the current user.

Jul 9, 2018 6 affected product(s) NVD
9.8
CVSS
11.8%
EPSS
⚡ 42.7
CVE-2018-4977 CRITICAL

Adobe Acrobat and Reader versions 2018.011.20038 and earlier, 2017.011.30079 and earlier, and 2015.006.30417 and earlier have a Use-after-free vulnerability. Successful exploitation could lead to arbitrary code execution in the context of the current user.

Jul 9, 2018 6 affected product(s) NVD
9.8
CVSS
11.8%
EPSS
⚡ 42.7
CVE-2018-4983 CRITICAL

Adobe Acrobat and Reader versions 2018.011.20038 and earlier, 2017.011.30079 and earlier, and 2015.006.30417 and earlier have a Use-after-free vulnerability. Successful exploitation could lead to arbitrary code execution in the context of the current user.

Jul 9, 2018 6 affected product(s) NVD
9.8
CVSS
11.8%
EPSS
⚡ 42.7
CVE-2018-4988 CRITICAL

Adobe Acrobat and Reader versions 2018.011.20038 and earlier, 2017.011.30079 and earlier, and 2015.006.30417 and earlier have a Use-after-free vulnerability. Successful exploitation could lead to arbitrary code execution in the context of the current user.

Jul 9, 2018 6 affected product(s) NVD
9.8
CVSS
11.8%
EPSS
⚡ 42.7
CVE-2018-4989 CRITICAL

Adobe Acrobat and Reader versions 2018.011.20038 and earlier, 2017.011.30079 and earlier, and 2015.006.30417 and earlier have a Use-after-free vulnerability. Successful exploitation could lead to arbitrary code execution in the context of the current user.

Jul 9, 2018 6 affected product(s) NVD
9.8
CVSS
11.8%
EPSS
⚡ 42.7