CVE Database

Search and browse vulnerability records from NVD

Showing 50 of 2558 CVEs

CVE ID Severity Description EPSS Published
9.8 CRITICAL

In Jboss Application Server as shipped with Red Hat Enterprise Application Platform 5.2, it was found that the doFilter method in the ReadOnlyAccessFilter of the HTTP Invoker does not restrict classes for which it performs deserialization and thus allowing an attacker to execute arbitrary code via crafted serialized data.

94.3% 2017-10-04
9.8 CRITICAL

The DHCP relay subsystem of Cisco IOS 12.2 through 15.6 and Cisco IOS XE Software contains a vulnerability that could allow an unauthenticated, remote attacker to execute arbitrary code and gain full control of an affected system. The attacker could also cause an affected system to reload, resulting in a denial of service (DoS) condition. The vulnerability is due to a buffer overflow condition in the DHCP relay subsystem of the affected software. An attacker could exploit this vulnerability by sending a crafted DHCP Version 4 (DHCPv4) packet to an affected system. A successful exploit could allow the attacker to execute arbitrary code and gain full control of the affected system or cause the affected system to reload, resulting in a DoS condition. Cisco Bug IDs: CSCsm45390, CSCuw77959.

8.0% 2017-09-29
9.8 CRITICAL

The ping tool in multiple D-Link and TRENDnet devices allow remote attackers to execute arbitrary code via the ping_addr parameter to ping.ccp.

81.2% 2017-09-21
9.8 CRITICAL

The IKEv1 parser in tcpdump before 4.9.2 has a buffer over-read in print-isakmp.c:ikev1_id_print().

0.6% 2017-09-14
9.8 CRITICAL

The OLSR parser in tcpdump before 4.9.2 has a buffer over-read in print-olsr.c:olsr_print().

0.6% 2017-09-14
9.8 CRITICAL

The Cisco HDLC parser in tcpdump before 4.9.2 has a buffer over-read in print-chdlc.c:chdlc_print().

2.1% 2017-09-14
9.8 CRITICAL

The ISO IS-IS parser in tcpdump before 4.9.2 has a buffer over-read in print-isoclns.c:isis_print_is_reach_subtlv().

1.4% 2017-09-14
9.8 CRITICAL

The LLDP parser in tcpdump before 4.9.2 has a buffer over-read in print-lldp.c:lldp_private_8023_print().

0.6% 2017-09-14
9.8 CRITICAL

The BGP parser in tcpdump before 4.9.2 has a buffer over-read in print-bgp.c:decode_rt_routing_info().

0.6% 2017-09-14
9.8 CRITICAL

The RPKI-Router parser in tcpdump before 4.9.2 has a buffer over-read in print-rpki-rtr.c:rpki_rtr_pdu_print().

2.6% 2017-09-14
9.8 CRITICAL

The RSVP parser in tcpdump before 4.9.2 has a buffer over-read in print-rsvp.c:rsvp_obj_print().

0.6% 2017-09-14
9.8 CRITICAL

The ISO ES-IS parser in tcpdump before 4.9.2 has a buffer over-read in print-isoclns.c:esis_print().

1.4% 2017-09-14
9.8 CRITICAL

The VQP parser in tcpdump before 4.9.2 has a buffer over-read in print-vqp.c:vqp_print().

1.4% 2017-09-14
9.8 CRITICAL

The ICMPv6 parser in tcpdump before 4.9.2 has a buffer over-read in print-icmp6.c:icmp6_nodeinfo_print().

1.8% 2017-09-14
9.8 CRITICAL

The MPTCP parser in tcpdump before 4.9.2 has a buffer over-read in print-mptcp.c, several functions.

1.8% 2017-09-14
9.8 CRITICAL

The PPP parser in tcpdump before 4.9.2 has a buffer over-read in print-ppp.c:handle_mlppp().

2.6% 2017-09-14
9.8 CRITICAL

The IP parser in tcpdump before 4.9.2 has a buffer over-read in print-ip.c:ip_printts().

1.4% 2017-09-14
9.8 CRITICAL

The ISO IS-IS parser in tcpdump before 4.9.2 has a buffer over-read in print-isoclns.c:isis_print_id().

0.6% 2017-09-14
9.8 CRITICAL

The PGM parser in tcpdump before 4.9.2 has a buffer over-read in print-pgm.c:pgm_print().

0.6% 2017-09-14
9.8 CRITICAL

The IPv6 fragmentation header parser in tcpdump before 4.9.2 has a buffer over-read in print-frag6.c:frag6_print().

0.6% 2017-09-14
9.8 CRITICAL

The BOOTP parser in tcpdump before 4.9.2 has a buffer over-read in print-bootp.c:bootp_print().

1.0% 2017-09-14
9.8 CRITICAL

The LLDP parser in tcpdump before 4.9.2 has a buffer over-read in print-lldp.c:lldp_mgmt_addr_tlv_print().

1.4% 2017-09-14
9.8 CRITICAL

The IPv6 mobility parser in tcpdump before 4.9.2 has a buffer over-read in print-mobility.c:mobility_opt_print().

0.6% 2017-09-14
9.8 CRITICAL

The IPv6 mobility parser in tcpdump before 4.9.2 has a buffer over-read in print-mobility.c:mobility_opt_print().

2.1% 2017-09-14
9.8 CRITICAL

The IP parser in tcpdump before 4.9.2 has a buffer over-read in print-ip.c:ip_printroute().

0.6% 2017-09-14
9.8 CRITICAL

The ICMPv6 parser in tcpdump before 4.9.2 has a buffer over-read in print-icmp6.c:icmp6_print().

1.4% 2017-09-14
9.8 CRITICAL

The VTP parser in tcpdump before 4.9.2 has a buffer over-read in print-vtp.c:vtp_print().

2.1% 2017-09-14
9.8 CRITICAL

The PGM parser in tcpdump before 4.9.2 has a buffer over-read in print-pgm.c:pgm_print().

2.6% 2017-09-14
9.8 CRITICAL

The DHCPv6 parser in tcpdump before 4.9.2 has a buffer over-read in print-dhcp6.c:dhcp6opt_print().

1.1% 2017-09-14
9.8 CRITICAL

The ISO ES-IS parser in tcpdump before 4.9.2 has a buffer over-read in print-isoclns.c:esis_print().

1.1% 2017-09-14
9.8 CRITICAL

The EAP parser in tcpdump before 4.9.2 has a buffer over-read in print-eap.c:eap_print().

1.1% 2017-09-14
9.8 CRITICAL

The White Board protocol parser in tcpdump before 4.9.2 has a buffer over-read in print-wb.c:wb_prep(), several functions.

1.1% 2017-09-14
9.8 CRITICAL

The ARP parser in tcpdump before 4.9.2 has a buffer over-read in print-arp.c, several functions.

1.1% 2017-09-14
9.8 CRITICAL

The BEEP parser in tcpdump before 4.9.2 has a buffer over-read in print-beep.c:l_strnstart().

2.0% 2017-09-14
9.8 CRITICAL

The L2TP parser in tcpdump before 4.9.2 has a buffer over-read in print-l2tp.c, several functions.

1.1% 2017-09-14
9.8 CRITICAL

The AODV parser in tcpdump before 4.9.2 has a buffer over-read in print-aodv.c:aodv_extension().

1.1% 2017-09-14
9.8 CRITICAL

The NFS parser in tcpdump before 4.9.2 has a buffer over-read in print-nfs.c:nfs_printfh().

0.6% 2017-09-14
9.8 CRITICAL

The IEEE 802.15.4 parser in tcpdump before 4.9.2 has a buffer over-read in print-802_15_4.c:ieee802_15_4_if_print().

4.4% 2017-09-14
9.8 CRITICAL

The LLDP parser in tcpdump before 4.9.2 could enter an infinite loop due to a bug in print-lldp.c:lldp_private_8021_print().

1.5% 2017-09-14
9.8 CRITICAL

The PIMv2 parser in tcpdump before 4.9.2 has a buffer over-read in print-pim.c:pimv2_print().

1.1% 2017-09-14
9.8 CRITICAL

The DNS parser in tcpdump before 4.9.2 could enter an infinite loop due to a bug in print-domain.c:ns_print().

1.1% 2017-09-14
9.8 CRITICAL

The BGP parser in tcpdump before 4.9.2 has a buffer over-read in print-bgp.c:bgp_attr_print().

1.1% 2017-09-14
9.8 CRITICAL

The Juniper protocols parser in tcpdump before 4.9.2 has a buffer over-read in print-juniper.c, several functions.

1.1% 2017-09-14
9.8 CRITICAL

The RIPng parser in tcpdump before 4.9.2 has a buffer over-read in print-ripng.c:ripng_print().

1.1% 2017-09-14
9.8 CRITICAL

The ISAKMP parser in tcpdump before 4.9.2 could enter an infinite loop due to bugs in print-isakmp.c, several functions.

1.1% 2017-09-14
9.8 CRITICAL

The IPv6 parser in tcpdump before 4.9.2 has a buffer over-read in print-ip6.c:ip6_print().

2.0% 2017-09-14
9.8 CRITICAL

The Zephyr parser in tcpdump before 4.9.2 has a buffer over-read in print-zephyr.c, several functions.

2.1% 2017-09-14
9.8 CRITICAL

The EIGRP parser in tcpdump before 4.9.2 has a buffer over-read in print-eigrp.c:eigrp_print().

1.1% 2017-09-14
9.8 CRITICAL

The DECnet parser in tcpdump before 4.9.2 has a buffer over-read in print-decnet.c:decnet_print().

2.1% 2017-09-14
9.8 CRITICAL

The NFS parser in tcpdump before 4.9.2 has a buffer over-read in print-nfs.c:interp_reply().

1.1% 2017-09-14