Vulnerabilities

Summary — last 7 days

New vulnerabilities2,666▼ 407 vs. last week
Critical / high1,266▼ 215 vs. last week
New active exploitation (KEV)3▼ 5 vs. last week
Unscored (no CVSS)215▼ 115 vs. last week
–

1 results, sorted by published date (most recent first)

CVEStatusSeverityEPSS Active exploitationAffected technologiesPublished ▼Modified Description
ModifiedLow (3.7)0.73%—Carestream VUE RIS10/4/20186/17/2026
Carestream Vue RIS, RIS Client Builds: Version 11.2 and prior running on a Windows 8.1 machine with IIS/7.5. When contacting a Carestream server where there is no Oracle TNS listener available, users will trigger an HTTP 500 error, leaking technical information an attacker could use to initiate a more elaborate attack.
Orbitaley — Vulnerabilities