eEye Digital Security eEye Digital Security
  • Login to the eEye Business Client Portal
  • Shop for eEye Products
  • Read the eEye Blog
  • Subscribe to eEye RSS Feeds
  • Follow eEye on Twitter
  • Follow eEye of Facebook
Resources

eEye Zero-Day Tracker:
Your Vulnerability Watchlist


Your One-Stop Info Shop for Zero-Day Threat Education and Analysis

The eEye Research Team lives and breathes vulnerabilities every single day. Trust us to be your source for timely accurate information on Zero-Day vulnerabilities.

What’s the Zero-Day Tracker?
The tracker catalogs the latest Zero-Day vulnerabilities and provides detailed analysis of each, including affected software, severity level, potential impact, and mitigation and protection procedures.

4.14.2014 - VMware
VMware Multiple Products OpenSSL Heartbleed Information Disclosure

4.13.2014 - HP
HP Multiple Products OpenSSL Heartbleed Information Disclosure

4.9.2014 - Open Solution
QuickCMS Cross-Site Scripting (XSS) and Cross-Site Request Forgery (CSRF) Vulnerabilities

4.1.2014 - Cisco
Cisco Web Security Appliance HTTP Header Redirection Weakness

3.25.2014 - Haihaisoft
Haihaisoft Universal Player Buffer Overflow

3.24.2014 - Apache
Apache CouchDB UUIDs Request Denial of Service Vulnerability

3.18.2014 - Kaspersky
Kaspersky RegExp Remote Denial of Service Vulnerability

3.17.2014 - Red Hat
oVirt 3.4 Session Fixation and CSRF Vulnerabilities

3.13.2014 - XnSoft
XnView JXR IFD_ENTRY Processing Integer Overflow Vulnerability

3.11.2014 - VMware
VMware ESXi NTP Denial of Service Vulnerability

3.11.2014 - Claws Mail
Claws Mail Plugins Certificate Verification Vulnerabilities

3.10.2014 - LuxSoft
LuxCal 3.2.2 Cross Site Request Forgery / SQL Injection

2.25.2014 - FitNesse
FitNesse Arbitrary Command Execution Vulnerability

2.19.2014 - Belkin (Linksys)
WRT120N fprintf Stack Overflow

2.12.2014 - Belkin (Linksys)
Linksys Routers Command Injection

2.5.2014 - PosterSW
Publish-It Buffer Overflow Vulnerability

1.31.2014 - bloofoxCMS
bloofoxCMS Multiple Vulnerabilities

1.17.2014 - Dell
Dell PowerConnect Products Multiple Vulnerabilities

1.8.2014 - Image-Line
EZGenerator Cross-Site Request Forgery

1.6.2014 - Seagate
Seagate BlackArmor Multiple Vulnerabilities

1.1.2014 - Ophcrack
Ophcrack Insecure Library Loading Vulnerability

12.31.2013 - SerComm
SerComm Products Backdoor

12.18.2013 - Valentin CARRUESCO
Leed Multiple Vulnerabilities

12.12.2013 - SketchUp
SketchUp Viewer .SKP Buffer Overflow

12.10.2013 - IcoFX Software
IcoFX Stack-Based Buffer Overflow

12.9.2013 - osCMax
osCMax Multiple Vulnerabilities

12.6.2013 - CMS Made Simple
CMS Made Simple Cross-Site Scripting Vulnerability

12.5.2013 - Sharetronix
Sharetronix Multiple Vulnerabilities

12.3.2013 - Cisco
Cisco ONS 15454 Denial of Service

12.2.2013 - Icinga
Icinga Web Interface Cross-Site Request Forgery

11.27.2013 - Wondershare
Wondershare Player ws_convererex.dll Hijacking Vulnerability

11.27.2013 - D-Link
D-Link DAP 1522 Hardcoded Telnet Credentials

11.26.2013 - Audacious
Audacious MP3 File Denial of Service

11.22.2013 - Cisco
Cisco IOS ICMP Denial of Service Vulnerability

11.21.2013 - Intergraph Corporation
ERDAS ER Viewer Insecure Library Loading

10.31.2013 - Netgear
Netgear WNDR3700 Bypass

10.31.2013 - VideoCharge
Watermark Master WCF File Handling Buffer Overflow

10.29.2013 - ASUS
ASUS RT-N13U Unpassworded Telnet Administrator Access

10.15.2013 - Oracle, Microsoft, other miscellaneous vendors
Oracle Outside In Microsoft Access Remote Code Execution

10.4.2013 - Corel
Corel PaintShop Pro Insecure Library Loading

10.2.2013 - IconCool Software
PDFCool Buffer Overflow

10.1.2013 - libtar
libtar Directory Traversal Vulnerabilities

9.26.2013 - HP
HP 2620 Switch Series Cross-Site Request Forgery

9.23.2013 - SolarWinds
SolarWinds Server and Application Monitor Buffer Overflow

9.20.2013 - Red Hat
systemd Multiple Vulnerabilities

9.20.2013 - Sergey Romanenko
Monstra CMS Blind SQL Injection Vulnerability

9.19.2013 - Cisco
Cisco AnyConnect Secure Mobility Client Local Privilege Escalation

9.17.2013 - Microsoft
IE 8/9 mshtml.dll NULL_IMPORT_DESCRIPTOR Use After Free

9.11.2013 - ProFTPd
ProFTPd Denial of Service

9.10.2013 - ALLPlayer
ALLPlayer Buffer Overflow Vulnerability

9.8.2013 - D-Link
D-Link DSL-2740B Router Cross-Site Request Forgery

9.4.2013 - Cisco
Cisco Global Site Selector Cross-Site Request Forgery

9.3.2013 - Flo Web Design Ltd.
Flo CMS SQL Injection

8.30.2013 - TP-Link
TP-Link TD-W8951ND Cross Site Request Forgery / Cross Site Scripting

8.28.2013 - EPS Viewer
EPS Viewer Buffer Overflow

8.28.2013 - Aloaha Software
Aloaha PDF Suite Buffer Overflow Vulnerability

8.28.2013 - AVTECH
AVTECH DVR Multiple Vulnerabilities

8.22.2013 - Ovidentia CANTICO
Ovidentia Multiple Vulnerabilities

8.6.2013 - Hikvision
Hikvision IP Cameras Multiple Vulnerabilities

7.31.2013 - VMware
VMware ESX/ESXi Server Multiple Vulnerabilities

7.29.2013 - Microsoft
Internet Explorer 9/10 Recycler::ProcessMark Information Disclosure

7.26.2013 - ASUS
ASUS RT-AC66U Router Buffer Overflow

7.23.2013 - FOSCAM
FOSCAM IP-Cameras Improper Access Restrictions

7.19.2013 - Cisco
Cisco IOS GET VPN Encryption Policy Bypass

7.8.2013 - Corel
Multiple Remote Code Execution Vulnerabilities in Corel PDF Fusion

7.1.2013 - CuteFlow
CuteFlow Multiple Vulnerabilities

6.26.2013 - Kingsoft
Kingsoft Spreadsheets Multiple Buffer Overflows

6.12.2013 - AirLive
Airlive POE/OD IP Camera Multiple Vulnerabilities

6.12.2013 - Sony
Sony CH/DH Network Cameras Cross-Site Request Forgery

6.12.2013 - Airlive
Airlive WL2600CAM Multiple Vulnerabilities

6.12.2013 - Brickcom
Brickcom Network Cameras Multiple Vulnerabilities

6.11.2013 - Fobuc
Fobuc Guestbook SQL Injection Vulnerability

6.7.2013 - Caucho
Resin Application Server Cross-Site Scripting Vulnerability

5.28.2013 - Zavio
Zavio IP Cameras Multiple Vulnerabilities

5.28.2013 - PaloSanto Solutions
Elastix Multiple Cross-Site Scripting Vulnerabilities

4.29.2013 - Vivotek
Vivotek IP Cameras Multiple Vulnerabilities

4.25.2013 - VMware
VMware vCenter and ESX Multiple Vulnerabilities

4.4.2013 - BestWebSharing
Groovy Media Player Buffer Overflow

3.7.2013 - Corel Corporation
Corel WordPerfect Memory Corruption

2.10.2013 - D-Link
D-Link DSL-2740B login.cgi Bypass Vulnerability

1.18.2013 - CoolPDF Software, Inc
CoolPDF Reader Buffer Overflow

1.9.2013 - BigAnt Soft
BigAnt IM Message Server Buffer Overflow

12.9.2012 - Sumatra PDF (Krzysztof Kowalczyk)
Sumatra PDF Integer Overflow

12.1.2012 - Oracle, Monty Program Ab
MySQL/MariaDB Multiple Zero-Day Vulnerabilities

9.13.2012 - Trend Micro
Trend Micro InterScan Messaging Multiple Vulnerabilities

9.3.2012 - CyberLink
CyberLink StreamAuthor Insecure Library Loading Vulnerability

4.19.2012 - Python
Python Hash Collision Denial of Service Vulnerability

3.2.2012 - Beckhoff Automation GmbH
Beckhoff TwinCAT Scope View File Processing Vulnerability

1.11.2012 - LizardTech
ExpressView SID Processing Remote Code Execution Vulnerability

10.25.2011 - Trend Micro
Trend Micro IWSS 3.1 privilege escalation

10.18.2011 - Skype Limited
Skype Multiple 0day Vulnerabilities

9.23.2011 - Microsoft
Internet Explorer MHTML Mime-Formatted Request Vulnerability

4.12.2010 - Trellian
Trellian FTP Client Buffer Overflow

2.11.2010 - Hyleos
Hyleos ChemView Buffer Overflow

12.27.2009 - Mini-stream Software
Mini Stream Ripper Buffer Overflow

9.16.2009 - E-Soft
DJ Studio Pro .PLS File Buffer Overflow


Next Steps

Free Trial
Test drive an eEye product
On-demand Demo
See an online product tour
One-on-one Demo
Schedule a personalized tour
Compare Products
See side-by-side features
Buy Now
Go to eEye product store
Contact | Site Map | Privacy | Website Feedback | 1.866.339.3732
© 1998 – 2012 eEye Digital Security. All rights reserved.