
The OPSWAT MetaDefender Vulnerability Engine identifies known application vulnerabilities and reports them by severity level. The Vulnerability Engine allows system administrators to identify vulnerabilities in files and data being brought into a secure network and on endpoints within a network, significantly expediting remediation of the issue.
Common Vulnerabilities and Exposures (CVE) is a catalog of publicly known cyber security vulnerabilities that's sponsored by the United States Department of Homeland Security. The first table below lists the new CVEs and product versions for which support was added to the MetaDefender database during the week of June 21-28, 2017. The second table lists the hashes and application installers for which support was added.
Learn more about the MetaDefender Vulnerability Engine:
Newly Supported CVEs and Product Versions as of June 28, 2017
| PRODUCT | VENDOR | VERSION | CVE | CVE DETAILS | CVSS SCORE |
|---|---|---|---|---|---|
| Adobe Shockwave Player | Adobe Systems Inc. | 12.2.8.198 and prior | CVE-2017-3086 | https://nvd.nist.gov/vuln/detail/CVE-2017-3086 | 10 |
| WireStack | WireStack | 2.2.7 and prior | CVE-2017-9766 | https://nvd.nist.gov/vuln/detail/CVE-2017-9766 | 5 |
| Microsoft Outlook | Microsoft Corporation | 16 and prior | CVE-2017-8545 | https://nvd.nist.gov/vuln/detail/CVE-2017-8545 | 4.3 |
| Microsoft Outlook | Microsoft Corporation | 16 and prior | CVE-2017-8508 | https://nvd.nist.gov/vuln/detail/CVE-2017-8508 | 4.3 |
| Microsoft Outlook | Microsoft Corporation | 16 and prior | CVE-2017-8507 | https://nvd.nist.gov/vuln/detail/CVE-2017-8507 | 9.3 |
| Microsoft Outlook | Microsoft Corporation | 16 and prior | CVE-2017-8506 | https://nvd.nist.gov/vuln/detail/CVE-2017-8506 | 9.3 |
| Internet Explorer | Microsoft Corporation | 11 and prior | CVE-2017-8547 | https://nvd.nist.gov/vuln/detail/CVE-2017-8547 | 7.6 |
| Internet Explorer | Microsoft Corporation | 9 and prior | CVE-2017-8529 | https://nvd.nist.gov/vuln/detail/CVE-2017-8529 | 4.3 |
| Internet Explorer | Microsoft Corporation | 11 and prior | CVE-2017-8524 | https://nvd.nist.gov/vuln/detail/CVE-2017-8524 | 7.6 |
| Internet Explorer | Microsoft Corporation | 11 and prior | CVE-2017-8522 | https://nvd.nist.gov/vuln/detail/CVE-2017-8522 | 7.6 |
| Internet Explorer | Microsoft Corporation | 9 and prior | CVE-2017-8519 | https://nvd.nist.gov/vuln/detail/CVE-2017-8519 | 7.6 |
| Internet Explorer | Microsoft Corporation | 9 and prior | CVE-2017-8517 | https://nvd.nist.gov/vuln/detail/CVE-2017-8517 | 7.6 |
| Adobe Flash Player | Adobe Systems Inc. | 25.0.0.171 and prior | CVE-2017-3082 | https://nvd.nist.gov/vuln/detail/CVE-2017-3082 | 10 |
| Adobe Flash Player | Adobe Systems Inc. | 25.0.0.171 and prior | CVE-2017-3081 | https://nvd.nist.gov/vuln/detail/CVE-2017-3081 | 10 |
| Adobe Flash Player | Adobe Systems Inc. | 25.0.0.171 and prior | CVE-2017-3079 | https://nvd.nist.gov/vuln/detail/CVE-2017-3079 | 10 |
| Adobe Flash Player | Adobe Systems Inc. | 25.0.0.171 and prior | CVE-2017-3075 | https://nvd.nist.gov/vuln/detail/CVE-2017-3075 | 10 |
| Adobe Flash Player | Adobe Systems Inc. | 25.0.0.171 and prior | CVE-2017-3078 | https://nvd.nist.gov/vuln/detail/CVE-2017-3078 | 10 |
| Adobe Flash Player | Adobe Systems Inc. | 25.0.0.171 and prior | CVE-2017-3077 | https://nvd.nist.gov/vuln/detail/CVE-2017-3077 | 10 |
| Adobe Flash Player | Adobe Systems Inc. | 25.0.0.171 and prior | CVE-2017-3076 | https://nvd.nist.gov/vuln/detail/CVE-2017-3076 | 10 |
| Adobe Flash Player | Adobe Systems Inc. | 25.0.0.171 and prior | CVE-2017-3083 | https://nvd.nist.gov/vuln/detail/CVE-2017-3083 | 10 |
| Adobe Flash Player | Adobe Systems Inc. | 25.0.0.171 and prior | CVE-2017-3084 | https://nvd.nist.gov/vuln/detail/CVE-2017-3084 | 10 |
| Silverlight | Microsoft Corporation | 5 and prior | CVE-2017-8527 | https://nvd.nist.gov/vuln/detail/CVE-2017-8527 | 9.3 |
| Silverlight | Microsoft Corporation | 5 and prior | CVE-2017-0283 | https://nvd.nist.gov/vuln/detail/CVE-2017-0283 | 9.3 |
| Microsoft Lync | Microsoft Corporation | 2013 and prior | CVE-2017-8527 | https://nvd.nist.gov/vuln/detail/CVE-2017-8527 | 9.3 |
| Microsoft Lync | Microsoft Corporation | 2013 and prior | CVE-2017-0283 | https://nvd.nist.gov/vuln/detail/CVE-2017-0283 | 9.3 |
| Microsoft Word | Microsoft Corporation | 16 and prior | CVE-2017-0292 | https://nvd.nist.gov/vuln/detail/CVE-2017-0292 | 9.3 |
| Java | Oracle Corporation | 7.0.110 and prior | CVE-2013-0440 | https://nvd.nist.gov/vuln/detail/CVE-2013-0440 | 5 |
| Java | Oracle Corporation | 7.0.450 and prior | CVE-2013-5878 | https://nvd.nist.gov/vuln/detail/CVE-2013-5878 | 7.5 |
Newly Supported Hashes and Installers as of June 28, 2017
| HASH | DESCRIPTION | FILE NAME | CVE |
|---|---|---|---|
| 4C18F00530C5FA968941663D9707842F8C598178 | Installer for Wordpad on Windows Vista Business x64 sp 2 #installer | vista_business_x64_sp2_wordpad.exe | CVE-201-0199 |
| F75557BD48F608BB6FB7351FABA6F47897E01085 | Installer for Wordpad on Windows Server 2008 R2 SP1 x64 | win2008_R2_sp1_64_wordpad.exe | CVE-201-0199 |
| EAB41640FD7C5EC337095207C987D25A8EE50772 | Installer for Wordpad on Windows Server 2012 x64 | win2012_64_wordpad.exe | CVE-201-0199 |
