cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2018-0487,https://securityvulnerability.io/vulnerability/CVE-2018-0487,,"ARM mbed TLS before 1.3.22, before 2.1.10, and before 2.7.0 allows remote attackers to execute arbitrary code or cause a denial of service (buffer overflow) via a crafted certificate chain that is mishandled during RSASSA-PSS signature verification within a TLS or DTLS session.",Arm,"Arm Mbed Tls Before 1.3.22, Before 2.1.10, And Before 2.7.0",9.8,CRITICAL,0.10395999997854233,false,,false,false,false,,,false,false,,2018-02-13T15:00:00.000Z,0 CVE-2018-0488,https://securityvulnerability.io/vulnerability/CVE-2018-0488,,"ARM mbed TLS before 1.3.22, before 2.1.10, and before 2.7.0, when the truncated HMAC extension and CBC are used, allows remote attackers to execute arbitrary code or cause a denial of service (heap corruption) via a crafted application packet within a TLS or DTLS session.",Arm,"Arm Mbed Tls Before 1.3.22, Before 2.1.10, And Before 2.7.0",9.8,CRITICAL,0.16083000600337982,false,,false,false,false,,,false,false,,2018-02-13T15:00:00.000Z,0