Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Memory Buffer Bounds ErrorCWE-119 × clear
Winproladder CRITICAL 9.8
CVE-2021-32992

FATEK Automation WinProladder Versions 3.30 and prior do not properly restrict operations within the bounds of a memory buffer, which may allow an at…

Fix: after 3.30
Fix from $2,300 2021-06-29
Tor HIGH 7.5
CVE-2021-34550

An issue was discovered in Tor before 0.4.6.5, aka TROVE-2021-006. The v3 onion service descriptor parsing allows out-of-bounds memory access, and a …

Fix: 0.3.5.15 / 0.4.4.9+
Fix from $1,950 2021-06-29
Debian Linux HIGH 7.8
CVE-2021-32490

A flaw was found in djvulibre-3.5.28 and earlier. An out of bounds write in function DJVU::filter_bv() via crafted djvu file may lead to application …

Fix: after 3.5.28
Fix from $1,950 2021-06-24
Debian Linux HIGH 7.8
CVE-2021-32492

A flaw was found in djvulibre-3.5.28 and earlier. An out of bounds read in function DJVU::DataPool::has_data() via crafted djvu file may lead to appl…

Fix: after 3.5.28
Fix from $1,950 2021-06-24
Debian Linux HIGH 7.8
CVE-2021-32493

A flaw was found in djvulibre-3.5.28 and earlier. A heap buffer overflow in function DJVU::GBitmap::decode() via crafted djvu file may lead to applic…

Fix: after 3.5.28
Fix from $1,950 2021-06-24
Webaccess\/hmi Designer HIGH 7.8
CVE-2021-33004

The affected product is vulnerable to memory corruption condition due to lack of proper validation of user supplied files, which may allow an attacke…

Fix: after 2.1.9.95
Fix from $1,950 2021-06-24
Sonicos HIGH 7.5
CVE-2021-20019

A vulnerability in SonicOS where the HTTP server response leaks partial memory by sending a crafted HTTP request, this can potentially lead to an int…

Fix: 7.0.0.376 / 7.0.1-r1036+
Fix from $1,950 2021-06-23
Brava\! Desktop HIGH 7.8
CVE-2021-31495

This vulnerability allows remote attackers to execute arbitrary code on affected installations of OpenText Brava! Desktop 16.6.3.84. User interaction…

Mitigation only
Fix from $1,950 2021-06-15
Brava\! Desktop HIGH 7.8
CVE-2021-31493

This vulnerability allows remote attackers to execute arbitrary code on affected installations of OpenText Brava! Desktop 16.6.3.84. User interaction…

Mitigation only
Fix from $1,950 2021-06-15
Imagegear HIGH 8.8
CVE-2021-21808

A memory corruption vulnerability exists in the PNG png_palette_process functionality of Accusoft ImageGear 19.9. A specially crafted malformed file …

No fix yet
Fix from $1,950 2021-06-11
Imagegear CRITICAL 9.8
CVE-2021-21833

An improper array index validation vulnerability exists in the TIF IP_planar_raster_unpack functionality of Accusoft ImageGear 19.9. A specially craf…

No fix yet
Fix from $2,300 2021-06-11
Interactive Graphical Scada System HIGH 7.8
CVE-2021-22761

A CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability exists inIGSS Definition (Def.exe) V15.0.0.21140 and…

Fix: after 15.0.0.21140
Fix from $1,950 2021-06-11
Android CRITICAL 9.8
CVE-2021-25383

An improper input validation vulnerability in scmn_mfal_read() in libsapeextractor library prior to SMR MAY-2021 Release 1 allows attackers to execut…

Mitigation only
Fix from $2,300 2021-06-11
Android CRITICAL 9.8
CVE-2021-25385

An improper input validation vulnerability in sdfffd_parse_chunk_PROP() in libsdffextractor library prior to SMR MAY-2021 Release 1 allows attackers …

Mitigation only
Fix from $2,300 2021-06-11
Android CRITICAL 9.8
CVE-2021-25386

An improper input validation vulnerability in sdfffd_parse_chunk_FVER() in libsdffextractor library prior to SMR MAY-2021 Release 1 allows attackers …

Mitigation only
Fix from $2,300 2021-06-11
Android CRITICAL 10.0
CVE-2021-25387

An improper input validation vulnerability in sflacfd_get_frm() in libsflacextractor library prior to SMR MAY-2021 Release 1 allows attackers to exec…

Mitigation only
Fix from $2,300 2021-06-11
Nuc M15 Laptop Kit Lapbc510 Firmware MEDIUM 6.7
CVE-2021-0054

Improper buffer restrictions in system firmware for some Intel(R) NUCs may allow a privileged user to potentially enable escalation of privilege via …

Patch available
Fix from $1,600 2021-06-09
Converged Security And Manageability Engine MEDIUM 6.7
CVE-2020-8703

Improper buffer restrictions in a subsystem in the Intel(R) CSME versions before 11.8.86, 11.12.86, 11.22.86, 12.0.81, 13.0.47, 13.30.17, 14.1.53, 14…

Fix: 11.8.86 / 11.12.86+
Fix from $1,600 2021-06-09
Ar7420 Firmware HIGH 8.8
CVE-2020-11256

Memory corruption due to lack of check of validation of pointer to buffer passed to trustzone in Snapdragon Wired Infrastructure and Networking

Patch available
Fix from $1,950 2021-06-09
Ar7420 Firmware HIGH 8.8
CVE-2020-11257

Memory corruption due to lack of validation of pointer arguments passed to TrustZone BSP in Snapdragon Wired Infrastructure and Networking

Mitigation only
Fix from $1,950 2021-06-09
Ar7420 Firmware HIGH 8.8
CVE-2020-11258

Memory corruption due to lack of validation of pointer arguments passed to Trustzone BSP in Snapdragon Wired Infrastructure and Networking

Mitigation only
Fix from $1,950 2021-06-09
Ar7420 Firmware HIGH 8.8
CVE-2020-11259

Memory corruption due to lack of validation of pointer arguments passed to Trustzone BSP in Snapdragon Wired Infrastructure and Networking

No fix yet
Fix from $1,950 2021-06-09
Windows 10 HIGH 8.6
CVE-2021-31977

Windows Hyper-V Denial of Service Vulnerability

Patch available
Fix from $1,950 2021-06-08
Chrome HIGH 8.8
CVE-2021-30530

Out of bounds memory access in WebAudio in Google Chrome prior to 91.0.4472.77 allowed a remote attacker to perform out of bounds memory access via a…

Fix: 91.0.4472.77+
Fix from $1,950 2021-06-07
Webex Meetings Desktop HIGH 7.8
CVE-2021-1502

A vulnerability in Cisco Webex Network Recording Player for Windows and MacOS and Cisco Webex Player for Windows and MacOS could allow an attacker to…

Fix: 41.5+
Fix from $1,950 2021-06-04
Webex Meetings Server HIGH 7.8
CVE-2021-1503

A vulnerability in Cisco Webex Network Recording Player for Windows and MacOS and Cisco Webex Player for Windows and MacOS could allow an attacker to…

Fix: 41.2+
Fix from $1,950 2021-06-04
Webex Player HIGH 7.8
CVE-2021-1526

A vulnerability in Cisco Webex Player for Windows and MacOS could allow an attacker to execute arbitrary code on an affected system. This vulnerabili…

Fix: 41.5+
Fix from $1,950 2021-06-04
Webex Player MEDIUM 6.1
CVE-2021-1527

A vulnerability in Cisco Webex Player for Windows and MacOS could allow an attacker to cause the affected software to terminate or to gain access to …

Fix: 41.5+
Fix from $1,600 2021-06-04
Linux Kernel HIGH 7.8
CVE-2021-3489

The eBPF RINGBUF bpf_ringbuf_reserve() function in the Linux kernel did not check that the allocated size was smaller than the ringbuf size, allowing…

Fix: 5.10.37 / 5.11.21+
Fix from $1,950 2021-06-04
Simatic Driver Controller Firmware CRITICAL 9.8
CVE-2020-15782EPSS 5%

A vulnerability has been identified in SIMATIC Drive Controller family (All versions < V2.9.2), SIMATIC ET 200SP Open Controller CPU 1515SP PC (incl.…

Fix: 2.9.2 / 4.0+
Fix from $2,300 2021-05-28