Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Memory Buffer Bounds ErrorCWE-119 × clear
3d Visual Enterprise Viewer HIGH 8.8
CVE-2021-21449

SAP 3D Visual Enterprise Viewer, version - 9, allows a user to open manipulated IFF file received from untrusted sources which results in crashing of…

Mitigation only
Fix from $1,950 2021-01-12
3d Visual Enterprise Viewer HIGH 8.8
CVE-2021-21450

SAP 3D Visual Enterprise Viewer, version - 9, allows a user to open manipulated PSD file received from untrusted sources which results in crashing of…

Mitigation only
Fix from $1,950 2021-01-12
3d Visual Enterprise Viewer HIGH 8.8
CVE-2021-21451

SAP 3D Visual Enterprise Viewer, version - 9, allows a user to open manipulated SGI file received from untrusted sources which results in crashing of…

Mitigation only
Fix from $1,950 2021-01-12
3d Visual Enterprise Viewer HIGH 8.8
CVE-2021-21452

SAP 3D Visual Enterprise Viewer, version - 9, allows a user to open manipulated GIF file received from untrusted sources which results in crashing of…

Mitigation only
Fix from $1,950 2021-01-12
Rslinx HIGH 7.5
CVE-2020-13573

A denial-of-service vulnerability exists in the Ethernet/IP server functionality of Rockwell Automation RSLinx Classic 2.57.00.14 CPR 9 SR 3. A speci…

No fix yet
Fix from $1,950 2021-01-07
Ozone CRITICAL 9.8
CVE-2020-35877

An issue was discovered in the ozone crate through 2020-07-04 for Rust. Memory safety is violated because of out-of-bounds access.

Fix: after 0.1.0
Fix from $2,300 2020-12-31
Ozone CRITICAL 9.8
CVE-2020-35878

An issue was discovered in the ozone crate through 2020-07-04 for Rust. Memory safety is violated because of the dropping of uninitialized memory.

Fix: after 0.1.0
Fix from $2,300 2020-12-31
Asylo HIGH 7.8
CVE-2020-8935

An arbitrary memory overwrite vulnerability in Asylo versions up to 0.6.0 allow an attacker to make an Ecall_restore function call to reallocate untr…

Fix: after 0.6.0
Fix from $1,950 2020-12-15
Openusd HIGH 7.8
CVE-2020-13520

An out of bounds memory corruption vulnerability exists in the way Pixar OpenUSD 20.05 reconstructs paths from binary USD files. A specially crafted …

Fix: 11.1+
Fix from $1,950 2020-12-11
Modicon M258 Firmware MEDIUM 6.8
CVE-2020-28220

A CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability exists in Modicon M258 Firmware (All versions prior …

Fix: 5.0.4.11+
Fix from $1,600 2020-12-11
Openusd MEDIUM 5.5
CVE-2020-13524

An out-of-bounds memory corruption vulnerability exists in the way Pixar OpenUSD 20.05 uses SPECS data from binary USD files. A specially crafted mal…

Fix: 10.14.6 / 10.15.7+
Fix from $1,600 2020-12-03
Openusd MEDIUM 6.5
CVE-2020-13496

An exploitable vulnerability exists in the way Pixar OpenUSD 20.05 handles parses certain encoded types. A specially crafted malformed file can trigg…

No fix yet
Fix from $1,600 2020-12-02
Openusd MEDIUM 5.5
CVE-2020-13497

An exploitable vulnerability exists in the way Pixar OpenUSD 20.05 handles parses certain encoded types. A specially crafted malformed file can trigg…

No fix yet
Fix from $1,600 2020-12-02
Nanopb HIGH 7.5
CVE-2020-26243

Nanopb is a small code-size Protocol Buffers implementation. In Nanopb before versions 0.4.4 and 0.3.9.7, decoding specifically formed message can le…

Fix: 0.3.9.7 / 0.4.4+
Fix from $1,950 2020-11-25
Interactive Graphical Scada System HIGH 7.8
CVE-2020-7550

A CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability exists in IGSS Definition (Def.exe) version 14.0.0.20…

Fix: after 14.0.0.20247
Fix from $1,950 2020-11-19
Interactive Graphical Scada System HIGH 7.8
CVE-2020-7554

A CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability exists in IGSS Definition (Def.exe) version 14.0.0.20…

Fix: after 14.0.0.20247
Fix from $1,950 2020-11-19
Enterprise Nfv Infrastructure Software CRITICAL 9.8
CVE-2020-3470

Multiple vulnerabilities in the API subsystem of Cisco Integrated Management Controller (IMC) could allow an unauthenticated, remote attacker to exec…

Fix: 3.2.11.3 / 4.4.1+
Fix from $2,300 2020-11-18
Apq8009 Firmware CRITICAL 9.8
CVE-2020-11196

u'Integer overflow to buffer overflow occurs while playback of ASF clip having unexpected number of codec entries' in Snapdragon Auto, Snapdragon Com…

Mitigation only
Fix from $2,300 2020-11-12
Inspiron 15 7579 Firmware MEDIUM 6.9
CVE-2020-5388

Dell Inspiron 15 7579 2-in-1 BIOS versions prior to 1.31.0 contain an Improper SMM communication buffer verification vulnerability. A local authentic…

Fix: 1.31.0+
Fix from $1,600 2020-11-10
Webex Meetings HIGH 7.8
CVE-2020-3603

Multiple vulnerabilities in Cisco Webex Network Recording Player for Windows and Cisco Webex Player for Windows could allow an attacker to execute ar…

Fix: 40.6.11 / 40.8.0+
Fix from $1,950 2020-11-06
Webex Meetings HIGH 7.8
CVE-2020-3604

Multiple vulnerabilities in Cisco Webex Network Recording Player for Windows and Cisco Webex Player for Windows could allow an attacker to execute ar…

Fix: 40.6.11 / 40.8.0+
Fix from $1,950 2020-11-06
Webex Meetings HIGH 7.8
CVE-2020-3573

Multiple vulnerabilities in Cisco Webex Network Recording Player for Windows and Cisco Webex Player for Windows could allow an attacker to execute ar…

Fix: 40.6.11 / 40.8.0+
Fix from $1,950 2020-11-06
Visual Components Network License Server HIGH 8.2
CVE-2020-10292

Visual Components (owned by KUKA) is a robotic simulator that allows simulating factories and robots in order toimprove planning and decision-making …

Mitigation only
Fix from $1,950 2020-11-06
Apq8009 Firmware HIGH 7.8
CVE-2020-3693

u'Use out of range pointer issue can occur due to incorrect buffer range check during the execution of qseecom.' in Snapdragon Auto, Snapdragon Compu…

Patch available
Fix from $1,950 2020-11-02
Ruggedcom Rox Mx5000 Firmware CRITICAL 9.8
CVE-2019-17006

In Network Security Services (NSS) before 3.46, several cryptographic primitives had missing length checks. In cases where the application calling th…

Fix: 2.14.0+
Fix from $2,300 2020-10-22
Tensorflow HIGH 7.5
CVE-2020-15266

In Tensorflow before version 2.4.0, when the `boxes` argument of `tf.image.crop_and_resize` has a very large value, the CPU kernel implementation rec…

Fix: 2.4.0+
Fix from $1,950 2020-10-21
Secure Firewall Threat Defense HIGH 8.6
CVE-2020-3562

A vulnerability in the SSL/TLS inspection of Cisco Firepower Threat Defense (FTD) Software for Cisco Firepower 2100 Series firewalls could allow an u…

Mitigation only
Fix from $1,950 2020-10-21
3d Viewer HIGH 7.8
CVE-2020-17003

<p>A remote code execution vulnerability exists when the Base3D rendering engine improperly handles memory.</p> <p>An attacker who successfully explo…

Patch available
Fix from $1,950 2020-10-16
Junos HIGH 7.5
CVE-2020-1671

On Juniper Networks Junos OS platforms configured as DHCPv6 local server or DHCPv6 Relay Agent, Juniper Networks Dynamic Host Configuration Protocol …

Mitigation only
Fix from $1,950 2020-10-16
Crossbeam CRITICAL 9.8
CVE-2020-15254

Crossbeam is a set of tools for concurrent programming. In crossbeam-channel before version 0.4.4, the bounded channel incorrectly assumes that `Vec:…

Fix: 0.4.4+
Fix from $2,300 2020-10-16