Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Memory Buffer Bounds ErrorCWE-119 × clear
Spa112 Firmware HIGH 8.0
CVE-2019-15247

Multiple vulnerabilities in Cisco SPA100 Series Analog Telephone Adapters (ATAs) could allow an authenticated, adjacent attacker to execute arbitrary…

Fix: 1.4.1+
Fix from $1,950 2019-10-16
Spa112 Firmware HIGH 8.0
CVE-2019-15248

Multiple vulnerabilities in Cisco SPA100 Series Analog Telephone Adapters (ATAs) could allow an authenticated, adjacent attacker to execute arbitrary…

Fix: 1.4.1+
Fix from $1,950 2019-10-16
Boa CRITICAL 9.8
CVE-2018-21027

Boa through 0.94.14rc21 allows remote attackers to trigger an out-of-memory (OOM) condition because malloc is mishandled.

Fix: after 0.94.14.21
Fix from $2,300 2019-10-11
Nuc 8 Mainstream Game Kit Firmware HIGH 7.8
CVE-2019-14569

Pointer corruption in system firmware for Intel(R) NUC may allow a privileged user to potentially enable escalation of privilege, denial of service a…

Mitigation only
Fix from $1,950 2019-10-11
Xftp CRITICAL 9.8
CVE-2019-17320

NetSarang XFTP Client 6.0149 and earlier version contains a buffer overflow vulnerability caused by improper boundary checks when copying file name f…

Fix: after 6.0149
Fix from $2,300 2019-10-10
Shield Experience HIGH 7.8
CVE-2019-5699

NVIDIA Shield TV Experience prior to v8.0.1, NVIDIA Tegra bootloader contains a vulnerability where the software performs an incorrect bounds check, …

Fix: 8.0.1+
Fix from $1,950 2019-10-09
Dhcp HIGH 7.5
CVE-2018-5732

Failure to properly bounds-check a buffer used for processing DHCP options allows a malicious server (or an entity masquerading as a server) to cause…

Fix: 4.2.8 / 4.3.6+
Fix from $1,950 2019-10-09
Hadoop HIGH 7.5
CVE-2018-11768EPSS 7%

In Apache Hadoop 3.1.0 to 3.1.1, 3.0.0-alpha1 to 3.0.3, 2.9.0 to 2.9.1, and 2.0.0-alpha to 2.8.4, the user/group information can be corrupted across …

Fix: after 3.1.1
Fix from $1,950 2019-10-04
Secure Firewall Management Center HIGH 8.8
CVE-2019-12687

A vulnerability in the web UI of the Cisco Firepower Management Center (FMC) could allow an authenticated, remote attacker to execute arbitrary comma…

Mitigation only
Fix from $1,950 2019-10-02
Secure Firewall Management Center HIGH 8.8
CVE-2019-12688

A vulnerability in the web UI of the Cisco Firepower Management Center (FMC) could allow an authenticated, remote attacker to execute arbitrary comma…

Mitigation only
Fix from $1,950 2019-10-02
Adaptive Security Appliance HIGH 7.5
CVE-2019-12673

A vulnerability in the FTP inspection engine of Cisco Adaptive Security (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow …

Fix: 6.3.0.5 / 6.4.0.4+
Fix from $1,950 2019-10-02
Hhvm CRITICAL 9.8
CVE-2019-11929

Insufficient boundary checks when formatting numbers in number_format allows read/write access to out-of-bounds memory, potentially leading to remote…

Fix: 3.30.10+
Fix from $2,300 2019-10-02
Crimson HIGH 7.8
CVE-2019-10978

Red Lion Controls Crimson, version 3.0 and prior and version 3.1 prior to release 3112.00, allow multiple vulnerabilities to be exploited when a vali…

Fix: 3112.00+
Fix from $1,950 2019-09-23
Fedora MEDIUM 6.5
CVE-2019-16707

Hunspell 1.7.0 has an invalid read operation in SuggestMgr::leftcommonsubstring in suggestmgr.cxx.

No fix yet
Fix from $1,600 2019-09-23
Windows 10 1507 HIGH 7.8
CVE-2019-1214 KEV

An elevation of privilege vulnerability exists when the Windows Common Log File System (CLFS) driver improperly handles objects in memory, aka 'Windo…

Patch available
Fix from $1,950 2019-09-11
Couchbase Server HIGH 7.5
CVE-2019-11467

In Couchbase Server 4.6.3 and 5.5.0, secondary indexing encodes the entries to be indexed using collatejson. When index entries contain certain chara…

Mitigation only
Fix from $1,950 2019-09-10
Hhvm CRITICAL 9.8
CVE-2019-11925

Insufficient boundary checks when processing the JPEG APP12 block marker in the GD extension could allow access to out-of-bounds memory via a malicio…

Fix: after 4.20.1
Fix from $2,300 2019-09-06
Hhvm CRITICAL 9.8
CVE-2019-11926

Insufficient boundary checks when processing M_SOFx markers from JPEG headers in the GD extension could allow access to out-of-bounds memory via a ma…

Fix: after 4.20.1
Fix from $2,300 2019-09-06
Opensc HIGH 7.5
CVE-2019-16058

An issue was discovered in the pam_p11 component 0.2.0 and 0.3.0 for OpenSC. If a smart card creates a signature with a length longer than 256 bytes,…

Patch available
Fix from $1,950 2019-09-06
Debian Linux MEDIUM 6.4
CVE-2019-15946

OpenSC before 0.20.0-rc1 has an out-of-bounds access of an ASN.1 Octet string in asn1_decode_entry in libopensc/asn1.c.

Fix: after 0.19.0
Fix from $1,600 2019-09-05
Debian Linux MEDIUM 6.4
CVE-2019-15945

OpenSC before 0.20.0-rc1 has an out-of-bounds access of an ASN.1 Bitstring in decode_bit_string in libopensc/asn1.c.

Fix: after 0.19.0
Fix from $1,600 2019-09-05
Srn 472s Firmware HIGH 7.5
CVE-2019-12223

An issue was discovered in NVR WebViewer on Hanwah Techwin SRN-472s 1.07_190502 devices, and other SRN-x devices before 2019-05-03. A system crash an…

Fix: 2019-05-03+
Fix from $1,950 2019-09-05
Ez Touch Editor HIGH 7.8
CVE-2019-13518

An attacker could use a specially crafted project file to overflow the buffer and execute code under the privileges of the EZ Touch Editor Versions 2…

Fix: after 2.1.0
Fix from $1,950 2019-09-04
Ez Plc Editor HIGH 7.8
CVE-2019-13522

An attacker could use a specially crafted project file to corrupt the memory and execute code under the privileges of the EZ PLC Editor Versions 1.8.…

Fix: after 1.8.41
Fix from $1,950 2019-09-04
Fontforge CRITICAL 9.8
CVE-2019-15785

FontForge 20190813 through 20190820 has a buffer overflow in PrefsUI_LoadPrefs in prefs.c.

Fix: after 20190801
Fix from $2,300 2019-08-29
Dynamixel Sdk CRITICAL 9.8
CVE-2019-15786

ROBOTIS Dynamixel SDK through 3.7.11 has a buffer overflow via a large rxpacket.

Fix: after 3.7.11
Fix from $2,300 2019-08-29
Lute Tab CRITICAL 9.8
CVE-2019-15783

Lute-Tab before 2019-08-23 has a buffer overflow in pdf_print.cc.

Fix: 2019-08-23+
Fix from $2,300 2019-08-29
Zephyr HIGH 7.8
CVE-2017-14202

Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in the shell component of Zephyr allows a serial or telnet conn…

Fix: 1.14.0+
Fix from $1,950 2019-08-29
Cs31x Firmware CRITICAL 9.8
CVE-2019-9932

Various Lexmark products have a Buffer Overflow (issue 2 of 3).

No fix yet
Fix from $2,300 2019-08-28
Cs31x Firmware CRITICAL 9.8
CVE-2019-9933

Various Lexmark products have a Buffer Overflow (issue 3 of 3).

No fix yet
Fix from $2,300 2019-08-28