Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Memory Buffer Bounds ErrorCWE-119 × clear
Unified Computing System HIGH 7.5
CVE-2017-6633

A vulnerability in the TCP throttling process of Cisco UCS C-Series Rack Servers 3.0(0.234) could allow an unauthenticated, remote attacker to cause …

Mitigation only
Fix from $1,950 2017-05-22
F1200 Firmware HIGH 8.0
CVE-2017-9138

There is a debug-interface vulnerability on some Tenda routers (FH1202/F1202/F1200: versions before 1.2.0.20). After connecting locally to a router i…

Fix: after 1.2.0.19
Fix from $1,950 2017-05-21
Winplc7 Firmware HIGH 7.5
CVE-2017-5177EPSS 18%

A Stack Buffer Overflow issue was discovered in VIPA Controls WinPLC7 5.0.45.5921 and prior. A stack-based buffer overflow vulnerability has been ide…

Fix: after 5.0.45.5921
Fix from $1,950 2017-05-19
Web Server CRITICAL 9.8
CVE-2017-6025

A Stack Buffer Overflow issue was discovered in 3S-Smart Software Solutions GmbH CODESYS Web Server. The following versions of CODESYS Web Server, pa…

Fix: after 2.3
Fix from $2,300 2017-05-19
Libxml2 HIGH 7.5
CVE-2017-9047

A buffer overflow was discovered in libxml2 20904-GITv2.9.4-16-g0741801. The function xmlSnprintfElementContent in valid.c is supposed to recursively…

Patch available
Fix from $1,950 2017-05-18
Libxml2 HIGH 7.5
CVE-2017-9048

libxml2 20904-GITv2.9.4-16-g0741801 is vulnerable to a stack-based buffer overflow. The function xmlSnprintfElementContent in valid.c is supposed to …

Patch available
Fix from $1,950 2017-05-18
Libdwarf CRITICAL 9.8
CVE-2017-9052

An issue, also known as DW201703-006, was discovered in libdwarf 2017-03-21. A heap-based buffer over-read in dwarf_formsdata() is due to a failure t…

Mitigation only
Fix from $2,300 2017-05-18
Trip Mate 6 Firmware MEDIUM 6.5
CVE-2017-9025

Heap buffer overflow in vshttpd (aka ioos) in HooToo Trip Mate 6 (TM6) firmware 2.000.030 and earlier allows remote unauthenticated attackers to cont…

Fix: after 2.000.030
Fix from $1,600 2017-05-17
Trip Mate 6 Firmware CRITICAL 9.8
CVE-2017-9026

Stack buffer overflow in vshttpd (aka ioos) in HooToo Trip Mate 6 (TM6) firmware 2.000.030 and earlier allows remote unauthenticated attackers to con…

Fix: after 2.000.030
Fix from $2,300 2017-05-17
Small Business Rv Router Firmware CRITICAL 9.6
CVE-2017-3882

A vulnerability in the Universal Plug-and-Play (UPnP) implementation in the Cisco CVR100W Wireless-N VPN Router could allow an unauthenticated, Layer…

Mitigation only
Fix from $2,300 2017-05-16
Libraw CRITICAL 9.8
CVE-2017-6886

An error within the "parse_tiff_ifd()" function (internal/dcraw_common.cpp) in LibRaw versions before 0.18.2 can be exploited to corrupt memory.

Fix: after 0.18.1
Fix from $2,300 2017-05-16
Libraw HIGH 7.8
CVE-2017-6887

A boundary error within the "parse_tiff_ifd()" function (internal/dcraw_common.cpp) in LibRaw versions before 0.18.2 can be exploited to cause a memo…

Fix: after 0.18.1
Fix from $1,950 2017-05-16
Android HIGH 7.8
CVE-2016-10239

In TrustZone access control policy may potentially be bypassed in all Android releases from CAF using the Linux kernel due to improper input validati…

Patch available
Fix from $1,950 2017-05-16
Android HIGH 7.8
CVE-2014-9931

A buffer overflow vulnerability in all Android releases from CAF using the Linux kernel can potentially occur if an OEM performs an app region size c…

Patch available
Fix from $1,950 2017-05-16
Android HIGH 7.8
CVE-2014-9937

In TrustZone a buffer overflow vulnerability can potentially occur in a DRM routine in all Android releases from CAF using the Linux kernel.

Patch available
Fix from $1,950 2017-05-16
Android HIGH 7.8
CVE-2015-8999

In TrustZone a buffer overflow vulnerability can potentially occur in all Android releases from CAF using the Linux kernel while loading an ELF file.

Patch available
Fix from $1,950 2017-05-16
Libraw Demosaic Pack Gpl2 CRITICAL 9.8
CVE-2017-6890

A boundary error within the "foveon_load_camf()" function (dcraw_foveon.c) when initializing a huffman table in LibRaw-demosaic-pack-GPL2 before 0.18…

Fix: after 0.18.1
Fix from $2,300 2017-05-15
Logview Pro HIGH 7.8
CVE-2017-8926

Buffer overflow in Halliburton LogView Pro 10.0.1 allows attackers to cause a denial of service or possibly have unspecified other impact via a craft…

No fix yet
Fix from $1,950 2017-05-15
Vizex Reader HIGH 7.8
CVE-2017-8927

Buffer overflow in Larson VizEx Reader 9.7.5 allows attackers to cause a denial of service or possibly have unspecified other impact via a crafted .t…

No fix yet
Fix from $1,950 2017-05-15
Edge CRITICAL 9.8
CVE-2017-0223EPSS 15%

A remote code execution vulnerability exists in Microsoft Chakra Core in the way JavaScript engines render when handling objects in memory. aka "Scri…

Patch available
Fix from $2,300 2017-05-15
Edge CRITICAL 9.8
CVE-2017-0252EPSS 13%

A remote code execution vulnerability exists in Microsoft Chakra Core in the way JavaScript engines render when handling objects in memory. aka "Scri…

Patch available
Fix from $2,300 2017-05-15
Android HIGH 7.8
CVE-2017-8245

In all Android releases from CAF using the Linux kernel, while processing a voice SVC request which is nonstandard by specifying a payload size that …

Mitigation only
Fix from $1,950 2017-05-12
Android HIGH 7.8
CVE-2017-0587

A remote code execution vulnerability in libmpeg2 in Mediaserver could enable an attacker using a specially crafted file to cause memory corruption d…

Patch available
Fix from $1,950 2017-05-12
Android HIGH 7.8
CVE-2017-0588

A remote code execution vulnerability in id3/ID3.cpp in libstagefright in Mediaserver could enable an attacker using a specially crafted file to caus…

Patch available
Fix from $1,950 2017-05-12
Android HIGH 7.8
CVE-2017-0589

A remote code execution vulnerability in libhevc in Mediaserver could enable an attacker using a specially crafted file to cause memory corruption du…

Patch available
Fix from $1,950 2017-05-12
Android HIGH 7.8
CVE-2017-0590

A remote code execution vulnerability in libhevc in Mediaserver could enable an attacker using a specially crafted file to cause memory corruption du…

Patch available
Fix from $1,950 2017-05-12
Android HIGH 7.8
CVE-2017-0591

A remote code execution vulnerability in libavc in Mediaserver could enable an attacker using a specially crafted file to cause memory corruption dur…

Patch available
Fix from $1,950 2017-05-12
Android HIGH 7.8
CVE-2017-0592

A remote code execution vulnerability in FLACExtractor.cpp in libstagefright in Mediaserver could enable an attacker using a specially crafted file t…

Patch available
Fix from $1,950 2017-05-12
Powerpoint For Mac HIGH 7.8
CVE-2017-0264EPSS 14%

Microsoft PowerPoint for Mac 2011 allows a remote code execution vulnerability when the software fails to properly handle objects in memory, aka "Mic…

Patch available
Fix from $1,950 2017-05-12
Powerpoint For Mac HIGH 7.8
CVE-2017-0265EPSS 19%

Microsoft PowerPoint for Mac 2011 allows a remote code execution vulnerability when the software fails to properly handle objects in memory, aka "Mic…

Patch available
Fix from $1,950 2017-05-12