Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Memory Buffer Bounds ErrorCWE-119 × clear
Windows 10 HIGH 7.8
CVE-2016-0026EPSS 7%

The Common Log File System (CLFS) driver in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Serv…

Mitigation only
Fix from $1,950 2016-11-10
Geforce Experience HIGH 8.8
CVE-2016-8812

For the NVIDIA Quadro, NVS, and GeForce products, NVIDIA GeForce Experience R340 before GFE 2.11.4.125 and R375 before GFE 3.1.0.52 contains a vulner…

Patch available
Fix from $1,950 2016-11-08
Rumba CRITICAL 9.8
CVE-2016-9176

Stack buffer overflow in the send.exe and receive.exe components of Micro Focus Rumba 9.4 and earlier could be used by local attackers or attackers a…

Fix: after 9.4.0
Fix from $2,300 2016-11-04
Meeting Server CRITICAL 9.8
CVE-2016-6448

A vulnerability in the Session Description Protocol (SDP) parser of Cisco Meeting Server could allow an unauthenticated, remote attacker to execute a…

Mitigation only
Fix from $2,300 2016-11-03
Meeting App CRITICAL 9.8
CVE-2016-6447

A vulnerability in Cisco Meeting Server and Meeting App could allow an unauthenticated, remote attacker to execute arbitrary code on an affected syst…

Mitigation only
Fix from $2,300 2016-11-03
Ios Xe CRITICAL 9.8
CVE-2016-6441

A vulnerability in the Transaction Language 1 (TL1) code of Cisco ASR 900 Series routers could allow an unauthenticated, remote attacker to cause a r…

Mitigation only
Fix from $2,300 2016-11-03
Mujs HIGH 7.5
CVE-2016-9136

Artifex Software, Inc. MuJS before a0ceaf5050faf419401fe1b83acfa950ec8a8a89 allows context-dependent attackers to obtain sensitive information by usi…

Fix: after 2016-10-31
Fix from $1,950 2016-11-03
Netiron Os HIGH 7.5
CVE-2016-8203

A memory corruption in the IPsec code path of Brocade NetIron OS on Brocade MLXs 5.8.00 through 5.8.00e, 5.9.00 through 5.9.00bd, 6.0.00, and 6.0.00a…

Fix: after 5.9.00bd
Fix from $1,950 2016-10-31
Openjpeg MEDIUM 5.3
CVE-2016-9118

Heap Buffer Overflow (WRITE of size 4) in function pnmtoimage of convert.c:1719 in OpenJPEG 2.1.2.

No fix yet
Fix from $1,600 2016-10-30
Openjpeg MEDIUM 6.5
CVE-2016-9115

Heap Buffer Over-read in function imagetotga of convert.c(jp2):942 in OpenJPEG 2.1.2. Impact is Denial of Service. Someone must open a crafted j2k fi…

No fix yet
Fix from $1,600 2016-10-30
Mujs CRITICAL 9.8
CVE-2016-7505

A buffer overflow vulnerability was observed in divby function of Artifex Software, Inc. MuJS before 8c805b4eb19cf2af689c860b77e6111d2ee439d5. A succ…

Patch available
Fix from $2,300 2016-10-29
System Management Homepage HIGH 7.5
CVE-2016-4396

HPE System Management Homepage before v7.6 allows remote attackers to have an unspecified impact via unknown vectors, related to a "Buffer Overflow" …

Fix: after 7.5.5.0
Fix from $1,950 2016-10-28
System Management Homepage HIGH 7.5
CVE-2016-4395

HPE System Management Homepage before v7.6 allows remote attackers to have an unspecified impact via unknown vectors, related to a "Buffer Overflow" …

Fix: after 7.5.5.0
Fix from $1,950 2016-10-28
Argus HIGH 7.8
CVE-2016-8335

An exploitable stack based buffer overflow vulnerability exists in the ipNameAdd functionality of Iceni Argus Version 6.6.04 (Sep 7 2012) NK - Linux …

No fix yet
Fix from $1,950 2016-10-28
Argus HIGH 7.8
CVE-2016-8333

An exploitable stack-based buffer overflow vulnerability exists in the ipfSetColourStroke functionality of Iceni Argus version 6.6.04 A specially cra…

No fix yet
Fix from $1,950 2016-10-28
Libcsp CRITICAL 9.8
CVE-2016-8598

Buffer overflow in the zmq interface in csp_if_zmqhub.c in the libcsp library v1.4 and earlier allows hostile computers connected via a zmq interface…

Fix: after 1.4
Fix from $2,300 2016-10-28
Libcsp CRITICAL 9.8
CVE-2016-8597

Buffer overflow in the csp_sfp_recv_fp in csp_sfp.c in the libcsp library v1.4 and earlier allows hostile components with network access to the SFP u…

Fix: after 1.4
Fix from $2,300 2016-10-28
Libcsp CRITICAL 9.8
CVE-2016-8596

Buffer overflow in the csp_can_process_frame in csp_if_can.c in the libcsp library v1.4 and earlier allows hostile components connected to the canbus…

Fix: after 1.4
Fix from $2,300 2016-10-28
Openjpeg HIGH 7.8
CVE-2016-8332

A buffer overflow in OpenJPEG 2.1.1 causes arbitrary code execution when parsing a crafted image. An exploitable code execution vulnerability exists …

No fix yet
Fix from $1,950 2016-10-28
Adaptive Security Appliance Software HIGH 8.1
CVE-2016-6432EPSS 7%

A vulnerability in the Identity Firewall feature of Cisco ASA Software before 9.6(2.1) could allow an unauthenticated, remote attacker to cause a rel…

Mitigation only
Fix from $1,950 2016-10-27
Rumba Ftp HIGH 8.8
CVE-2016-5764EPSS 8%

Micro Focus Rumba FTP 4.X client buffer overflow makes it possible to corrupt the stack and allow arbitrary code execution. Fixed in: Rumba FTP 4.5 (…

No fix yet
Fix from $1,950 2016-10-27
Acrobat CRITICAL 9.8
CVE-2016-7854

Adobe Reader and Acrobat before 11.0.18, Acrobat and Acrobat Reader DC Classic before 15.006.30243, and Acrobat and Acrobat Reader DC Continuous befo…

Fix: after 15.017.20053
Fix from $2,300 2016-10-21
Acrobat CRITICAL 9.8
CVE-2016-7853

Adobe Reader and Acrobat before 11.0.18, Acrobat and Acrobat Reader DC Classic before 15.006.30243, and Acrobat and Acrobat Reader DC Continuous befo…

Fix: after 15.017.20053
Fix from $2,300 2016-10-21
Acrobat CRITICAL 9.8
CVE-2016-7852

Adobe Reader and Acrobat before 11.0.18, Acrobat and Acrobat Reader DC Classic before 15.006.30243, and Acrobat and Acrobat Reader DC Continuous befo…

Fix: after 15.017.20053
Fix from $2,300 2016-10-21
Linux Kernel MEDIUM 6.1
CVE-2016-8658

Stack-based buffer overflow in the brcmf_cfg80211_start_ap function in drivers/net/wireless/broadcom/brcm80211/brcmfmac/cfg80211.c in the Linux kerne…

Fix: after 4.7.4
Fix from $1,600 2016-10-16
Linux Kernel HIGH 7.8
CVE-2016-7425

The arcmsr_iop_message_xfer function in drivers/scsi/arcmsr/arcmsr_hba.c in the Linux kernel through 4.8.2 does not restrict a certain length field, …

Fix: 3.2.84 / 3.10.105+
Fix from $1,950 2016-10-16
Linux Kernel MEDIUM 6.2
CVE-2016-7042

The proc_keys_show function in security/keys/proc.c in the Linux kernel through 4.8.2, when the GNU Compiler Collection (gcc) stack protector is enab…

Fix: after 4.8.2
Fix from $1,600 2016-10-16
Edge HIGH 7.5
CVE-2016-7194EPSS 58%

The Chakra JavaScript engine in Microsoft Edge allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via…

Mitigation only
Fix from $1,950 2016-10-14
Office HIGH 7.8
CVE-2016-7193 KEVEPSS 58%

Microsoft Word 2007 SP2, Office 2010 SP2, Word 2013 SP1, Word 2013 RT SP1, Word 2016, Word for Mac 2011, Word 2016 for Mac, Office Compatibility Pack…

Patch available
Fix from $1,950 2016-10-14
Edge HIGH 7.5
CVE-2016-7190EPSS 67%

The Chakra JavaScript engine in Microsoft Edge allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via…

Mitigation only
Fix from $1,950 2016-10-14