Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Memory Buffer Bounds ErrorCWE-119 × clear
Acrobat HIGH 8.8
CVE-2016-4195

Adobe Reader and Acrobat before 11.0.17, Acrobat and Acrobat Reader DC Classic before 15.006.30198, and Acrobat and Acrobat Reader DC Continuous befo…

Fix: after 15.016.20045
Fix from $1,950 2016-07-13
Acrobat CRITICAL 9.8
CVE-2016-4194EPSS 5%

Adobe Reader and Acrobat before 11.0.17, Acrobat and Acrobat Reader DC Classic before 15.006.30198, and Acrobat and Acrobat Reader DC Continuous befo…

Fix: after 15.016.20045
Fix from $2,300 2016-07-13
Acrobat CRITICAL 9.8
CVE-2016-4193

Adobe Reader and Acrobat before 11.0.17, Acrobat and Acrobat Reader DC Classic before 15.006.30198, and Acrobat and Acrobat Reader DC Continuous befo…

Fix: after 15.016.20045
Fix from $2,300 2016-07-13
Acrobat CRITICAL 9.8
CVE-2016-4192

Adobe Reader and Acrobat before 11.0.17, Acrobat and Acrobat Reader DC Classic before 15.006.30198, and Acrobat and Acrobat Reader DC Continuous befo…

Fix: after 15.016.20045
Fix from $2,300 2016-07-13
Acrobat CRITICAL 9.8
CVE-2016-4191

Adobe Reader and Acrobat before 11.0.17, Acrobat and Acrobat Reader DC Classic before 15.006.30198, and Acrobat and Acrobat Reader DC Continuous befo…

Fix: after 15.016.20045
Fix from $2,300 2016-07-13
Excel HIGH 7.8
CVE-2016-3284EPSS 20%

Microsoft Excel 2007 SP3, Excel 2010 SP2, Excel 2013 SP1, Excel 2013 RT SP1, Excel 2016, Excel for Mac 2011, Excel 2016 for Mac, Office Compatibility…

Mitigation only
Fix from $1,950 2016-07-13
Word Viewer HIGH 7.8
CVE-2016-3283EPSS 20%

Microsoft Word Viewer allows remote attackers to execute arbitrary code via a crafted Office document, aka "Microsoft Office Memory Corruption Vulner…

Mitigation only
Fix from $1,950 2016-07-13
Office HIGH 7.8
CVE-2016-3282EPSS 26%

Microsoft Word 2007 SP3, Office 2010 SP2, Word 2010 SP2, Word 2013 SP1, Word 2013 RT SP1, Word 2016, Word for Mac 2011, Word 2016 for Mac, Office Com…

Mitigation only
Fix from $1,950 2016-07-13
Office HIGH 7.8
CVE-2016-3281EPSS 20%

Microsoft Office 2010 SP2, Word 2010 SP2, Word 2013 SP1, Word 2013 RT SP1, Word 2016, Word for Mac 2011, Word 2016 for Mac, Word Automation Services …

Mitigation only
Fix from $1,950 2016-07-13
Office HIGH 7.8
CVE-2016-3280EPSS 20%

Microsoft Word 2007 SP3, Office 2010 SP2, Word 2010 SP2, Word 2013 SP1, Word 2013 RT SP1, Word for Mac 2011, Word 2016 for Mac, Office Compatibility …

Mitigation only
Fix from $1,950 2016-07-13
Outlook HIGH 7.8
CVE-2016-3278EPSS 20%

Microsoft Outlook 2010 SP2, 2013 SP1, 2013 RT SP1, and 2016 allows remote attackers to execute arbitrary code via a crafted Office document, aka "Mic…

Mitigation only
Fix from $1,950 2016-07-13
Edge HIGH 8.8
CVE-2016-3269EPSS 21%

The Chakra JavaScript engine in Microsoft Edge allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via…

Mitigation only
Fix from $1,950 2016-07-13
Edge HIGH 8.8
CVE-2016-3265EPSS 21%

The Chakra JavaScript engine in Microsoft Edge allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via…

Mitigation only
Fix from $1,950 2016-07-13
Edge HIGH 7.5
CVE-2016-3264EPSS 14%

Microsoft Internet Explorer 9 through 11 and Microsoft Edge allow remote attackers to execute arbitrary code or cause a denial of service (memory cor…

Mitigation only
Fix from $1,950 2016-07-13
Edge HIGH 8.8
CVE-2016-3260EPSS 23%

The Microsoft (1) JScript 9, (2) VBScript, and (3) Chakra JavaScript engines, as used in Microsoft Internet Explorer 11, Microsoft Edge, and other pr…

Mitigation only
Fix from $1,950 2016-07-13
Edge HIGH 8.8
CVE-2016-3259EPSS 36%

The Microsoft (1) JScript 9, (2) VBScript, and (3) Chakra JavaScript engines, as used in Microsoft Internet Explorer 9 through 11, Microsoft Edge, an…

Mitigation only
Fix from $1,950 2016-07-13
Edge HIGH 8.8
CVE-2016-3248EPSS 23%

The Microsoft (1) JScript 9, (2) VBScript, and (3) Chakra JavaScript engines, as used in Microsoft Internet Explorer 9 through 11, Microsoft Edge, an…

Mitigation only
Fix from $1,950 2016-07-13
Edge HIGH 7.5
CVE-2016-3246EPSS 14%

Microsoft Edge allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Micros…

Mitigation only
Fix from $1,950 2016-07-13
Spring Framework MEDIUM 5.5
CVE-2015-3192

Pivotal Spring Framework before 3.2.14 and 4.x before 4.1.7 do not properly process inline DTD declarations when DTD is not entirely disabled, which …

Mitigation only
Fix from $1,600 2016-07-12
Levistudio HIGH 7.8
CVE-2016-5781EPSS 16%

Stack-based buffer overflow in WECON LeviStudio allows remote attackers to execute arbitrary code via a crafted file.

Mitigation only
Fix from $1,950 2016-07-12
Client Intrusion Detection System MEDIUM 5.5
CVE-2016-5308

The Client Intrusion Detection System (CIDS) driver before 15.0.6 in Symantec Endpoint Protection (SEP) and before 15.1.2 in Norton Security allows r…

Fix: 15.0.6 / 15.1.2+
Fix from $1,600 2016-07-12
Levistudiou HIGH 7.8
CVE-2016-4533EPSS 13%

Heap-based buffer overflow in WECON LeviStudio allows remote attackers to execute arbitrary code via a crafted file.

Mitigation only
Fix from $1,950 2016-07-12
Android HIGH 7.8
CVE-2016-3758

Multiple buffer overflows in libdex/OptInvocation.cpp in DexClassLoader in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x …

Mitigation only
Fix from $1,950 2016-07-11
Android CRITICAL 9.8
CVE-2016-3745

Multiple buffer overflows in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-07-01 allow attacke…

Mitigation only
Fix from $2,300 2016-07-11
Android HIGH 7.5
CVE-2016-3744

Buffer overflow in the create_pbuf function in btif/src/btif_hh.c in Bluetooth in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, a…

Mitigation only
Fix from $1,950 2016-07-11
Android HIGH 7.8
CVE-2016-2508

media/libmediaplayerservice/nuplayer/GenericSource.cpp in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x be…

Mitigation only
Fix from $1,950 2016-07-11
Android HIGH 7.8
CVE-2016-2507

Integer overflow in codecs/on2/h264dec/source/h264bsd_storage.c in libstagefright in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1…

Mitigation only
Fix from $1,950 2016-07-11
Android CRITICAL 9.8
CVE-2016-2506

DRMExtractor.cpp in libstagefright in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-07-01 does…

Mitigation only
Fix from $2,300 2016-07-11
Android HIGH 7.8
CVE-2016-2505

mpeg2ts/ATSParser.cpp in libstagefright in mediaserver in Android 6.x before 2016-07-01 does not validate a certain section length, which allows remo…

Fix: after 6.0.1
Fix from $1,950 2016-07-11
Android MEDIUM 5.5
CVE-2015-8893

app/aboot/aboot.c in the Qualcomm bootloader in Android before 2016-07-05 on Nexus 5 and 7 (2013) devices allows attackers to cause a denial of servi…

Fix: after 6.0.1
Fix from $1,600 2016-07-11