Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Memory Buffer Bounds ErrorCWE-119 × clear
Flash Player HIGH 8.8
CVE-2016-0960

Adobe Flash Player before 18.0.0.333 and 19.x through 21.x before 21.0.0.182 on Windows and OS X and before 11.2.202.577 on Linux, Adobe AIR before 2…

Fix: after 20.2.2.306
Fix from $1,950 2016-03-12
Dpc2203 Cable Modem Firmware CRITICAL 9.8
CVE-2016-1327EPSS 6%

Buffer overflow in the web server on Cisco DPC2203 and EPC2203 devices with firmware r1_customer_image allows remote attackers to execute arbitrary c…

Mitigation only
Fix from $2,300 2016-03-09
Asa 5500 Csc Ssm Firmware HIGH 7.5
CVE-2016-1312

The HTTPS inspection engine in the Content Security and Control Security Services Module (CSC-SSM) 6.6 before 6.6.1164.0 for Cisco ASA 5500 devices a…

Mitigation only
Fix from $1,950 2016-03-09
Acrobat CRITICAL 9.8
CVE-2016-1009EPSS 6%

Adobe Reader and Acrobat before 11.0.15, Acrobat and Acrobat Reader DC Classic before 15.006.30121, and Acrobat and Acrobat Reader DC Continuous befo…

Fix: after 15.010.20059
Fix from $2,300 2016-03-09
Acrobat CRITICAL 9.8
CVE-2016-1007EPSS 6%

Adobe Reader and Acrobat before 11.0.15, Acrobat and Acrobat Reader DC Classic before 15.006.30121, and Acrobat and Acrobat Reader DC Continuous befo…

Fix: after 15.010.20059
Fix from $2,300 2016-03-09
Digital Editions CRITICAL 9.8
CVE-2016-0954EPSS 17%

Adobe Digital Editions before 4.5.1 allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vecto…

Fix: after 4.5.0
Fix from $2,300 2016-03-09
Office HIGH 7.8
CVE-2016-0134EPSS 18%

Microsoft Word 2007 SP3, Office 2010 SP2, Word 2010 SP2, Word 2013 SP1, Word 2013 RT SP1, Word 2016, Word for Mac 2011, Word 2016 for Mac, Office Com…

Mitigation only
Fix from $1,950 2016-03-09
Edge HIGH 7.5
CVE-2016-0130EPSS 13%

Microsoft Edge allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Micros…

Mitigation only
Fix from $1,950 2016-03-09
Edge HIGH 7.5
CVE-2016-0129EPSS 13%

Microsoft Edge allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Micros…

Mitigation only
Fix from $1,950 2016-03-09
Edge HIGH 7.5
CVE-2016-0124EPSS 13%

Microsoft Edge allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Micros…

Mitigation only
Fix from $1,950 2016-03-09
Edge HIGH 7.5
CVE-2016-0123EPSS 17%

Microsoft Edge allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Micros…

Mitigation only
Fix from $1,950 2016-03-09
Edge HIGH 7.5
CVE-2016-0116EPSS 10%

Microsoft Edge allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Micros…

Mitigation only
Fix from $1,950 2016-03-09
Edge HIGH 7.5
CVE-2016-0111EPSS 41%

Microsoft Internet Explorer 9 through 11 and Microsoft Edge allow remote attackers to execute arbitrary code or cause a denial of service (memory cor…

No fix yet
Fix from $1,950 2016-03-09
Edge HIGH 7.5
CVE-2016-0110EPSS 14%

Microsoft Internet Explorer 10 through 11 and Microsoft Edge allow remote attackers to execute arbitrary code or cause a denial of service (memory co…

Mitigation only
Fix from $1,950 2016-03-09
Edge HIGH 7.5
CVE-2016-0109EPSS 17%

Microsoft Internet Explorer 11 and Microsoft Edge allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) v…

Mitigation only
Fix from $1,950 2016-03-09
Edge HIGH 7.5
CVE-2016-0105EPSS 14%

Microsoft Internet Explorer 9 through 11 and Microsoft Edge allow remote attackers to execute arbitrary code or cause a denial of service (memory cor…

Mitigation only
Fix from $1,950 2016-03-09
Edge HIGH 7.5
CVE-2016-0102EPSS 17%

Microsoft Internet Explorer 11 and Microsoft Edge allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) v…

Mitigation only
Fix from $1,950 2016-03-09
Infopath HIGH 7.8
CVE-2016-0021EPSS 22%

Microsoft InfoPath 2007 SP3, 2010 SP2, and 2013 SP1 allows remote attackers to execute arbitrary code via a crafted Office document, aka "Microsoft O…

Mitigation only
Fix from $1,950 2016-03-09
Prime Infrastructure MEDIUM 6.4
CVE-2016-1358

Cisco Prime Infrastructure 2.2, 3.0, and 3.1(0.0) allows remote authenticated users to read arbitrary files or cause a denial of service via an XML d…

Mitigation only
Fix from $1,600 2016-03-03
OpenSSL CRITICAL 9.8
CVE-2016-0799EPSS 33%

The fmtstr function in crypto/bio/b_print.c in OpenSSL 1.0.1 before 1.0.1s and 1.0.2 before 1.0.2g improperly calculates string lengths, which allows…

Mitigation only
Fix from $2,300 2016-03-03
Tivoli Storage Manager Fastback CRITICAL 9.8
CVE-2016-0216

Stack-based buffer overflow in IBM Tivoli Storage Manager FastBack 5.5 and 6.1.x through 6.1.11.1 allows remote attackers to cause a denial of servic…

Mitigation only
Fix from $2,300 2016-02-29
Tivoli Storage Manager Fastback CRITICAL 9.8
CVE-2016-0213

Stack-based buffer overflow in IBM Tivoli Storage Manager FastBack 5.5 and 6.1.x through 6.1.11.1 allows remote attackers to cause a denial of servic…

Mitigation only
Fix from $2,300 2016-02-29
Tivoli Storage Manager Fastback CRITICAL 9.8
CVE-2016-0212

Stack-based buffer overflow in IBM Tivoli Storage Manager FastBack 5.5 and 6.1.x through 6.1.11.1 allows remote attackers to cause a denial of servic…

Mitigation only
Fix from $2,300 2016-02-29
Wireshark MEDIUM 5.9
CVE-2016-2532

The dissect_llrp_parameters function in epan/dissectors/packet-llrp.c in the LLRP dissector in Wireshark 1.12.x before 1.12.10 and 2.0.x before 2.0.2…

Mitigation only
Fix from $1,600 2016-02-28
Wireshark MEDIUM 5.9
CVE-2016-2531

Off-by-one error in epan/dissectors/packet-rsl.c in the RSL dissector in Wireshark 1.12.x before 1.12.10 and 2.0.x before 2.0.2 allows remote attacke…

Mitigation only
Fix from $1,600 2016-02-28
Wireshark MEDIUM 5.9
CVE-2016-2530

The dissct_rsl_ipaccess_msg function in epan/dissectors/packet-rsl.c in the RSL dissector in Wireshark 1.12.x before 1.12.10 and 2.0.x before 2.0.2 m…

Mitigation only
Fix from $1,600 2016-02-28
Wireshark MEDIUM 5.5
CVE-2016-2529

The iseries_check_file_type function in wiretap/iseries.c in the iSeries file parser in Wireshark 2.0.x before 2.0.2 does not consider that a line ma…

Mitigation only
Fix from $1,600 2016-02-28
Wireshark MEDIUM 5.9
CVE-2016-2522

The dissect_ber_constrained_bitstring function in epan/dissectors/packet-ber.c in the ASN.1 BER dissector in Wireshark 2.0.x before 2.0.2 does not ve…

No fix yet
Fix from $1,600 2016-02-28
Flexnet Publisher CRITICAL 9.8
CVE-2015-8277EPSS 28%

Multiple buffer overflows in (1) lmgrd and (2) Vendor Daemon in Flexera FlexNet Publisher before 11.13.1.2 Security Update 1 allow remote attackers t…

Fix: after 11.13.1.0
Fix from $2,300 2016-02-24
Debian Linux MEDIUM 6.5
CVE-2016-2037EPSS 5%

The cpio_safer_name_suffix function in util.c in cpio 2.11 allows remote attackers to cause a denial of service (out-of-bounds write) via a crafted c…

Mitigation only
Fix from $1,600 2016-02-22