Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Memory Buffer Bounds ErrorCWE-119 × clear
Openjpeg HIGH 10.0
CVE-2013-4290

Stack-based buffer overflow in OpenJPEG before 1.5.2 allows remote attackers to have unspecified impact via unknown vectors to (1) lib/openjp3d/opj_j…

Fix: after 1.5.1
Fix from $1,950 2014-04-18
Winamp HIGH 7.5
CVE-2013-4694EPSS 17%

Stack-based buffer overflow in gen_jumpex.dll in Winamp before 5.64 Build 3418 allows remote attackers to cause a denial of service (crash) and possi…

Fix: after 5.63
Fix from $1,950 2014-04-16
N300 Netusb Nbg 419n Firmware HIGH 7.9
CVE-2014-0355

Multiple stack-based buffer overflows on the ZyXEL Wireless N300 NetUSB NBG-419N router with firmware 1.00(BFQ.6)C0 allow man-in-the-middle attackers…

Mitigation only
Fix from $1,950 2014-04-15
Debian Linux MEDIUM 5.0
CVE-2014-0159

Buffer overflow in the GetStatistics64 remote procedure call (RPC) in OpenAFS 1.4.8 before 1.6.7 allows remote attackers to cause a denial of service…

Mitigation only
Fix from $1,600 2014-04-14
Advantech Webaccess HIGH 7.5
CVE-2014-0764

By providing an overly long string to the NodeName parameter, an attacker may be able to overflow the static stack buffer. The attacker may then ex…

Fix: after 7.1
Fix from $1,950 2014-04-12
Advantech Webaccess HIGH 7.5
CVE-2014-0765

To exploit this vulnerability, the attacker sends data from the GotoCmd argument to control. If the value of the argument is overly long, the stati…

Fix: after 7.1
Fix from $1,950 2014-04-12
Advantech Webaccess HIGH 7.5
CVE-2014-0766

An attacker can exploit this vulnerability by copying an overly long NodeName2 argument into a statically sized buffer on the stack to overflow the…

Fix: after 7.1
Fix from $1,950 2014-04-12
Advantech Webaccess HIGH 7.5
CVE-2014-0767

An attacker may exploit this vulnerability by passing an overly long value from the AccessCode argument to the control. This will overflow the stat…

Fix: after 7.1
Fix from $1,950 2014-04-12
Advantech Webaccess HIGH 7.5
CVE-2014-0768

An attacker may pass an overly long value from the AccessCode2 argument to the control to overflow the static stack buffer. The attacker may then r…

Fix: after 7.1
Fix from $1,950 2014-04-12
Advantech Webaccess HIGH 7.5
CVE-2014-0770

By providing an overly long string to the UserName parameter, an attacker may be able to overflow the static stack buffer. The attacker may then ex…

Fix: after 7.1
Fix from $1,950 2014-04-12
Kingscada HIGH 10.0
CVE-2014-0787EPSS 16%

Stack-based buffer overflow in WellinTech KingSCADA before 3.1.2.13 allows remote attackers to execute arbitrary code via a crafted packet.

Fix: after 3.1.2
Fix from $1,950 2014-04-12
Blackberry Os HIGH 9.3
CVE-2014-2389EPSS 6%

Stack-based buffer overflow in a certain decryption function in qconnDoor on BlackBerry Z10 devices with software 10.1.0.2312, when developer-mode ha…

No fix yet
Fix from $1,950 2014-04-12
Ioserver Opc Server HIGH 7.8
CVE-2014-0777

The Modbus slave/outstation driver in the OPC Drivers 1.0.20 and earlier in IOServer OPC Server allows remote attackers to cause a denial of service …

Fix: after 1.0.20
Fix from $1,950 2014-04-11
Jbig Kit MEDIUM 6.8
CVE-2013-6369

Stack-based buffer overflow in the jbg_dec_in function in libjbig/jbig.c in JBIG-KIT before 2.1 allows remote attackers to cause a denial of service …

Fix: after 2.0
Fix from $1,600 2014-04-11
Flash Player HIGH 9.3
CVE-2014-0507EPSS 6%

Buffer overflow in Adobe Flash Player before 11.7.700.275 and 11.8.x through 13.0.x before 13.0.0.182 on Windows and OS X and before 11.2.202.350 on …

Fix: after 4.0.0.1628
Fix from $1,950 2014-04-08
Office Compatibility Pack HIGH 9.3
CVE-2014-1757EPSS 17%

Microsoft Word 2007 SP3 and 2010 SP1 and SP2, and Office Compatibility Pack SP3, allocates memory incorrectly for file conversions from a binary (aka…

Mitigation only
Fix from $1,950 2014-04-08
Word HIGH 9.3
CVE-2014-1758EPSS 17%

Stack-based buffer overflow in Microsoft Word 2003 SP3 allows remote attackers to execute arbitrary code via a crafted document, aka "Microsoft Word …

Mitigation only
Fix from $1,950 2014-04-08
Rendezvous HIGH 7.5
CVE-2014-2543

Buffer overflow in the Rendezvous Daemon (rvd), Rendezvous Routing Daemon (rvrd), Rendezvous Secure Daemon (rvsd), and Rendezvous Secure Routing Daem…

Fix: after 8.7.0
Fix from $1,950 2014-04-08
Hylafax\+ MEDIUM 6.8
CVE-2013-5680EPSS 8%

Heap-based buffer overflow in hfaxd in HylaFAX+ 5.2.4 through 5.5.3, when using LDAP authentication, might allow remote attackers to cause a denial o…

No fix yet
Fix from $1,600 2014-04-06
Opc Factory Server Tlxcdlfofs HIGH 7.8
CVE-2014-0789

Multiple buffer overflows in the OPC Automation 2.0 Server Object ActiveX control in Schneider Electric OPC Factory Server (OFS) TLXCDSUOFS33 3.5 and…

Fix: after 3.35
Fix from $1,950 2014-04-04
Core Ftp HIGH 9.3
CVE-2013-3930

Stack-based buffer overflow in Core FTP before 2.2 build 1785 allows remote FTP servers to execute arbitrary code via a crafted directory name in a C…

Fix: after 2.2
Fix from $1,950 2014-04-04
Kies HIGH 10.0
CVE-2012-6429EPSS 15%

Buffer overflow in the PrepareSync method in the SyncService.dll ActiveX control in Samsung Kies before 2.5.1.12123_2_7 allows remote attackers to ex…

Fix: after 2.5.0.12114_1
Fix from $1,950 2014-04-04
Safari MEDIUM 6.8
CVE-2014-1305

WebKit, as used in Apple Safari before 6.1.3 and 7.x before 7.0.3, allows remote attackers to execute arbitrary code or cause a denial of service (me…

Fix: after 6.1.2
Fix from $1,600 2014-04-02
Safari MEDIUM 6.8
CVE-2014-1307

WebKit, as used in Apple Safari before 6.1.3 and 7.x before 7.0.3, allows remote attackers to execute arbitrary code or cause a denial of service (me…

Fix: after 6.1.2
Fix from $1,600 2014-04-02
Safari MEDIUM 6.8
CVE-2014-1308

WebKit, as used in Apple Safari before 6.1.3 and 7.x before 7.0.3, allows remote attackers to execute arbitrary code or cause a denial of service (me…

Fix: after 6.1.2
Fix from $1,600 2014-04-02
Safari MEDIUM 6.8
CVE-2014-1309

WebKit, as used in Apple Safari before 6.1.3 and 7.x before 7.0.3, allows remote attackers to execute arbitrary code or cause a denial of service (me…

Fix: after 6.1.2
Fix from $1,600 2014-04-02
Safari MEDIUM 6.8
CVE-2014-1310

WebKit, as used in Apple Safari before 6.1.3 and 7.x before 7.0.3, allows remote attackers to execute arbitrary code or cause a denial of service (me…

Fix: after 6.1.2
Fix from $1,600 2014-04-02
Safari MEDIUM 6.8
CVE-2014-1311

WebKit, as used in Apple Safari before 6.1.3 and 7.x before 7.0.3, allows remote attackers to execute arbitrary code or cause a denial of service (me…

Fix: after 6.1.2
Fix from $1,600 2014-04-02
Safari MEDIUM 6.8
CVE-2014-1312

WebKit, as used in Apple Safari before 6.1.3 and 7.x before 7.0.3, allows remote attackers to execute arbitrary code or cause a denial of service (me…

Fix: after 6.1.2
Fix from $1,600 2014-04-02
Safari MEDIUM 6.8
CVE-2014-1313

WebKit, as used in Apple Safari before 6.1.3 and 7.x before 7.0.3, allows remote attackers to execute arbitrary code or cause a denial of service (me…

Fix: after 6.1.2
Fix from $1,600 2014-04-02