Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Memory Buffer Bounds ErrorCWE-119 × clear
Acrobat Reader HIGH 10.0
CVE-2013-3338EPSS 6%

Adobe Reader and Acrobat 9.x before 9.5.5, 10.x before 10.1.7, and 11.x before 11.0.03 allow attackers to execute arbitrary code or cause a denial of…

Patch available
Fix from $1,950 2013-05-16
Acrobat Reader HIGH 10.0
CVE-2013-3339EPSS 6%

Adobe Reader and Acrobat 9.x before 9.5.5, 10.x before 10.1.7, and 11.x before 11.0.03 allow attackers to execute arbitrary code or cause a denial of…

Patch available
Fix from $1,950 2013-05-16
Acrobat Reader HIGH 10.0
CVE-2013-3340

Adobe Reader and Acrobat 9.x before 9.5.5, 10.x before 10.1.7, and 11.x before 11.0.03 allow attackers to execute arbitrary code or cause a denial of…

Patch available
Fix from $1,950 2013-05-16
Acrobat Reader HIGH 10.0
CVE-2013-3341EPSS 6%

Adobe Reader and Acrobat 9.x before 9.5.5, 10.x before 10.1.7, and 11.x before 11.0.03 allow attackers to execute arbitrary code or cause a denial of…

Patch available
Fix from $1,950 2013-05-16
Firefox HIGH 10.0
CVE-2013-1676EPSS 6%

The SelectionIterator::GetNextSegment function in Mozilla Firefox before 21.0, Firefox ESR 17.x before 17.0.6, Thunderbird before 17.0.6, and Thunder…

Fix: after 20.0.1
Fix from $1,950 2013-05-16
Firefox HIGH 10.0
CVE-2013-1678EPSS 6%

The _cairo_xlib_surface_add_glyph function in Mozilla Firefox before 21.0, Firefox ESR 17.x before 17.0.6, Thunderbird before 17.0.6, and Thunderbird…

Fix: after 20.0.1
Fix from $1,950 2013-05-16
Firefox HIGH 10.0
CVE-2013-1680EPSS 6%

Use-after-free vulnerability in the nsFrameList::FirstChild function in Mozilla Firefox before 21.0, Firefox ESR 17.x before 17.0.6, Thunderbird befo…

Fix: after 20.0.1
Fix from $1,950 2013-05-16
Malware Protection Engine HIGH 9.3
CVE-2013-1346EPSS 12%

mpengine.dll in Microsoft Malware Protection Engine before 1.1.9506.0 on x64 platforms allows remote attackers to execute arbitrary code or cause a d…

Fix: after 1.1.9402.0
Fix from $1,950 2013-05-15
Publisher HIGH 10.0
CVE-2013-1320EPSS 29%

Buffer overflow in Microsoft Publisher 2003 SP3 allows remote attackers to execute arbitrary code via a crafted Publisher file, aka "Publisher Buffer…

Mitigation only
Fix from $1,950 2013-05-15
Lync HIGH 9.3
CVE-2013-1302EPSS 22%

Microsoft Communicator 2007 R2, Lync 2010, Lync 2010 Attendee, and Lync Server 2013 do not properly handle objects in memory, which allows remote att…

Mitigation only
Fix from $1,950 2013-05-15
Alphastor HIGH 9.3
CVE-2013-0946EPSS 29%

Buffer overflow in the Library Control Program (LCP) in EMC AlphaStor 4.0 before build 910 allows remote attackers to execute arbitrary code via craf…

No fix yet
Fix from $1,950 2013-05-10
Erdas Er Viewer HIGH 9.3
CVE-2013-0726EPSS 28%

Stack-based buffer overflow in the ERM_convert_to_correct_webpath function in ermapper_u.dll in ERDAS ER Viewer before 13.00.0001 allows remote attac…

Fix: after 11.04
Fix from $1,950 2013-05-05
Iprint HIGH 10.0
CVE-2013-1091EPSS 6%

Stack-based buffer overflow in Novell iPrint Client before 5.90 allows remote attackers to execute arbitrary code via unspecified vectors.

Fix: after 5.86
Fix from $1,950 2013-05-02
Subversion MEDIUM 5.0
CVE-2013-1884EPSS 51%

The mod_dav_svn Apache HTTPD server module in Subversion 1.7.0 through 1.7.8 allows remote attackers to cause a denial of service (segmentation fault…

Mitigation only
Fix from $1,600 2013-05-02
Unified Communications Domain Manager MEDIUM 5.0
CVE-2013-1230

Cisco Unified Communications Domain Manager allows remote attackers to cause a denial of service (CPU consumption) via a flood of malformed UDP packe…

Mitigation only
Fix from $1,600 2013-05-01
Spss Samplepower HIGH 9.3
CVE-2012-5947

Buffer overflow in the vsflex7l ActiveX control in IBM SPSS SamplePower 3.0 before FP1 allows remote attackers to execute arbitrary code via unspecif…

Mitigation only
Fix from $1,950 2013-04-30
Spss Samplepower HIGH 9.3
CVE-2012-5946EPSS 34%

Buffer overflow in the c1sizer ActiveX control in C1sizer.ocx in IBM SPSS SamplePower 3.0 before FP1 allows remote attackers to execute arbitrary cod…

Mitigation only
Fix from $1,950 2013-04-30
Spss Samplepower HIGH 9.3
CVE-2012-5945

Multiple buffer overflows in the Vsflex8l ActiveX control in IBM SPSS SamplePower 3.0 before FP1 allow remote attackers to execute arbitrary code via…

Mitigation only
Fix from $1,950 2013-04-30
Glibc MEDIUM 5.0
CVE-2013-1914

Stack-based buffer overflow in the getaddrinfo function in sysdeps/posix/getaddrinfo.c in GNU C Library (aka glibc or libc6) 2.17 and earlier allows …

Fix: after 2.17
Fix from $1,600 2013-04-29
Nx Os MEDIUM 6.1
CVE-2013-1226

The Ethernet frame-forwarding implementation in Cisco NX-OS on Nexus 7000 devices allows remote attackers to cause a denial of service (forwarding lo…

Mitigation only
Fix from $1,600 2013-04-29
Tinc MEDIUM 6.5
CVE-2013-1428EPSS 61%

Stack-based buffer overflow in the receive_tcppacket function in net_packet.c in tinc before 1.0.21 and 1.1 before 1.1pre7 allows remote authenticate…

Fix: after 1.1
Fix from $1,600 2013-04-26
Nx Os HIGH 8.3
CVE-2013-1178

Multiple buffer overflows in the Cisco Discovery Protocol (CDP) implementation in Cisco NX-OS on Nexus 7000 devices 4.x and 5.x before 5.2(4) and 6.x…

Mitigation only
Fix from $1,950 2013-04-25
Nx Os HIGH 9.0
CVE-2013-1179

Multiple buffer overflows in the (1) SNMP and (2) License Manager implementations in Cisco NX-OS on Nexus 7000 devices 4.x and 5.x before 5.2(5) and …

Mitigation only
Fix from $1,950 2013-04-25
Nx Os HIGH 9.0
CVE-2013-1180

Buffer overflow in the SNMP implementation in Cisco NX-OS on Nexus 7000 devices 4.x and 5.x before 5.2(5) and 6.x before 6.1(1) and MDS 9000 devices …

Mitigation only
Fix from $1,950 2013-04-25
Unified Computing System Infrastructure And Unified Computing System Software HIGH 10.0
CVE-2013-1183

Buffer overflow in the Intelligent Platform Management Interface (IPMI) functionality in the Manager component in Cisco Unified Computing System (UCS…

Mitigation only
Fix from $1,950 2013-04-25
Erdas Apollo Ecwp HIGH 10.0
CVE-2013-0728

Multiple stack-based buffer overflows in NCSAddOn.dll in the ERDAS APOLLO ECWP plugin before 13.00.0001 for Internet Explorer, Firefox, and Chrome al…

Mitigation only
Fix from $1,950 2013-04-25
iOS MEDIUM 6.8
CVE-2013-1217

The generic input/output control implementation in Cisco IOS does not properly manage buffers, which allows remote authenticated users to cause a den…

Mitigation only
Fix from $1,600 2013-04-24
Mitsubishi Mx Component HIGH 10.0
CVE-2013-3075EPSS 11%

Multiple buffer overflows in ActUWzd.dll 1.0.0.1 in Mitsubishi MX Component 3, as distributed in Citect CitectFacilities 7.10 and CitectScada 7.10r1,…

Mitigation only
Fix from $1,950 2013-04-19
Rslinx Enterprise HIGH 10.0
CVE-2012-4715EPSS 8%

Buffer overflow in LogReceiver.exe in Rockwell Automation RSLinx Enterprise CPR9, CPR9-SR1, CPR9-SR2, CPR9-SR3, CPR9-SR4, CPR9-SR5, CPR9-SR5.1, and C…

Mitigation only
Fix from $1,950 2013-04-18
Chrome Os MEDIUM 5.0
CVE-2013-2832

The Buffer::Set function in core/cross/buffer.cc in the O3D plug-in in Google Chrome OS before 26.0.1410.57 does not prevent uninitialized data from …

Fix: after 26.0.1410.56
Fix from $1,600 2013-04-16