Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
HIGH 8.8
CVE-2020-3544
A vulnerability in the Cisco Discovery Protocol implementation for Cisco Video Surveillance 8000 Series IP Cameras could allow an unauthenticated, ad…
8000p Ip Camera Firmware
Mitigation only
MEDIUM 5.4
CVE-2020-15198
In Tensorflow before version 2.3.1, the `SparseCountSparseOutput` implementation does not validate that the input arguments form a valid sparse tenso…
Tensorflow
2.3.1+
CRITICAL 9.8
CVE-2020-15205
In Tensorflow before versions 1.15.4, 2.0.3, 2.1.2, 2.2.1 and 2.3.1, the `data_splits` argument of `tf.raw_ops.StringNGrams` lacks validation. This a…
Tensorflow
1.15.4 / 2.0.3+
CRITICAL 9.0
CVE-2020-15207
In tensorflow-lite before versions 1.15.4, 2.0.3, 2.1.2, 2.2.1 and 2.3.1, to mimic Python's indexing with negative values, TFLite uses `ResolveAxis` …
Tensorflow
1.15.4 / 2.0.3+
HIGH 8.8
CVE-2020-15195
In Tensorflow before versions 1.15.4, 2.0.3, 2.1.2, 2.2.1 and 2.3.1, the implementation of `SparseFillEmptyRowsGrad` uses a double indexing pattern. …
Tensorflow
1.15.4 / 2.0.3+
CRITICAL 9.9
CVE-2020-15196
In Tensorflow version 2.3.0, the `SparseCountSparseOutput` and `RaggedCountSparseOutput` implementations don't validate that the `weights` tensor has…
Tensorflow
Patch available
CRITICAL 9.8
CVE-2020-15373
Multiple buffer overflow vulnerabilities in REST API in Brocade Fabric OS versions v8.2.1 through v8.2.1d, and 8.2.2 versions before v8.2.2c could al…
Fabric Operating System
Mitigation only
MEDIUM 6.7
CVE-2020-3423
A vulnerability in the implementation of the Lua interpreter that is integrated in Cisco IOS XE Software could allow an authenticated, local attacker…
Ios Xe
Mitigation only
HIGH 7.0
CVE-2020-25599
An issue was discovered in Xen through 4.14.x. There are evtchn_reset() race conditions. Uses of EVTCHNOP_reset (potentially by a guest on itself) or…
Fedora
after 4.14.0
HIGH 7.2
CVE-2019-15992
A vulnerability in the implementation of the Lua interpreter integrated in Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threa…
Adaptive Security Appliance
6.2.3.16 / 6.3.0.6+
HIGH 7.8
CVE-2019-15283
Multiple vulnerabilities in Cisco Webex Network Recording Player for Microsoft Windows and Cisco Webex Player for Microsoft Windows could allow an at…
Webex Meetings
1.3.44 / 39.5.12+
HIGH 7.8
CVE-2019-15285
Multiple vulnerabilities in Cisco Webex Network Recording Player for Microsoft Windows and Cisco Webex Player for Microsoft Windows could allow an at…
Webex Meetings
1.3.44 / 39.5.12+
HIGH 7.8
CVE-2019-15287
Multiple vulnerabilities in Cisco Webex Network Recording Player for Microsoft Windows and Cisco Webex Player for Microsoft Windows could allow an at…
Webex Meetings
1.3.44 / 39.5.12+
CRITICAL 9.8
CVE-2020-25614
xmlquery before 1.3.1 lacks a check for whether a LoadURL response is in the XML format, which allows attackers to cause a denial of service (SIGSEGV…
Xmlquery
1.3.1+
MEDIUM 5.5
CVE-2020-14392
An untrusted pointer dereference flaw was found in Perl-DBI < 1.643. A local attacker who is able to manipulate calls to dbd_db_login6_sv() could cau…
Database Interface
1.643+
HIGH 7.8
CVE-2020-14345
A flaw was found in X.Org Server before xorg-x11-server 1.20.9. An Out-Of-Bounds access in XkbSetNames function may lead to a privilege escalation vu…
Ubuntu Linux
1.20.9+
MEDIUM 5.3
CVE-2013-7490
An issue was discovered in the DBI module before 1.632 for Perl. Using many arguments to methods for Callbacks may lead to memory corruption.
Dbi
1.632+
CRITICAL 9.8
CVE-2020-14096
Memory overflow in Xiaomi AI speaker Rom version <1.59.6 can happen when the speaker verifying a malicious firmware during OTA process.
Xiaomi Ai Speaker Firmware
1.59.6+
CRITICAL 9.8
CVE-2020-15173
In ACCEL-PPP (an implementation of PPTP/PPPoE/L2TP/SSTP), there is a buffer overflow when receiving an l2tp control packet ith an AVP which type is a…
Accel Ppp
after 1.12.0-92-g38b6104
CRITICAL 9.8
CVE-2020-24074
The decode program in silk-v3-decoder Version:20160922 Build By kn007 does not strictly check data, resulting in a buffer overflow.
Silk V3 Decoder
Patch available
CRITICAL 9.8
CVE-2020-3669
u'Buffer Overflow issue in WLAN tcp ip verification due to usage of out of range pointer offset' in Snapdragon Auto, Snapdragon Compute, Snapdragon C…
Apq8098 Firmware
Mitigation only
MEDIUM 6.7
CVE-2020-3545
A vulnerability in Cisco FXOS Software could allow an authenticated, local attacker with administrative credentials to cause a buffer overflow condit…
Firepower Extensible Operating System
after 2.3.1.58
MEDIUM 6.8
CVE-2020-3453
Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV340 Series Routers could allow an authenticated, remote atta…
Rv340w Firmware
1.0.03.19+
HIGH 7.5
CVE-2020-5778
A flaw exists in Trading Technologies Messaging 7.1.28.3 (ttmd.exe) due to improper validation of user-supplied data when processing a type 8 message…
Trading Technologies Messaging
Mitigation only
CRITICAL 9.1
CVE-2020-25016
A safety violation was discovered in the rgb crate before 0.8.20 for Rust, leading to (for example) dereferencing of arbitrary pointers or disclosure…
Rgb Rust
0.8.20+
MEDIUM 5.3
CVE-2020-5383
Dell EMC Isilon OneFS version 8.2.2 and Dell EMC PowerScale OneFS version 9.0.0 contains a buffer overflow vulnerability in the Likewise component. A…
Emc Isilon
Mitigation only
CRITICAL 9.8
CVE-2020-15158
In libIEC61850 before version 1.4.3, when a message with COTP message length field with value < 4 is received an integer underflow will happen leadin…
Libiec61850
1.4.3+
HIGH 8.2
CVE-2020-17397
This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 15.1.4. An attacker must first obtain…
Parallels Desktop
16.0.0+
MEDIUM 6.5
CVE-2020-23574
When uploading a file in Sysax Multi Server 6.90, an authenticated user can modify the filename="" parameter in the uploadfile_name1.htm form to a le…
Multi Server
No fix yet
MEDIUM 5.5
CVE-2020-1574
A remote code execution vulnerability exists in the way that Microsoft Windows Codecs Library handles objects in memory. An attacker who successfully…
Windows 10
Patch available