Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Memory Buffer Bounds ErrorCWE-119 × clear
HIGH 7.3 CVE-2015-8472EPSS 8% Buffer overflow in the png_set_PLTE function in libpng before 1.0.65, 1.1.x and 1.2.x before 1.2.55, 1.3.x, 1.4.x before 1.4.18, 1.5.x before 1.5.25,… Mac Os X after 10.11.3 Fix from $1,9502016-01-21 CRITICAL 9.8 CVE-2016-1928 Buffer overflow in the XS engine (hdbxsengine) in SAP HANA allows remote attackers to cause a denial of service or execute arbitrary code via a craft… Hana Mitigation only Fix from $2,3002016-01-20 CRITICAL 9.8 CVE-2016-1901 Integer overflow in the authenticate_post function in CGit before 0.12 allows remote attackers to have unspecified impact via a large value in the Co… Fedora after 0.11.2 Fix from $2,3002016-01-20 MEDIUM 6.5 CVE-2016-1867 The jpc_pi_nextcprl function in JasPer 1.900.1 allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a … Jasper Mitigation only Fix from $1,6002016-01-20 MEDIUM 5.4 CVE-2015-5295 The template-validate command in OpenStack Orchestration API (Heat) before 2015.1.3 (kilo) and 5.0.x before 5.0.1 (liberty) allows remote authenticat… Openstack 5.0.1 / 2015.1.3+ Fix from $1,6002016-01-20 MEDIUM 5.3 CVE-2016-1907EPSS 15% The ssh_packet_read_poll2 function in packet.c in OpenSSH before 7.1p2 allows remote attackers to cause a denial of service (out-of-bounds read and a… Openssh Mitigation only Fix from $1,6002016-01-19 HIGH 7.5 CVE-2016-0860EPSS 5% Buffer overflow in the BwpAlarm subsystem in Advantech WebAccess before 8.1 allows remote attackers to cause a denial of service via a crafted RPC re… Webaccess after 8.0 Fix from $1,9502016-01-15 HIGH 8.1 CVE-2016-0858 Race condition in Advantech WebAccess before 8.1 allows remote attackers to execute arbitrary code or cause a denial of service (buffer overflow) via… Webaccess after 8.0 Fix from $1,9502016-01-15 CRITICAL 9.8 CVE-2016-0857EPSS 23% Multiple heap-based buffer overflows in Advantech WebAccess before 8.1 allow remote attackers to execute arbitrary code via unspecified vectors. Webaccess after 8.0 Fix from $2,3002016-01-15 CRITICAL 9.8 CVE-2016-0856EPSS 16% Multiple stack-based buffer overflows in Advantech WebAccess before 8.1 allow remote attackers to execute arbitrary code via unspecified vectors. Webaccess after 8.0 Fix from $2,3002016-01-15 HIGH 7.5 CVE-2016-0851 Advantech WebAccess before 8.1 allows remote attackers to cause a denial of service (out-of-bounds memory access) via unspecified vectors. Webaccess after 8.0 Fix from $1,9502016-01-15 HIGH 8.1 CVE-2016-0778EPSS 22% The (1) roaming_read and (2) roaming_write functions in roaming_common.c in the client in OpenSSH 5.x, 6.x, and 7.x before 7.1p2, when certain proxy … Linux after 15.07 Fix from $1,9502016-01-14 CRITICAL 9.8 CVE-2016-0946 Adobe Reader and Acrobat before 11.0.14, Acrobat and Acrobat Reader DC Classic before 15.006.30119, and Acrobat and Acrobat Reader DC Continuous befo… Acrobat Reader after 15.009.20077 Fix from $2,3002016-01-14 CRITICAL 9.8 CVE-2016-0945 Adobe Reader and Acrobat before 11.0.14, Acrobat and Acrobat Reader DC Classic before 15.006.30119, and Acrobat and Acrobat Reader DC Continuous befo… Acrobat Reader after 15.009.20077 Fix from $2,3002016-01-14 CRITICAL 9.8 CVE-2016-0944 Adobe Reader and Acrobat before 11.0.14, Acrobat and Acrobat Reader DC Classic before 15.006.30119, and Acrobat and Acrobat Reader DC Continuous befo… Acrobat Reader after 15.009.20077 Fix from $2,3002016-01-14 CRITICAL 9.8 CVE-2016-0942 Adobe Reader and Acrobat before 11.0.14, Acrobat and Acrobat Reader DC Classic before 15.006.30119, and Acrobat and Acrobat Reader DC Continuous befo… Acrobat Dc after 15.009.20077 Fix from $2,3002016-01-14 HIGH 8.8 CVE-2016-0939EPSS 7% Adobe Reader and Acrobat before 11.0.14, Acrobat and Acrobat Reader DC Classic before 15.006.30119, and Acrobat and Acrobat Reader DC Continuous befo… Acrobat Dc after 15.009.20077 Fix from $1,9502016-01-14 HIGH 8.8 CVE-2016-0938 The AcroForm plugin in Adobe Reader and Acrobat before 11.0.14, Acrobat and Acrobat Reader DC Classic before 15.006.30119, and Acrobat and Acrobat Re… Acrobat Reader after 15.009.20077 Fix from $1,9502016-01-14 HIGH 8.8 CVE-2016-0936EPSS 8% Adobe Reader and Acrobat before 11.0.14, Acrobat and Acrobat Reader DC Classic before 15.006.30119, and Acrobat and Acrobat Reader DC Continuous befo… Acrobat Reader after 15.009.20077 Fix from $1,9502016-01-14 CRITICAL 9.8 CVE-2016-0933EPSS 6% Adobe Reader and Acrobat before 11.0.14, Acrobat and Acrobat Reader DC Classic before 15.006.30119, and Acrobat and Acrobat Reader DC Continuous befo… Acrobat Reader after 15.009.20077 Fix from $2,3002016-01-14 HIGH 8.8 CVE-2016-0931 Adobe Reader and Acrobat before 11.0.14, Acrobat and Acrobat Reader DC Classic before 15.006.30119, and Acrobat and Acrobat Reader DC Continuous befo… Acrobat Reader after 15.009.20077 Fix from $1,9502016-01-14 HIGH 7.8 CVE-2016-0035EPSS 18% Microsoft Excel 2007 SP3, Excel 2010 SP2, Excel 2013 SP1, Excel 2013 RT SP1, Excel 2016, Excel for Mac 2011, Excel 2016 for Mac, Office Compatibility… Excel Mitigation only Fix from $1,9502016-01-13 HIGH 8.8 CVE-2016-0024EPSS 15% The Chakra JavaScript engine in Microsoft Edge allows remote attackers to execute arbitrary code via unspecified vectors, aka "Scripting Engine Memor… Edge Mitigation only Fix from $1,9502016-01-13 HIGH 7.8 CVE-2016-0015EPSS 35% DirectShow in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2… Windows 10 Patch available Fix from $1,9502016-01-13 HIGH 7.8 CVE-2016-0010EPSS 23% Microsoft Office 2007 SP3, Office 2010 SP2, Office 2013 SP1, Office 2013 RT SP1, Office 2016, Excel for Mac 2011, PowerPoint for Mac 2011, Word for M… Excel For Mac Mitigation only Fix from $1,9502016-01-13 CRITICAL 9.6 CVE-2016-0003EPSS 34% Microsoft Edge allows remote attackers to execute arbitrary code via unspecified vectors, aka "Microsoft Edge Memory Corruption Vulnerability." Edge Mitigation only Fix from $2,3002016-01-13 HIGH 7.5 CVE-2016-0002EPSS 22% The Microsoft (1) VBScript 5.7 and 5.8 and (2) JScript 5.7 and 5.8 engines, as used in Internet Explorer 8 through 11 and other products, allow remot… Jscript Mitigation only Fix from $1,9502016-01-13 CRITICAL 10.0 CVE-2015-8659 The idle stream handling in nghttp2 before 1.6.0 allows attackers to have unspecified impact via unknown vectors, aka a heap-use-after-free bug. Mac Os X after 10.11.3 Fix from $2,3002016-01-12 HIGH 7.8 CVE-2015-8306 Buffer overflow in the HIFI driver in Huawei P8 phones with software GRA-TL00 before GRA-TL00C01B230, GRA-CL00 before GRA-CL00C92B230, GRA-CL10 befor… P8 Firmware Mitigation only Fix from $1,9502016-01-12 CRITICAL 9.8 CVE-2015-8098 F5 BIG-IP APM 11.4.1 before 11.4.1 HF9, 11.5.x before 11.5.3, and 11.6.0 before 11.6.0 HF4 allow remote attackers to cause a denial of service or exe… Big Ip Access Policy Manager Mitigation only Fix from $2,3002016-01-12