Vulnerability index

Browse CVEs

4,225 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Classic Buffer OverflowCWE-120 × clear
Flex I\/o 1794 Aent HIGH 7.5
CVE-2020-6084

An exploitable denial of service vulnerability exists in the ENIP Request Path Logical Segment functionality of Allen-Bradley Flex IO 1794-AENT/B 4.0…

No fix yet
Fix from $1,950 2020-10-19
Flex I\/o 1794 Aent HIGH 7.5
CVE-2020-6085

An exploitable denial of service vulnerability exists in the ENIP Request Path Logical Segment functionality of Allen-Bradley Flex IO 1794-AENT/B 4.0…

No fix yet
Fix from $1,950 2020-10-19
Mate 20 Firmware HIGH 8.0
CVE-2020-9113

HUAWEI Mate 20 versions earlier than 10.0.0.188(C00E74R3P8) have a buffer overflow vulnerability in the Bluetooth module. Due to insufficient input v…

Fix: 10.0.0.188+
Fix from $1,950 2020-10-19
Ipados HIGH 7.8
CVE-2020-9878

A buffer overflow issue was addressed with improved memory handling. This issue is fixed in iOS 13.6 and iPadOS 13.6, macOS Catalina 10.15.6, tvOS 13…

Fix: 6.2.8 / 10.15.6+
Fix from $1,950 2020-10-16
Allen Bradley Flex Io 1794 Aent\/b Firmware HIGH 7.5
CVE-2020-6083

An exploitable denial of service vulnerability exists in the ENIP Request Path Port Segment functionality of Allen-Bradley Flex IO 1794-AENT/B. A spe…

No fix yet
Fix from $1,950 2020-10-14
Flex I\/o 1794 Aent\/b Firmware HIGH 7.5
CVE-2020-6086

An exploitable denial of service vulnerability exists in the ENIP Request Path Data Segment functionality of Allen-Bradley Flex IO 1794-AENT/B. A spe…

No fix yet
Fix from $1,950 2020-10-14
Flex I\/o 1794 Aent\/b Firmware HIGH 7.5
CVE-2020-6087

An exploitable denial of service vulnerability exists in the ENIP Request Path Data Segment functionality of Allen-Bradley Flex IO 1794-AENT/B. A spe…

No fix yet
Fix from $1,950 2020-10-14
Taurus An00b Firmware MEDIUM 5.5
CVE-2020-9240

Taurus-AN00B versions earlier than 10.1.0.156(C00E155R7P2) have a buffer overflow vulnerability. A function in a module does not verify inputs suffic…

Fix: 10.1.0.156+
Fix from $1,600 2020-10-12
Taurus An00b Firmware MEDIUM 6.5
CVE-2020-9238

Taurus-AN00B versions earlier than 10.1.0.156(C00E155R7P2) have a buffer overflow vulnerability. A function in a module does not verify inputs suffic…

Fix: 10.1.0.156+
Fix from $1,600 2020-10-12
Sonicos HIGH 7.5
CVE-2020-5133

A vulnerability in SonicOS allows a remote unauthenticated attacker to cause Denial of Service due to buffer overflow, which leads to a firewall cras…

Fix: after 6.5.4.4
Fix from $1,950 2020-10-12
Sonicos CRITICAL 9.8
CVE-2020-5135 KEVEPSS 25%

A buffer overflow vulnerability in SonicOS allows a remote attacker to cause Denial of Service (DoS) and potentially execute arbitrary code by sendin…

Fix: after 6.5.4.7
Fix from $2,300 2020-10-12
Sonicos MEDIUM 6.5
CVE-2020-5136

A buffer overflow vulnerability in SonicOS allows an authenticated attacker to cause Denial of Service (DoS) in the SSL-VPN and virtual assist portal…

Fix: after 6.5.4.7
Fix from $1,600 2020-10-12
Sonicos HIGH 7.5
CVE-2020-5137

A buffer overflow vulnerability in SonicOS allows a remote unauthenticated attacker to cause Denial of Service (DoS) on the firewall SSLVPN service a…

Fix: after 6.5.4.7
Fix from $1,950 2020-10-12
Openstack MEDIUM 6.6
CVE-2020-14355

Multiple buffer overflow vulnerabilities were found in the QUIC image decoding process of the SPICE remote display system, before spice-0.14.2-1. Bot…

Patch available
Fix from $1,600 2020-10-07
Bios HIGH 8.0
CVE-2019-14557

Buffer overflow in BIOS firmware for 8th, 9th, 10th Generation Intel(R) Core(TM), Intel(R) Celeron(R) Processor 4000 & 5000 Series Processors may all…

Mitigation only
Fix from $1,950 2020-10-05
Wn530h4 Firmware CRITICAL 9.8
CVE-2020-12125

A remote buffer overflow vulnerability in the /cgi-bin/makeRequest.cgi endpoint of the WAVLINK WN530H4 M30H4.V5030.190403 allows an attacker to execu…

Mitigation only
Fix from $2,300 2020-10-02
Ubuntu Linux HIGH 8.8
CVE-2020-14374

A flaw was found in dpdk in versions before 18.11.10 and before 19.11.5. A flawed bounds checking in the copy_data function leads to a buffer overflo…

Fix: 18.11.10 / 19.11.5+
Fix from $1,950 2020-09-30
Ubuntu Linux HIGH 7.8
CVE-2020-14376

A flaw was found in dpdk in versions before 18.11.10 and before 19.11.5. A lack of bounds checking when copying iv_data from the VM guest memory into…

Fix: 18.11.10 / 19.11.5+
Fix from $1,950 2020-09-30
Fedora CRITICAL 9.8
CVE-2020-26154

url.cpp in libproxy through 0.4.15 is prone to a buffer overflow when PAC is enabled, as demonstrated by a large PAC file that is delivered without a…

Fix: after 0.4.15
Fix from $2,300 2020-09-30
Node.js HIGH 7.8
CVE-2020-8252

The implementation of realpath in libuv < 10.22.1, < 12.18.4, and < 14.9.0 used within Node.js incorrectly determined the buffer size which can resul…

Fix: 10.22.1 / 12.18.4+
Fix from $1,950 2020-09-18
Mongoose CRITICAL 9.8
CVE-2020-25756

A buffer overflow vulnerability exists in the mg_get_http_header function in Cesanta Mongoose 6.18 due to a lack of bounds checking. A crafted HTTP h…

Patch available
Fix from $2,300 2020-09-18
Libraw HIGH 7.8
CVE-2020-24889

A buffer overflow vulnerability in LibRaw version < 20.0 LibRaw::GetNormalizedModel in src/metadata/normalize_model.cpp may lead to context-dependent…

Fix: 0.20.0+
Fix from $1,950 2020-09-16
Debian Linux MEDIUM 6.5
CVE-2020-8927

A buffer overflow exists in the Brotli library versions prior to 1.0.8 where an attacker controlling the input length of a "one-shot" decompression r…

Fix: 1.0.8 / 7.0.9+
Fix from $1,600 2020-09-15
Android CRITICAL 9.8
CVE-2020-25279

An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), and Q(10.0) (Exynos chipsets) software. The baseband component has a buffer ov…

Mitigation only
Fix from $2,300 2020-09-11
Accel Ppp CRITICAL 9.8
CVE-2020-15173

In ACCEL-PPP (an implementation of PPTP/PPPoE/L2TP/SSTP), there is a buffer overflow when receiving an l2tp control packet ith an AVP which type is a…

Fix: after 1.12.0-92-g38b6104
Fix from $2,300 2020-09-09
Telium 2 Firmware MEDIUM 6.6
CVE-2018-17770

Ingenico Telium 2 POS terminals have a buffer overflow via the RemotePutFile command of the NTPT3 protocol. This is fixed in Telium 2 SDK v9.32.03 pa…

Fix: 9.32.03+
Fix from $1,600 2020-09-09
Telium 2 Firmware MEDIUM 6.8
CVE-2018-17773

Ingenico Telium 2 POS terminals have a buffer overflow via SOCKET_TASK in the NTPT3 protocol. This is fixed in Telium 2 SDK v9.32.03 patch N.

Fix: 9.32.03+
Fix from $1,600 2020-09-09
Telium 2 Firmware MEDIUM 6.6
CVE-2018-17769

Ingenico Telium 2 POS terminals have a buffer overflow via the 0x26 command of the NTPT3 protocol. This is fixed in Telium 2 SDK v9.32.03 patch N.

Fix: 9.32.03+
Fix from $1,600 2020-09-09
Pan Os HIGH 7.2
CVE-2020-2042

A buffer overflow vulnerability in the PAN-OS management web interface allows authenticated administrators to disrupt system processes and potentiall…

Fix: 10.0.1+
Fix from $1,950 2020-09-09
Pan Os CRITICAL 9.8
CVE-2020-2040

A buffer overflow vulnerability in PAN-OS allows an unauthenticated attacker to disrupt system processes and potentially execute arbitrary code with …

Fix: 8.1.15 / 9.0.9+
Fix from $2,300 2020-09-09