Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
HIGH 7.8
CVE-2021-25126
The Baseboard Management Controller(BMC) in HPE Cloudline CL5800 Gen9 Server; HPE Cloudline CL5200 Gen9 Server; HPE Cloudline CL4100 Gen10 Server; HP…
Cloudline Cl3100 Gen10 Server Firmware
Mitigation only
HIGH 7.8
CVE-2021-25127
The Baseboard Management Controller(BMC) in HPE Cloudline CL5800 Gen9 Server; HPE Cloudline CL5200 Gen9 Server; HPE Cloudline CL4100 Gen10 Server; HP…
Cloudline Cl3100 Gen10 Server Firmware
Mitigation only
HIGH 7.8
CVE-2021-25130
The Baseboard Management Controller(BMC) in HPE Cloudline CL5800 Gen9 Server; HPE Cloudline CL5200 Gen9 Server; HPE Cloudline CL4100 Gen10 Server; HP…
Cloudline Cl3100 Gen10 Server Firmware
Mitigation only
HIGH 7.8
CVE-2021-25131
The Baseboard Management Controller(BMC) in HPE Cloudline CL5800 Gen9 Server; HPE Cloudline CL5200 Gen9 Server; HPE Cloudline CL4100 Gen10 Server; HP…
Cloudline Cl3100 Gen10 Server Firmware
Mitigation only
HIGH 7.8
CVE-2021-25132
The Baseboard Management Controller(BMC) in HPE Cloudline CL5800 Gen9 Server; HPE Cloudline CL5200 Gen9 Server; HPE Cloudline CL4100 Gen10 Server; HP…
Cloudline Cl3100 Gen10 Server Firmware
Mitigation only
HIGH 7.8
CVE-2021-25123
The Baseboard Management Controller(BMC) in HPE Cloudline CL5800 Gen9 Server; HPE Cloudline CL5200 Gen9 Server; HPE Cloudline CL4100 Gen10 Server; HP…
Cloudline Cl5800 Gen10 Server Firmware
Mitigation only
CRITICAL 9.8
CVE-2021-3304
Sagemcom F@ST 3686 v2 3.495 devices have a buffer overflow via a long sessionKey to the goform/login URI.
F\@st 3686 Firmware
No fix yet
CRITICAL 9.8
CVE-2021-3185
A flaw was found in the gstreamer h264 component of gst-plugins-bad before v1.18.1 where when parsing a h264 header, an attacker could cause the stac…
Gst Plugins Bad
1.18.1+
CRITICAL 9.8
CVE-2020-3686
Possible memory out of bound issue during music playback when an incorrect bit stream content is copied into array without checking the length of arr…
Apq8009
Mitigation only
MEDIUM 6.7
CVE-2020-11183
A process can potentially cause a buffer overflow in the display service allowing privilege escalation by executing code as that service in Snapdrago…
Apq8009
Patch available
CRITICAL 9.8
CVE-2020-11225
Out of bound access in WLAN driver due to lack of validation of array length before copying into array in Snapdragon Auto, Snapdragon Compute, Snapdr…
Apq8064au
Patch available
CRITICAL 9.8
CVE-2021-1300
Multiple vulnerabilities in Cisco SD-WAN products could allow an unauthenticated, remote attacker to execute attacks against an affected device. For …
Ios Xe Sd Wan
Mitigation only
HIGH 8.0
CVE-2021-3182
D-Link DCS-5220 devices have a buffer overflow. NOTE: This vulnerability only affects products that are no longer supported by the maintainer
Dcs 5220 Firmware
No fix yet
CRITICAL 9.8
CVE-2021-3177EPSS 23%
Python 3.x through 3.9.1 has a buffer overflow in PyCArg_repr in _ctypes/callproc.c, which may lead to remote code execution in certain Python applic…
Python
after 3.9.1
HIGH 7.5
CVE-2020-16146
Espressif ESP-IDF 2.x, 3.0.x through 3.0.9, 3.1.x through 3.1.7, 3.2.x through 3.2.3, 3.3.x through 3.3.2, and 4.0.x through 4.0.1 has a Buffer Overf…
Esp Idf
after 4.0.1
MEDIUM 6.5
CVE-2020-4869
IBM MQ Appliance 9.2 CD and 9.2 LTS is vulnerable to a denial of service, caused by a buffer overflow. A remote attacker could send a specially craft…
Mq Appliance
Patch available
HIGH 7.8
CVE-2018-8725
K7Computing Pvt Ltd K7AntiVirus Premium 15.01.00.53 is affected by: Buffer Overflow. The impact is: execute arbitrary code (local). The component is:…
Antivrius
14.2.0001 / 16.0.0001+
HIGH 7.8
CVE-2018-8726
K7Computing Pvt Ltd K7Antivirus Premium 15.1.0.53 is affected by: Buffer Overflow. The impact is: execute arbitrary code (local). The component is: K…
Antivrius
14.2.0001 / 16.0.0001+
HIGH 7.8
CVE-2018-9333
K7Computing Pvt Ltd K7AntiVirus Premium 15.1.0.53 is affected by: Buffer Overflow. The impact is: execute arbitrary code (local). The component is: K…
Antivrius
14.2.0001 / 16.0.0001+
CRITICAL 9.8
CVE-2020-26759
clickhouse-driver before 0.1.5 allows a malicious clickhouse server to trigger a crash or execute arbitrary code (on a database client) via a crafted…
Clickhouse Driver
0.1.5+
HIGH 8.8
CVE-2021-22492
An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), and Q(10.0) (Broadcom Bluetooth chipsets) software. The Bluetooth UART driver …
Android
Mitigation only
MEDIUM 6.7
CVE-2020-36158
mwifiex_cmd_802_11_ad_hoc_start in drivers/net/wireless/marvell/mwifiex/join.c in the Linux kernel through 5.10.4 might allow remote attackers to exe…
Linux Kernel
4.4.250 / 4.9.250+
CRITICAL 9.8
CVE-2020-35887
An issue was discovered in the arr crate through 2020-08-25 for Rust. There is a buffer overflow in Index and IndexMut.
Arr
after 0.6.0
CRITICAL 9.8
CVE-2020-35795
Certain NETGEAR devices are affected by a buffer overflow by an unauthenticated attacker. This affects AC2100 before 1.2.0.72, AC2400 before 1.2.0.72…
Ac2100 Firmware
1.0.0.36 / 1.0.1.58+
CRITICAL 9.8
CVE-2020-35796
Certain NETGEAR devices are affected by a buffer overflow by an unauthenticated attacker. This affects CBR40 before 2.5.0.10, D6220 before 1.0.0.60, …
Cbr40 Firmware
1.0.0.36 / 1.0.0.48+
HIGH 8.0
CVE-2020-35787
Certain NETGEAR devices are affected by a buffer overflow by an authenticated user. This affects D3600 before 1.0.0.76, D6000 before 1.0.0.76, D6200 …
D3600 Firmware
1.0.0.76 / 1.0.1.18+
MEDIUM 6.8
CVE-2020-35788
NETGEAR WAC104 devices before 1.0.4.13 are affected by a buffer overflow by an authenticated user.
Wac104 Firmware
1.0.4.13+
CRITICAL 9.8
CVE-2020-29203
struct2json before 2020-11-18 is affected by a Buffer Overflow because strcpy is used for S2J_STRUCT_GET_string_ELEMENT.
Struct2json
2020-11-18+
MEDIUM 5.5
CVE-2020-28759
The serializer module in OAID Tengine lite-v1.0 has a Buffer Overflow and crash. NOTE: another person has stated "I don't think there is an proof of …
Tengine
No fix yet
HIGH 7.5
CVE-2020-29596
MiniWeb HTTP server 0.8.19 allows remote attackers to cause a denial of service (daemon crash) via a long name for the first parameter in a POST requ…
Miniweb Http Server
No fix yet