Vulnerability index

Browse CVEs

3,570 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Stack-based Buffer OverflowCWE-121 × clear
Foxit Reader HIGH 8.8
CVE-2018-10494

This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Foxit Reader 9.0.1.1049. User interaction is requ…

Fix: after 9.0.1.1049
Fix from $1,950 2018-05-17
Webaccess CRITICAL 9.8
CVE-2018-7499

In Advantech WebAccess versions V8.2_20170817 and prior, WebAccess versions V8.3.0 and prior, WebAccess Dashboard versions V.2.0.15 and prior, WebAcc…

Fix: 8.3.1+
Fix from $2,300 2018-05-15
Wplsoft HIGH 8.8
CVE-2018-7494

WPLSoft in Delta Electronics versions 2.45.0 and prior utilizes a fixed length stack buffer where a value larger than the buffer can be read from a f…

Fix: after 2.45.0
Fix from $1,950 2018-05-04
Ids 2102 Firmware CRITICAL 9.8
CVE-2018-8865EPSS 6%

In Lantech IDS 2102 2.0 and prior, a stack-based buffer overflow vulnerability has been identified which may allow remote code execution. A CVSS v3 b…

Mitigation only
Fix from $2,300 2018-05-04
Pmsoft HIGH 7.8
CVE-2018-8839

Delta PMSoft versions 2.10 and prior have multiple stack-based buffer overflow vulnerabilities where a .ppm file can introduce a value larger than is…

Fix: after 2.10
Fix from $1,950 2018-04-30
Levistudio Hmi Editor MEDIUM 5.3
CVE-2018-7527

A buffer overflow can be triggered in LeviStudio HMI Editor, Version 1.10 part of Wecon LeviStudioU 1.8.29, and PI Studio HMI Project Programmer, Bui…

Fix: after 2017-11-11
Fix from $1,600 2018-04-26
Web Studio CRITICAL 9.8
CVE-2018-8840EPSS 8%

A remote attacker could send a carefully crafted packet in InduSoft Web Studio v8.1 and prior versions, and/or InTouch Machine Edition 2017 v8.1 and …

Fix: after 8.1
Fix from $2,300 2018-04-18
Cx Flnet HIGH 7.8
CVE-2018-7514

Parsing malformed project files in Omron CX-One versions 4.42 and prior, including the following applications: CX-FLnet versions 1.00 and prior, CX-P…

Fix: after 9.65
Fix from $1,950 2018-04-17
E Designer CRITICAL 9.8
CVE-2017-9638

Mitsubishi E-Designer, Version 7.52 Build 344 contains six code sections which may be exploited to overwrite the stack. This can result in arbitrary …

Mitigation only
Fix from $2,300 2018-04-17
Cx Supervisor MEDIUM 5.3
CVE-2018-7513

In Omron CX-Supervisor Versions 3.30 and prior, parsing malformed project files may cause a stack-based buffer overflow.

Fix: after 3.30
Fix from $1,600 2018-03-21
Delta Industrial Automation Screen Editor HIGH 7.8
CVE-2017-16751

A Stack-based Buffer Overflow issue was discovered in Delta Electronics Delta Industrial Automation Screen Editor, Version 2.00.23.00 or prior. Stack…

Fix: after 2.00.23.00
Fix from $1,950 2018-03-15
Delta Industrial Automation Dopsoft HIGH 7.8
CVE-2018-5476

A Stack-based Buffer Overflow issue was discovered in Delta Electronics Delta Industrial Automation DOPSoft, Version 4.00.01 or prior. Stack-based bu…

Fix: after 4.00.01
Fix from $1,950 2018-03-15
Spice Gtk CRITICAL 9.8
CVE-2017-12194EPSS 5%

A flaw was found in the way spice-client processed certain messages sent from the server. An attacker, having control of malicious spice-server, coul…

Fix: after 0.34
Fix from $2,300 2018-03-14
Debian Linux MEDIUM 5.5
CVE-2018-1071

zsh through version 5.4.2 is vulnerable to a stack-based buffer overflow in the exec.c:hashcmd() function. A local attacker could exploit this to cau…

Fix: after 5.4.2
Fix from $1,600 2018-03-09
Controlwave Micro Firmware HIGH 7.5
CVE-2018-5452

A Stack-based Buffer Overflow issue was discovered in Emerson Process Management ControlWave Micro Process Automation Controller: ControlWave Micro […

Fix: after 05.78.00
Fix from $1,950 2018-03-07
D60 Line Distance Relay Firmware CRITICAL 9.8
CVE-2018-5475

A Stack-based Buffer Overflow issue was discovered in GE D60 Line Distance Relay devices running firmware Version 7.11 and prior. Multiple stack-base…

Fix: after 7.11
Fix from $2,300 2018-02-19
Codesys Runtime System CRITICAL 9.8
CVE-2018-5440

A Stack-based Buffer Overflow issue was discovered in 3S-Smart CODESYS Web Server. Specifically: all Microsoft Windows (also WinCE) based CODESYS web…

Fix: 1.1.9.19+
Fix from $2,300 2018-02-15
Netvault Backup CRITICAL 9.8
CVE-2018-1161EPSS 67%

This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Quest NetVault Backup 11.2.0.13. Authentication i…

Mitigation only
Fix from $2,300 2018-02-08
V Server Vpr Firmware CRITICAL 9.8
CVE-2018-5442

A Stack-based Buffer Overflow issue was discovered in Fuji Electric V-Server VPR 4.0.1.0 and prior. The stack-based buffer overflow vulnerability has…

Fix: after 4.0.1.0
Fix from $2,300 2018-02-05
Levistudio Hmi Editor Firmware HIGH 7.8
CVE-2017-16739

An issue was discovered in WECON Technology LEVI Studio HMI Editor v1.8.29 and prior. Specially-crafted malicious files may be able to cause stack-ba…

Fix: after 1.8.29
Fix from $1,950 2018-01-12
Webaccess CRITICAL 9.8
CVE-2017-16724

A Stack-based Buffer Overflow issue was discovered in Advantech WebAccess versions prior to 8.3. There are multiple instances of a vulnerability that…

Fix: 8.3+
Fix from $2,300 2018-01-05
Dir 850l Firmware HIGH 8.8
CVE-2017-3193EPSS 6%

Multiple D-Link devices including the DIR-850L firmware versions 1.14B07 and 2.07.B05 contain a stack-based buffer overflow vulnerability in the web …

Patch available
Fix from $1,950 2017-12-16
Edge CRITICAL 9.8
CVE-2017-3195EPSS 21%

Commvault Edge Communication Service (cvd) prior to version 11 SP7 or version 11 SP6 with hotfix 590 is prone to a stack-based buffer overflow vulner…

Patch available
Fix from $2,300 2017-12-16
Kerberos 5 CRITICAL 9.8
CVE-2017-15088EPSS 8%

plugins/preauth/pkinit/pkinit_crypto_openssl.c in MIT Kerberos 5 (aka krb5) through 1.15.2 mishandles Distinguished Name (DN) fields, which allows re…

Fix: after 1.15.2
Fix from $2,300 2017-11-23
Webaccess MEDIUM 6.3
CVE-2017-14016EPSS 16%

A Stack-based Buffer Overflow issue was discovered in Advantech WebAccess versions prior to V8.2_20170817. The application lacks proper validation of…

Fix: 8.2_20170817+
Fix from $1,600 2017-11-06
Debian Linux HIGH 8.8
CVE-2017-13089EPSS 80%

The http.c:skip_short_body() function is called in some circumstances, such as when processing redirects. When the response is sent chunked in wget b…

Fix: after 1.19.1
Fix from $1,950 2017-10-27
Levi Studio Hmi Editor CRITICAL 9.8
CVE-2017-13999

A Stack-based Buffer Overflow issue was discovered in WECON LEVI Studio HMI Editor v1.8.1 and prior. Multiple stack-based buffer overflow vulnerabili…

Fix: after 1.8.1
Fix from $2,300 2017-10-17
Linux Kernel HIGH 7.8
CVE-2017-12188

arch/x86/kvm/mmu.c in the Linux kernel through 4.13.5, when nested virtualisation is used, does not properly traverse guest pagetable entries to reso…

Fix: 4.9.57 / 4.13.8+
Fix from $1,950 2017-10-11
Intelligent Platforms Proficy Hmi\/scada Cimplicity MEDIUM 6.8
CVE-2017-12732

A Stack-based Buffer Overflow issue was discovered in GE CIMPLICITY Versions 9.0 and prior. A function reads a packet to indicate the next packet len…

Fix: after 9.0
Fix from $1,600 2017-10-05
Webaccess CRITICAL 9.8
CVE-2017-12706

A stack-based buffer overflow issue was discovered in Advantech WebAccess versions prior to V8.2_20170817. Researchers have identified multiple vulne…

Fix: after 8.2
Fix from $2,300 2017-08-30