Vulnerability index

Browse CVEs

2,663 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Heap-based Buffer OverflowCWE-122 × clear
Debian Linux HIGH 7.5
CVE-2023-39946

eprosima Fast DDS is a C++ implementation of the Data Distribution Service standard of the Object Management Group. Prior to versions 2.11.1, 2.10.2,…

Fix: 2.6.6 / 2.9.2+
Fix from $1,950 2023-08-11
Debian Linux HIGH 7.5
CVE-2023-39947

eprosima Fast DDS is a C++ implementation of the Data Distribution Service standard of the Object Management Group. Prior to versions 2.11.1, 2.10.2,…

Fix: 2.6.6 / 2.9.2+
Fix from $1,950 2023-08-11
Dimension HIGH 7.8
CVE-2023-38212

Adobe Dimension version 3.4.9 is affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context …

Fix: after 3.4.9
Fix from $1,950 2023-08-09
Mongoose HIGH 8.8
CVE-2023-2905

Due to a failure in validating the length of a provided MQTT_CMD_PUBLISH parsed message with a variable length header, Cesanta Mongoose, an embeddabl…

Patch available
Fix from $1,950 2023-08-09
Windows 10 1809 HIGH 7.8
CVE-2023-38154

Windows Kernel Elevation of Privilege Vulnerability

Fix: 10.0.17763.4737+
Fix from $1,950 2023-08-08
Hevc Video Extensions HIGH 7.8
CVE-2023-38170

HEVC Video Extensions Remote Code Execution Vulnerability

Fix: 2.0.61933.0+
Fix from $1,950 2023-08-08
365 Apps HIGH 7.8
CVE-2023-36896

Microsoft Excel Remote Code Execution Vulnerability

Patch available
Fix from $1,950 2023-08-08
365 Apps HIGH 7.8
CVE-2023-36865

Microsoft Office Visio Remote Code Execution Vulnerability

Patch available
Fix from $1,950 2023-08-08
Rooms HIGH 7.5
CVE-2023-36532

Buffer overflow in Zoom Clients before 5.14.5 may allow an unauthenticated user to enable a denial of service via network access.

Fix: 5.14.5+
Fix from $1,950 2023-08-08
Fedora MEDIUM 6.5
CVE-2023-3180

A flaw was found in the QEMU virtual crypto device while handling data encryption/decryption requests in virtio_crypto_handle_sym_req. There is no ch…

Fix: 8.1.0+
Fix from $1,600 2023-08-03
A1001 Firmware HIGH 8.8
CVE-2023-21406

Ariel Harush and Roy Hodir from OTORIO have found a flaw in the AXIS A1001 when communicating over OSDP. A heap-based buffer overflow was found in th…

Fix: after 1.65.4
Fix from $1,950 2023-07-25
Open Babel HIGH 7.8
CVE-2022-46289

Multiple out-of-bounds write vulnerabilities exist in the ORCA format nAtoms functionality of Open Babel 3.1.1 and master commit 530dbfa3. A speciall…

No fix yet
Fix from $1,950 2023-07-21
Open Babel HIGH 7.8
CVE-2022-46290

Multiple out-of-bounds write vulnerabilities exist in the ORCA format nAtoms functionality of Open Babel 3.1.1 and master commit 530dbfa3. A speciall…

No fix yet
Fix from $1,950 2023-07-21
Cimplicity CRITICAL 9.8
CVE-2023-3463

All versions of GE Digital CIMPLICITY that are not adhering to SDG guidance and accepting documents from untrusted sources are vulnerable to memory c…

Mitigation only
Fix from $2,300 2023-07-19
Redis HIGH 8.8
CVE-2022-24834EPSS 41%

Redis is an in-memory database that persists on disk. A specially crafted Lua script executing in Redis can trigger a heap overflow in the cjson libr…

Fix: 6.0.20 / 6.2.13+
Fix from $1,950 2023-07-13
Experion Server HIGH 7.5
CVE-2023-24474

Experion server may experience a DoS due to a heap overflow which could occur when handling a specially crafted message

Fix: after 520.2tcu2
Fix from $1,950 2023-07-13
3dexperience Solidworks HIGH 7.8
CVE-2023-2763

Use-After-Free, Out-of-bounds Write and Heap-based Buffer Overflow vulnerabilities exist in the DWG and DXF file reading procedure in SOLIDWORKS Desk…

Fix: after 2023
Fix from $1,950 2023-07-12
Paint 3d HIGH 7.8
CVE-2023-35374

Paint 3D Remote Code Execution Vulnerability

Fix: 6.2305.16087.0+
Fix from $1,950 2023-07-11
Windows Server 2008 HIGH 7.2
CVE-2023-35350

Windows Active Directory Certificate Services (AD CS) Remote Code Execution Vulnerability

Patch available
Fix from $1,950 2023-07-11
Windows 10 1809 HIGH 7.8
CVE-2023-35363

Windows Kernel Elevation of Privilege Vulnerability

Fix: 10.0.17763.4645 / 10.0.19041.3208+
Fix from $1,950 2023-07-11
Windows 10 21h2 HIGH 7.8
CVE-2023-35337

Win32k Elevation of Privilege Vulnerability

Fix: 10.0.19041.3208 / 10.0.19045.3208+
Fix from $1,950 2023-07-11
Windows 10 1507 HIGH 8.8
CVE-2023-35302

Microsoft PostScript and PCL6 Class Printer Driver Remote Code Execution Vulnerability

Fix: 10.0.10240.20048 / 10.0.14393.6085+
Fix from $1,950 2023-07-11
Windows 10 1607 HIGH 7.8
CVE-2023-35304

Windows Kernel Elevation of Privilege Vulnerability

Fix: 10.0.14393.6085 / 10.0.17763.4645+
Fix from $1,950 2023-07-11
Windows 10 1607 HIGH 7.8
CVE-2023-35305

Windows Kernel Elevation of Privilege Vulnerability

Fix: 10.0.14393.6085 / 10.0.17763.4645+
Fix from $1,950 2023-07-11
365 Apps HIGH 7.8
CVE-2023-33152

Microsoft ActiveX Remote Code Execution Vulnerability

Patch available
Fix from $1,950 2023-07-11
Paint 3d HIGH 7.8
CVE-2023-32047

Paint 3D Remote Code Execution Vulnerability

Fix: 6.2305.16087.0+
Fix from $1,950 2023-07-11
Redis HIGH 8.8
CVE-2023-36824EPSS 77%

Redis is an in-memory database that persists on disk. In Redit 7.0 prior to 7.0.12, extracting key names from a command and a list of arguments may, …

Fix: 7.0.12+
Fix from $1,950 2023-07-11
Tecnomatix HIGH 7.8
CVE-2023-37246

A vulnerability has been identified in Tecnomatix Plant Simulation V2201 (All versions < V2201.0008), Tecnomatix Plant Simulation V2302 (All versions…

Fix: 2201.0008 / 2302.0002+
Fix from $1,950 2023-07-11
Tecnomatix HIGH 7.8
CVE-2023-37247

A vulnerability has been identified in Tecnomatix Plant Simulation V2201 (All versions < V2201.0008), Tecnomatix Plant Simulation V2302 (All versions…

Fix: 2201.0008 / 2302.0002+
Fix from $1,950 2023-07-11
Fedora HIGH 7.8
CVE-2023-34432

A heap buffer overflow vulnerability was found in sox, in the lsx_readbuf function at sox/src/formats_i.c:98:16. This flaw can lead to a denial of se…

Fix: after 14.4.3
Fix from $1,950 2023-07-10