Vulnerability index

Browse CVEs

2,665 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Heap-based Buffer OverflowCWE-122 × clear
Prusaslicer HIGH 7.8
CVE-2020-28595

An out-of-bounds write vulnerability exists in the Obj.cpp load_obj() functionality of Prusa Research PrusaSlicer 2.2.0 and Master (commit 4b040b856)…

No fix yet
Fix from $1,950 2021-02-10
Foxit Studio Photo HIGH 7.8
CVE-2020-17423

This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit Studio Photo 3.6.6.922. User interaction is r…

Mitigation only
Fix from $1,950 2021-02-09
Planmaker 2021 HIGH 7.8
CVE-2020-13586

A memory corruption vulnerability exists in the Excel Document SST Record 0x00fc functionality of SoftMaker Software GmbH SoftMaker Office PlanMaker …

No fix yet
Fix from $1,950 2021-02-04
Planmaker 2021 HIGH 7.8
CVE-2020-27247

A specially crafted document can cause the document parser to copy data from a particular record type into a static-sized buffer within an object tha…

Mitigation only
Fix from $1,950 2021-02-04
Planmaker 2021 HIGH 7.8
CVE-2020-27248

A specially crafted document can cause the document parser to copy data from a particular record type into a static-sized buffer within an object tha…

Mitigation only
Fix from $1,950 2021-02-04
Planmaker 2021 HIGH 7.8
CVE-2020-27249

A specially crafted document can cause the document parser to copy data from a particular record type into a static-sized buffer within an object tha…

Mitigation only
Fix from $1,950 2021-02-04
V Server HIGH 7.8
CVE-2021-22641

A heap-based buffer overflow issue has been identified in the way the application processes project files, allowing an attacker to craft a special pr…

Fix: 4.0.10.0+
Fix from $1,950 2021-01-27
Opc Ua Tunneller CRITICAL 9.8
CVE-2020-27297

The affected product is vulnerable to a heap-based buffer overflow, which may allow an attacker to manipulate memory with controlled values and remot…

Fix: 6.3.0.8233+
Fix from $2,300 2021-01-26
Debian Linux HIGH 7.8
CVE-2020-27814

A heap-buffer overflow was found in the way openjpeg2 handled certain PNG format files. An attacker could use this flaw to cause an application crash…

Fix: 2.4.0+
Fix from $1,950 2021-01-26
Fedora MEDIUM 5.9
CVE-2020-25687EPSS 87%

A flaw was found in dnsmasq before version 2.83. A heap-based buffer overflow was discovered in dnsmasq when DNSSEC is enabled and before it validate…

Fix: 2.83+
Fix from $1,600 2021-01-20
Fedora HIGH 8.1
CVE-2020-25681EPSS 81%

A flaw was found in dnsmasq before version 2.83. A heap-based buffer overflow was discovered in the way RRSets are sorted before validating with DNSS…

Fix: 2.83+
Fix from $1,950 2021-01-20
Fedora HIGH 8.1
CVE-2020-25682EPSS 71%

A flaw was found in dnsmasq before 2.83. A buffer overflow vulnerability was discovered in the way dnsmasq extract names from DNS packets before vali…

Fix: 2.83+
Fix from $1,950 2021-01-20
Fedora MEDIUM 5.9
CVE-2020-25683EPSS 86%

A flaw was found in dnsmasq before version 2.83. A heap-based buffer overflow was discovered in dnsmasq when DNSSEC is enabled and before it validate…

Fix: 2.83+
Fix from $1,600 2021-01-20
Industrial Gateway Server CRITICAL 9.1
CVE-2020-27263

KEPServerEX: v6.0 to v6.9, ThingWorx Kepware Server: v6.8 and v6.9, ThingWorx Industrial Connectivity: All versions, OPC-Aggregator: All versions, Ro…

Fix: after 6.9
Fix from $2,300 2021-01-14
Photoshop HIGH 8.6
CVE-2021-21006EPSS 6%

Adobe Photoshop version 22.1 (and earlier) is affected by a heap buffer overflow vulnerability when handling a specially crafted font file. Successfu…

Fix: after 22.1
Fix from $1,950 2021-01-13
Jt2go HIGH 8.8
CVE-2020-26987

A vulnerability has been identified in JT2Go (All versions < V13.1.0), Teamcenter Visualization (All versions < V13.1.0). Affected applications lack …

Fix: 13.1.0+
Fix from $1,950 2021-01-12
Jt2go HIGH 8.8
CVE-2020-26994

A vulnerability has been identified in JT2Go (All versions < V13.1.0), Teamcenter Visualization (All versions < V13.1.0). Affected applications lack …

Fix: 13.1.0+
Fix from $1,950 2021-01-12
Scalance X200 4pirt Firmware CRITICAL 9.8
CVE-2020-15800

A vulnerability has been identified in SCALANCE X-200 switch family (incl. SIPLUS NET variants) (All versions < V5.2.5), SCALANCE X-200IRT switch fam…

Fix: 5.5.0+
Fix from $2,300 2021-01-12
Scalance X200 4pirt Firmware CRITICAL 9.8
CVE-2020-25226

A vulnerability has been identified in SCALANCE X-200 switch family (incl. SIPLUS NET variants) (All versions < V5.2.5), SCALANCE X-200IRT switch fam…

Fix: 5.5.0+
Fix from $2,300 2021-01-12
Jt2go HIGH 8.8
CVE-2020-26985

A vulnerability has been identified in JT2Go (All versions < V13.1.0), Teamcenter Visualization (All versions < V13.1.0). Affected applications lack …

Fix: 13.1.0+
Fix from $1,950 2021-01-12
Jt2go HIGH 8.8
CVE-2020-26986

A vulnerability has been identified in JT2Go (All versions < V13.1.0), Teamcenter Visualization (All versions < V13.1.0). Affected applications lack …

Fix: 13.1.0+
Fix from $1,950 2021-01-12
Fedora MEDIUM 5.5
CVE-2020-27841

There's a flaw in openjpeg in versions prior to 2.4.0 in src/lib/openjp2/pi.c. When an attacker is able to provide crafted input to be processed by t…

Fix: 2.4.0+
Fix from $1,600 2021-01-05
Nhiservisignadapter CRITICAL 9.8
CVE-2020-25843

NHIServiSignAdapter fails to verify the length of digital credential files’ path which leads to a heap overflow loophole. Remote attackers can use th…

Mitigation only
Fix from $2,300 2020-12-31
Enterprise Linux HIGH 7.8
CVE-2020-25712

A flaw was found in xorg-x11-server before 1.20.10. A heap-buffer overflow in XkbSetDeviceInfo may lead to a privilege escalation vulnerability. The …

Fix: 1.20.10+
Fix from $1,950 2020-12-15
Mycarelink Smart Model 25000 Firmware CRITICAL 9.8
CVE-2020-25187

Medtronic MyCareLink Smart 25000 is  vulnerable when an authenticated attacker runs a debug command, which can be sent to the patient reader and ca…

Mitigation only
Fix from $2,300 2020-12-14
Levistudiou HIGH 7.8
CVE-2020-25199

A heap-based buffer overflow vulnerability exists within the WECON LeviStudioU Release Build 2019-09-21 and prior when processing project files. Open…

Fix: after 2019-09-21
Fix from $1,950 2020-12-09
Imagemagick HIGH 7.1
CVE-2020-27752

A flaw was found in ImageMagick in MagickCore/quantum-private.h. An attacker who submits a crafted file that is processed by ImageMagick could trigge…

Fix: 6.9.11-47 / 7.0.9-0+
Fix from $1,950 2020-12-08
Debian Linux MEDIUM 5.5
CVE-2020-25674

WriteOnePNGImage() from coders/png.c (the PNG coder) has a for loop with an improper exit condition that can allow an out-of-bounds READ via heap-buf…

Fix: 6.9.10-68 / 7.0.8-68+
Fix from $1,600 2020-12-08
Fedora MEDIUM 6.1
CVE-2020-25664

In WriteOnePNGImage() of the PNG coder at coders/png.c, an improper call to AcquireVirtualMemory() and memset() allows for an out-of-bounds write lat…

Fix: 6.9.10-68 / 7.0.8-68+
Fix from $1,600 2020-12-08
Debian Linux MEDIUM 5.5
CVE-2020-25665

The PALM image coder at coders/palm.c makes an improper call to AcquireQuantumMemory() in routine WritePALMImage() because it needs to be offset by 2…

Fix: 6.9.10-68 / 7.0.8-68+
Fix from $1,600 2020-12-08