Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper Input ValidationCWE-20 × clear
Android HIGH 7.8
CVE-2022-30754

Implicit Intent hijacking vulnerability in AppLinker prior to SMR Jul-2022 Release 1 allow allows attackers to launch certain activities with privile…

Mitigation only
Fix from $1,950 2022-07-12
Android HIGH 7.8
CVE-2022-30756

Implicit Intent hijacking vulnerability in Finder prior to SMR Jul-2022 Release 1 allow allows attackers to launch certain activities with privilege …

Mitigation only
Fix from $1,950 2022-07-12
Simatic Easie Core Package HIGH 7.5
CVE-2021-44221

A vulnerability has been identified in SIMATIC eaSie Core Package (All versions < V22.00). The affected systems do not properly validate input that i…

Fix: 22.00+
Fix from $1,950 2022-07-12
HTTP Server CRITICAL 9.8
CVE-2020-29507

Dell BSAFE Crypto-C Micro Edition, versions before 4.1.4, and Dell BSAFE Micro Edition Suite, versions before 4.4, contain an Improper Input Validati…

Fix: 4.1.4 / 4.4+
Fix from $2,300 2022-07-11
HTTP Server CRITICAL 9.8
CVE-2020-29508

Dell BSAFE Crypto-C Micro Edition, versions before 4.1.5, and Dell BSAFE Micro Edition Suite, versions before 4.6, contain an Improper Input Validati…

Fix: 4.1.5 / 4.6+
Fix from $2,300 2022-07-11
HTTP Server CRITICAL 9.8
CVE-2020-35169

Dell BSAFE Crypto-C Micro Edition, versions before 4.1.5, and Dell BSAFE Micro Edition Suite, versions before 4.5.2, contain an Improper Input Valida…

Fix: 4.1.5 / 4.5.2+
Fix from $2,300 2022-07-11
Fabric HIGH 7.5
CVE-2022-31121

Hyperledger Fabric is a permissioned distributed ledger framework. In affected versions if a consensus client sends a malformed consensus request to …

Fix: 2.2.7 / 2.4.5+
Fix from $1,950 2022-07-07
Garoon MEDIUM 6.5
CVE-2022-29892

Improper input validation vulnerability in Space of Cybozu Garoon 4.0.0 to 5.5.1 allows a remote authenticated attacker to repeatedly display errors …

Fix: after 5.5.1
Fix from $1,600 2022-07-04
R1510 Firmware CRITICAL 9.1
CVE-2022-28127EPSS 35%

A data removal vulnerability exists in the web_server /action/remove/ API functionality of Robustel R1510 3.3.0. A specially-crafted network request …

No fix yet
Fix from $2,300 2022-06-30
Swfupload CRITICAL 9.8
CVE-2013-4144

There is an object injection vulnerability in swfupload plugin for wordpress.

No fix yet
Fix from $2,300 2022-06-30
Warp HIGH 7.8
CVE-2022-2145

Cloudflare WARP client for Windows (up to v. 2022.5.309.0) allowed creation of mount points from its ProgramData folder. During installation of the W…

Fix: 2022.5.309.0+
Fix from $1,950 2022-06-28
Alienware M15 R5 Firmware HIGH 7.8
CVE-2022-26862

Prior Dell BIOS versions contain an Input Validation vulnerability. A locally authenticated malicious user could potentially exploit this vulnerabili…

Fix: 1.2.1 / 1.4.4+
Fix from $1,950 2022-06-23
Alienware M15 R5 Firmware HIGH 7.8
CVE-2022-26863

Prior Dell BIOS versions contain an Input Validation vulnerability. A locally authenticated malicious user could potentially exploit this vulnerabili…

Fix: 1.2.1 / 1.4.4+
Fix from $1,950 2022-06-23
Alienware M15 R5 Firmware HIGH 7.8
CVE-2022-26864

Prior Dell BIOS versions contain an Input Validation vulnerability. A locally authenticated malicious user could potentially exploit this vulnerabili…

Fix: 1.2.1 / 1.4.4+
Fix from $1,950 2022-06-23
Pra Es8p2s Firmware CRITICAL 9.8
CVE-2022-32534

The Bosch Ethernet switch PRA-ES8P2S with software version 1.01.05 and earlier was found to be vulnerable to command injection through its diagnostic…

Fix: after 1.01.05
Fix from $2,300 2022-06-23
Ca Automic Automation CRITICAL 9.8
CVE-2022-33752

CA Automic Automation 12.2 and 12.3 contain an insufficient input validation vulnerability in the Automic agent that could allow a remote attacker to…

Mitigation only
Fix from $2,300 2022-06-16
Ca Automic Automation CRITICAL 9.8
CVE-2022-33754

CA Automic Automation 12.2 and 12.3 contain an insufficient input validation vulnerability in the Automic agent that could allow a remote attacker to…

Mitigation only
Fix from $2,300 2022-06-16
Fingerprint Driver HIGH 7.1
CVE-2021-3675

Improper Input Validation vulnerability in synaTEE.signed.dll of Synaptics Fingerprint Driver allows a local authorized attacker to overwrite a heap …

Fix: 5.1.340.26 / 5.2.229.26+
Fix from $1,950 2022-06-16
Xeon E3 1585 V5 Firmware MEDIUM 5.5
CVE-2022-21180

Improper input validation for some Intel(R) Processors may allow an authenticated user to potentially cause a denial of service via local access.

Patch available
Fix from $1,600 2022-06-15
Splunk HIGH 8.1
CVE-2022-32154

Dashboards in Splunk Enterprise versions before 9.0 might let an attacker inject risky search commands into a form token when the token is used in a …

Fix: 8.2.2106 / 9.0+
Fix from $1,950 2022-06-15
Android MEDIUM 5.5
CVE-2022-20205

In isFileUri of FileUtil.java, there is a possible way to bypass the check for a file:// scheme due to improper input validation. This could lead to …

Mitigation only
Fix from $1,600 2022-06-15
Android HIGH 7.8
CVE-2022-20186

In kbase_mem_alias of mali_kbase_mem_linux.c, there is a possible arbitrary code execution due to improper input validation. This could lead to local…

No fix yet
Fix from $1,950 2022-06-15
Android HIGH 7.8
CVE-2022-20156

In unflatten of GraphicBuffer.cpp, there is a possible arbitrary code execution due to improper input validation. This could lead to local escalation…

Mitigation only
Fix from $1,950 2022-06-15
Android MEDIUM 5.5
CVE-2022-20129

In registerPhoneAccount of PhoneAccountRegistrar.java, there is a possible way to prevent the user from selecting a phone account due to improper inp…

Mitigation only
Fix from $1,600 2022-06-15
Android HIGH 7.8
CVE-2022-20134

In readArguments of CallSubjectDialog.java, there is a possible way to trick the user to call the wrong phone number due to improper input validation…

Mitigation only
Fix from $1,950 2022-06-15
3d Visual Enterprise Viewer MEDIUM 5.5
CVE-2022-32240

When a user opens manipulated Jupiter Tesselation (.jt, JTReader.x3d) files received from untrusted sources in SAP 3D Visual Enterprise Viewer, the a…

Fix: after 9.0
Fix from $1,600 2022-06-14
3d Visual Enterprise Viewer MEDIUM 5.5
CVE-2022-32241

When a user opens manipulated Portable Document Format (.pdf, PDFView.x3d) files received from untrusted sources in SAP 3D Visual Enterprise Viewer, …

Fix: after 9.0
Fix from $1,600 2022-06-14
3d Visual Enterprise Viewer MEDIUM 5.5
CVE-2022-32242

When a user opens manipulated Radiance Picture (.hdr, hdr.x3d) files received from untrusted sources in SAP 3D Visual Enterprise Viewer, the applicat…

Fix: after 9.0
Fix from $1,600 2022-06-14
3d Visual Enterprise Viewer MEDIUM 5.5
CVE-2022-32243

When a user opens manipulated Scalable Vector Graphics (.svg, svg.x3d) files received from untrusted sources in SAP 3D Visual Enterprise Viewer, the …

Fix: after 9.0
Fix from $1,600 2022-06-14
3d Visual Enterprise Viewer MEDIUM 5.5
CVE-2022-32238

When a user opens manipulated Encapsulated Post Script (.eps, ai.x3d) files received from untrusted sources in SAP 3D Visual Enterprise Viewer, the a…

Fix: after 9.0
Fix from $1,600 2022-06-14