Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper Input ValidationCWE-20 × clear
Jt2go HIGH 7.8
CVE-2021-34296

A vulnerability has been identified in JT2Go (All versions < V13.2), Teamcenter Visualization (All versions < V13.2). The BMP_Loader.dll library in a…

Fix: 13.2.0+
Fix from $1,950 2021-07-13
Jt2go HIGH 7.8
CVE-2021-34297

A vulnerability has been identified in JT2Go (All versions < V13.2), Teamcenter Visualization (All versions < V13.2). The BMP_Loader.dll library in a…

Fix: 13.2.0+
Fix from $1,950 2021-07-13
Jt2go HIGH 7.8
CVE-2021-34298

A vulnerability has been identified in JT2Go (All versions < V13.2), Teamcenter Visualization (All versions < V13.2). The BMP_Loader.dll library in a…

Fix: 13.2.0+
Fix from $1,950 2021-07-13
Jt2go HIGH 7.8
CVE-2021-34300

A vulnerability has been identified in JT2Go (All versions < V13.2), Teamcenter Visualization (All versions < V13.2). The Tiff_loader.dll library in …

Fix: 13.2.0+
Fix from $1,950 2021-07-13
Jt2go HIGH 7.8
CVE-2021-34301

A vulnerability has been identified in JT2Go (All versions < V13.2), Teamcenter Visualization (All versions < V13.2). The BMP_Loader.dll library in a…

Fix: 13.2.0+
Fix from $1,950 2021-07-13
Aqt1000 Firmware CRITICAL 9.8
CVE-2021-1965

Possible buffer overflow due to lack of parameter length check during MBSSID scan IE parse in Snapdragon Auto, Snapdragon Compute, Snapdragon Connect…

Patch available
Fix from $2,300 2021-07-13
Apq8053 Firmware HIGH 7.5
CVE-2021-1970

Possible out of bound read due to lack of length check of FT sub-elements in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon…

Patch available
Fix from $1,950 2021-07-13
Micrologix 1100 Firmware HIGH 8.6
CVE-2021-33012

Rockwell Automation MicroLogix 1100, all versions, allows a remote, unauthenticated attacker sending specially crafted commands to cause the PLC to f…

Mitigation only
Fix from $1,950 2021-07-09
Linux Kernel HIGH 7.8
CVE-2021-3612

An out-of-bounds memory write flaw was found in the Linux kernel's joystick devices subsystem in versions before 5.9-rc1, in the way the user calls i…

Fix: 5.9.0+
Fix from $1,950 2021-07-09
Ar Emoji Editor HIGH 7.8
CVE-2021-25441

Improper input validation vulnerability in AR Emoji Editor prior to version 4.4.03.5 in Android Q(10.0) and above allows untrusted applications to ac…

Mitigation only
Fix from $1,950 2021-07-08
Android HIGH 7.8
CVE-2021-25428

Improper validation check vulnerability in PackageManager prior to SMR July-2021 Release 1 allows untrusted applications to get dangerous level permi…

Mitigation only
Fix from $1,950 2021-07-08
Tizen CRITICAL 9.8
CVE-2021-25434

Improper input validation vulnerability in Tizen bootloader prior to Firmware update JUL-2021 Release allows arbitrary code execution using param par…

Fix: 5.5+
Fix from $2,300 2021-07-08
Tizen CRITICAL 9.8
CVE-2021-25435

Improper input validation vulnerability in Tizen bootloader prior to Firmware update JUL-2021 Release allows arbitrary code execution using recovery …

Fix: 5.5+
Fix from $2,300 2021-07-08
Tizen CRITICAL 9.8
CVE-2021-25436

Improper input validation vulnerability in Tizen FOTA service prior to Firmware update JUL-2021 Release allows arbitrary code execution via Samsung A…

Fix: 5.5+
Fix from $2,300 2021-07-08
Tizen CRITICAL 9.8
CVE-2021-25437

Improper access control vulnerability in Tizen FOTA service prior to Firmware update JUL-2021 Release allows attackers to arbitrary code execution by…

Fix: 5.5+
Fix from $2,300 2021-07-08
Pexip Infinity HIGH 7.5
CVE-2021-31925

Pexip Infinity 25.x before 25.4 has Improper Input Validation, and thus an unauthenticated remote attacker can cause a denial of service via the admi…

Fix: 25.4+
Fix from $1,950 2021-07-07
Pexip Infinity HIGH 7.5
CVE-2020-25868

Pexip Infinity 22.x through 24.x before 24.2 has Improper Input Validation for call setup. An unauthenticated remote attacker can trigger a software …

Fix: 24.2+
Fix from $1,950 2021-07-07
Joomla\! HIGH 7.5
CVE-2021-26036

An issue was discovered in Joomla! 2.5.0 through 3.9.27. Missing validation of input could lead to a broken usergroups table.

Fix: after 3.9.27
Fix from $1,950 2021-07-07
C Cure 9000 Firmware HIGH 8.8
CVE-2021-27660

An insecure client auto update feature in C-CURE 9000 can allow remote execution of lower privileged Windows programs.

Fix: 2.80+
Fix from $1,950 2021-07-01
Emui HIGH 7.5
CVE-2021-22349

There is an Input Verification Vulnerability in Huawei Smartphone. Successful exploitation of insufficient input verification may cause the system to…

Mitigation only
Fix from $1,950 2021-06-30
Jetson Linux MEDIUM 6.7
CVE-2021-34374

Trusty contains a vulnerability in command handlers where the length of input buffers is not verified. This vulnerability can cause memory corruption…

Fix: 32.5.1+
Fix from $1,600 2021-06-30
Traffic Server HIGH 7.5
CVE-2021-32566

Improper Input Validation vulnerability in HTTP/2 of Apache Traffic Server allows an attacker to DOS the server. This issue affects Apache Traffic Se…

Fix: after 9.0.1
Fix from $1,950 2021-06-30
Traffic Server HIGH 7.5
CVE-2021-32567

Improper Input Validation vulnerability in HTTP/2 of Apache Traffic Server allows an attacker to DOS the server. This issue affects Apache Traffic Se…

Fix: after 9.0.1
Fix from $1,950 2021-06-30
Zook HIGH 8.8
CVE-2020-7869

An improper input validation vulnerability of ZOOK software (remote administration tool) could allow a remote attacker to create arbitrary file. The …

Mitigation only
Fix from $1,950 2021-06-29
Ezpdf Editor HIGH 7.2
CVE-2020-7870

A memory corruption vulnerability exists when ezPDF improperly handles the parameter. This vulnerability exists due to insufficient validation of the…

Fix: 3.0.0.2 / 3.0.6.5+
Fix from $1,950 2021-06-29
Helpcom CRITICAL 9.8
CVE-2020-7871

A vulnerability of Helpcom could allow an unauthenticated attacker to execute arbitrary command. This vulnerability exists due to insufficient valida…

Fix: 10.0+
Fix from $2,300 2021-06-29
Magento MEDIUM 5.3
CVE-2021-28585

Magento versions 2.4.2 (and earlier), 2.4.1-p1 (and earlier) and 2.3.6-p1 (and earlier) are affected by an Improper input validation vulnerability in…

Fix: 2.3.6+
Fix from $1,600 2021-06-28
Business Intelligence And Reporting Tools CRITICAL 9.8
CVE-2021-34427EPSS 58%

In Eclipse BIRT versions 4.8.0 and earlier, an attacker can use query parameters to create a JSP file which is accessible from remote (current BIRT v…

Fix: after 4.8.0
Fix from $2,300 2021-06-25
Flow MEDIUM 5.3
CVE-2021-31412

Improper sanitization of path in default RouteNotFoundError view in com.vaadin:flow-server versions 1.0.0 through 1.0.14 (Vaadin 10.0.0 through 10.0.…

Fix: after 19.0.8
Fix from $1,600 2021-06-24
Helpuftclient HIGH 8.8
CVE-2020-7862

A vulnerability in agent program of HelpU remote control solution could allow an authenticated remote attacker to execute arbitrary commands This vul…

Mitigation only
Fix from $1,950 2021-06-24