Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper Input ValidationCWE-20 × clear
Rv016 Multi Wan Vpn Router Firmware HIGH 7.2
CVE-2021-1317

Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV016, RV042, RV042G, RV082, RV320, and RV325 Routers could al…

Fix: after 4.2.3.14
Fix from $1,950 2021-02-04
Rv016 Multi Wan Vpn Router Firmware HIGH 7.2
CVE-2021-1318

Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV016, RV042, RV042G, RV082, RV320, and RV325 Routers could al…

Fix: after 4.2.3.14
Fix from $1,950 2021-02-04
Rv016 Multi Wan Vpn Router Firmware HIGH 7.2
CVE-2021-1314

Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV016, RV042, RV042G, RV082, RV320, and RV325 Routers could al…

Fix: after 4.2.3.14
Fix from $1,950 2021-02-04
Api Connect MEDIUM 6.5
CVE-2020-4828

IBM API Connect 10.0.0.0 through 10.0.1.0 and 2018.4.1.0 through 2018.4.1.13 is vulnerable to web cache poisoning, caused by improper input validatio…

Fix: after 2018.4.1.13
Fix from $1,600 2021-02-04
M10jnp2sb Firmware MEDIUM 6.7
CVE-2020-8734

Improper input validation in the firmware for Intel(R) Server Board M10JNP2SB before version 7.210 may allow a privileged user to potentially enable …

Fix: 7.210+
Fix from $1,600 2021-02-02
Businesscti Enterprise HIGH 8.0
CVE-2021-3176

The chat window of the Mitel BusinessCTI Enterprise (MBC-E) Client for Windows before 6.4.15 and 7.x before 7.1.2 could allow an attacker to gain acc…

Fix: 6.4.15 / 7.1.2+
Fix from $1,950 2021-01-29
Bitcoin Core HIGH 7.5
CVE-2021-3195

bitcoind in Bitcoin Core through 0.21.0 can create a new file in an arbitrary directory (e.g., outside the ~/.bitcoin directory) via a dumpwallet RPC…

Fix: after 0.21.0
Fix from $1,950 2021-01-26
Tinycheck CRITICAL 9.8
CVE-2020-36199

TinyCheck before commits 9fd360d and ea53de8 was vulnerable to command injection due to insufficient checks of input parameters in several places.

Fix: 2020-12-18+
Fix from $2,300 2021-01-26
Ecostruxure Operator Terminal Expert CRITICAL 9.8
CVE-2020-28221

A CWE-20: Improper Input Validation vulnerability exists in EcoStruxure™ Operator Terminal Expert and Pro-face BLUE (version details in the notificat…

Patch available
Fix from $2,300 2021-01-26
Android HIGH 7.5
CVE-2020-0236

In A2DP_GetCodecType of a2dp_codec_config, there is a possible out-of-bounds read due to improper input validation. This could lead to remote informa…

Mitigation only
Fix from $1,950 2021-01-26
Java Chassis HIGH 8.8
CVE-2020-17532

When handler-router component is enabled in servicecomb-java-chassis, authenticated user may inject some data and cause arbitrary code execution. The…

Fix: 2.1.5+
Fix from $1,950 2021-01-25
Secrets Store Csi Driver MEDIUM 6.5
CVE-2020-8568

Kubernetes Secrets Store CSI Driver versions v0.0.15 and v0.0.16 allow an attacker who can modify a SecretProviderClassPodStatus/Status resource the …

Patch available
Fix from $1,600 2021-01-21
Apq8053 HIGH 7.5
CVE-2020-11200

Buffer over-read while parsing RPS due to lack of check of input validation on values received from user side. in Snapdragon Auto, Snapdragon Compute…

Mitigation only
Fix from $1,950 2021-01-21
Apq8009 CRITICAL 9.1
CVE-2020-11144

Buffer over-read while UE process invalid DL ROHC packet for decompression due to lack of check of size of compresses packet in Snapdragon Auto, Snap…

Mitigation only
Fix from $2,300 2021-01-21
Apq8009 Firmware HIGH 7.5
CVE-2020-11119

Buffer over-read can happen when the buffer length received from response handlers is more than the size of the payload in Snapdragon Auto, Snapdrago…

Mitigation only
Fix from $1,950 2021-01-21
Data Center Network Manager MEDIUM 5.4
CVE-2021-1249

Multiple vulnerabilities in the web-based management interface of Cisco Data Center Network Manager (DCNM) could allow a remote attacker with network…

Fix: 11.5+
Fix from $1,600 2021-01-20
Data Center Network Manager MEDIUM 5.4
CVE-2021-1250

Multiple vulnerabilities in the web-based management interface of Cisco Data Center Network Manager (DCNM) could allow a remote attacker with network…

Fix: 11.5+
Fix from $1,600 2021-01-20
Smart Software Manager Satellite CRITICAL 9.8
CVE-2021-1138

Multiple vulnerabilities in the web UI of Cisco Smart Software Manager Satellite could allow an unauthenticated, remote attacker to execute arbitrary…

Fix: after 5.1.0
Fix from $2,300 2021-01-20
Smart Software Manager Satellite HIGH 8.8
CVE-2021-1139

Multiple vulnerabilities in the web UI of Cisco Smart Software Manager Satellite could allow an unauthenticated, remote attacker to execute arbitrary…

Fix: after 5.1.0
Fix from $1,950 2021-01-20
Smart Software Manager Satellite CRITICAL 9.8
CVE-2021-1140

Multiple vulnerabilities in the web UI of Cisco Smart Software Manager Satellite could allow an unauthenticated, remote attacker to execute arbitrary…

Fix: after 5.1.0
Fix from $2,300 2021-01-20
Smart Software Manager Satellite HIGH 8.8
CVE-2021-1141

Multiple vulnerabilities in the web UI of Cisco Smart Software Manager Satellite could allow an unauthenticated, remote attacker to execute arbitrary…

Fix: after 5.1.0
Fix from $1,950 2021-01-20
Smart Software Manager Satellite CRITICAL 9.8
CVE-2021-1142

Multiple vulnerabilities in the web UI of Cisco Smart Software Manager Satellite could allow an unauthenticated, remote attacker to execute arbitrary…

Fix: after 5.1.0
Fix from $2,300 2021-01-20
Catalyst Sd Wan Manager MEDIUM 6.5
CVE-2021-1304

Multiple vulnerabilities in the web-based management interface of Cisco SD-WAN vManage Software could allow an authenticated, remote attacker to bypa…

Mitigation only
Fix from $1,600 2021-01-20
Ios Xe Sd Wan HIGH 8.6
CVE-2021-1279

Multiple vulnerabilities in Cisco SD-WAN products could allow an unauthenticated, remote attacker to execute denial of service (DoS) attacks against …

No fix yet
Fix from $1,950 2021-01-20
Data Center Network Manager MEDIUM 6.1
CVE-2021-1286

Multiple vulnerabilities in the web-based management interface of Cisco Data Center Network Manager (DCNM) could allow a remote attacker with network…

Fix: 11.5+
Fix from $1,600 2021-01-20
Sd Wan Firmware HIGH 8.8
CVE-2021-1298

Multiple vulnerabilities in Cisco SD-WAN products could allow an authenticated attacker to perform command injection attacks against an affected devi…

Mitigation only
Fix from $1,950 2021-01-20
Sd Wan Firmware HIGH 8.8
CVE-2021-1299

Multiple vulnerabilities in Cisco SD-WAN products could allow an authenticated attacker to perform command injection attacks against an affected devi…

Mitigation only
Fix from $1,950 2021-01-20
Ios Xe Sd Wan CRITICAL 9.8
CVE-2021-1301

Multiple vulnerabilities in Cisco SD-WAN products could allow an unauthenticated, remote attacker to execute attacks against an affected device. For …

No fix yet
Fix from $2,300 2021-01-20
Catalyst Sd Wan Manager HIGH 8.8
CVE-2021-1302

Multiple vulnerabilities in the web-based management interface of Cisco SD-WAN vManage Software could allow an authenticated, remote attacker to bypa…

Mitigation only
Fix from $1,950 2021-01-20
Sd Wan Firmware HIGH 7.8
CVE-2021-1263

Multiple vulnerabilities in Cisco SD-WAN products could allow an authenticated attacker to perform command injection attacks against an affected devi…

Mitigation only
Fix from $1,950 2021-01-20