Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper Input ValidationCWE-20 × clear
Sd Wan Firmware HIGH 7.8
CVE-2021-1260

Multiple vulnerabilities in Cisco SD-WAN products could allow an authenticated attacker to perform command injection attacks against an affected devi…

Mitigation only
Fix from $1,950 2021-01-20
Sd Wan Firmware HIGH 7.8
CVE-2021-1261

Multiple vulnerabilities in Cisco SD-WAN products could allow an authenticated attacker to perform command injection attacks against an affected devi…

Mitigation only
Fix from $1,950 2021-01-20
Sd Wan Firmware HIGH 7.8
CVE-2021-1262

Multiple vulnerabilities in Cisco SD-WAN products could allow an authenticated attacker to perform command injection attacks against an affected devi…

Fix: 19.2.4 / 20.1.2+
Fix from $1,950 2021-01-20
Data Center Network Manager MEDIUM 5.4
CVE-2021-1253

Multiple vulnerabilities in the web-based management interface of Cisco Data Center Network Manager (DCNM) could allow a remote attacker with network…

Fix: 11.5+
Fix from $1,600 2021-01-20
Junos HIGH 8.8
CVE-2021-0208

An improper input validation vulnerability in the Routing Protocol Daemon (RPD) service of Juniper Networks Junos OS allows an attacker to send a mal…

Mitigation only
Fix from $1,950 2021-01-15
Rv110w Firmware HIGH 7.2
CVE-2021-1148

Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers could allow an authe…

Mitigation only
Fix from $1,950 2021-01-13
Rv110w Firmware HIGH 7.2
CVE-2021-1149

Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers could allow an authe…

Mitigation only
Fix from $1,950 2021-01-13
Rv110w Firmware HIGH 7.2
CVE-2021-1150

Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers could allow an authe…

Mitigation only
Fix from $1,950 2021-01-13
Rv110w Firmware HIGH 7.2
CVE-2021-1146

Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers could allow an authe…

Mitigation only
Fix from $1,950 2021-01-13
Rv110w Firmware HIGH 7.2
CVE-2021-1147

Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers could allow an authe…

Mitigation only
Fix from $1,950 2021-01-13
Emui CRITICAL 9.1
CVE-2020-9139

There is a improper input validation vulnerability in some Huawei Smartphone.Successful exploit of this vulnerability can cause memory access errors …

Mitigation only
Fix from $2,300 2021-01-13
Git Big Picture CRITICAL 9.8
CVE-2021-3028

git-big-picture before 1.0.0 mishandles ' characters in a branch name, leading to code execution.

Fix: 1.0.0+
Fix from $2,300 2021-01-13
Android HIGH 7.5
CVE-2021-0313

In isWordBreakAfter of LayoutUtils.cpp, there is a possible way to slow or crash a TextView due to improper input validation. This could lead to remo…

Patch available
Fix from $1,950 2021-01-11
Android MEDIUM 5.0
CVE-2021-0322

In onCreate of SlicePermissionActivity.java, there is a possible misleading string displayed due to improper input validation. This could lead to loc…

Patch available
Fix from $1,600 2021-01-11
Android CRITICAL 9.8
CVE-2020-0471

In reassemble_and_dispatch of packet_fragmenter.cc, there is a possible way to inject packets into an encrypted Bluetooth connection due to improper …

Patch available
Fix from $2,300 2021-01-11
Chrome MEDIUM 6.5
CVE-2020-16040EPSS 100%

Insufficient data validation in V8 in Google Chrome prior to 87.0.4280.88 allowed a remote attacker to potentially exploit heap corruption via a craf…

Fix: 87.0.4280.88+
Fix from $1,600 2021-01-08
Chrome HIGH 8.8
CVE-2020-16015

Insufficient data validation in WASM in Google Chrome prior to 87.0.4280.66 allowed a remote attacker to potentially exploit heap corruption via a cr…

Fix: 87.0.4280.66+
Fix from $1,950 2021-01-08
Virtual Gpu Manager HIGH 7.1
CVE-2021-1060

NVIDIA vGPU software contains a vulnerability in the guest kernel mode driver and vGPU plugin, in which an input index is not validated, which may le…

Fix: 8.6 / 11.3+
Fix from $1,950 2021-01-08
Virtual Gpu Manager HIGH 7.1
CVE-2021-1065

NVIDIA vGPU manager contains a vulnerability in the vGPU plugin, in which input data is not validated, which may lead to tampering of data or denial …

Fix: 8.6 / 11.3+
Fix from $1,950 2021-01-08
Virtual Gpu Manager MEDIUM 5.5
CVE-2021-1066

NVIDIA vGPU manager contains a vulnerability in the vGPU plugin, in which input data is not validated, which may lead to unexpected consumption of re…

Fix: 8.6 / 11.3+
Fix from $1,600 2021-01-08
Gpu Driver MEDIUM 5.5
CVE-2021-1053

NVIDIA GPU Display Driver for Windows and Linux, all versions, contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgkDdiEs…

Fix: 390.141 / 392.63+
Fix from $1,600 2021-01-08
Easysoft HIGH 7.8
CVE-2020-6656

Eaton's easySoft software v7.xx prior to v7.22 are susceptible to file parsing type confusion remote code execution vulnerability. A malicious entity…

Fix: 7.20+
Fix from $1,950 2021-01-07
Emptoris Sourcing MEDIUM 6.5
CVE-2020-4896

IBM Emptoris Sourcing 10.1.0, 10.1.1, and 10.1.3 is vulnerable to web cache poisoning, caused by improper input validation by modifying HTTP request …

Fix: 10.1.0.38 / 10.1.1.35+
Fix from $1,600 2021-01-07
Easysoft HIGH 7.8
CVE-2020-6655

The Eaton's easySoft software v7.xx prior to v7.22 are susceptible to Out-of-bounds remote code execution vulnerability. A malicious entity can execu…

Fix: 7.22+
Fix from $1,950 2021-01-07
Ninja Forms MEDIUM 5.3
CVE-2020-36175

The Ninja Forms plugin before 3.4.27.1 for WordPress allows attackers to bypass validation via the email field.

Fix: 3.4.27.1+
Fix from $1,600 2021-01-06
Debian Linux HIGH 7.8
CVE-2020-27844

A flaw was found in openjpeg's src/lib/openjp2/t2.c in versions prior to 2.4.0. This flaw allows an attacker to provide crafted input to openjpeg dur…

Fix: 2.4.0+
Fix from $1,950 2021-01-05
Debian Linux HIGH 7.5
CVE-2020-25275

Dovecot before 2.3.13 has Improper Input Validation in lda, lmtp, and imap, leading to an application crash via a crafted email message with certain …

Fix: 2.3.13+
Fix from $1,950 2021-01-04
Fedora MEDIUM 5.5
CVE-2020-35493

A flaw exists in binutils in bfd/pef.c. An attacker who is able to submit a crafted PEF file to be parsed by objdump could cause a heap buffer overfl…

Fix: 2.34+
Fix from $1,600 2021-01-04
Kcfinder HIGH 8.8
CVE-2018-25002

uploader.php in the KCFinder integration project through 2018-06-01 for Drupal mishandles validation, aka SA-CONTRIB-2018-024. NOTE: This project is …

Fix: after 2018-06-01
Fix from $1,950 2021-01-01
Qts CRITICAL 9.1
CVE-2018-19945

A vulnerability has been reported to affect earlier QNAP devices running QTS 4.3.4 to 4.3.6. Caused by improper limitations of a pathname to a restri…

Fix: 4.3.4.0899 / 4.3.6.0895+
Fix from $2,300 2020-12-31