Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper Input ValidationCWE-20 × clear
Patient Information Center Ix MEDIUM 6.5
CVE-2020-16216

In IntelliVue patient monitors MX100, MX400-550, MX600, MX700, MX750, MX800, MX850, MP2-MP90, and IntelliVue X2 and X3 Versions N and prior, the pr…

Mitigation only
Fix from $1,600 2020-09-11
Bla A09 Firmware MEDIUM 5.5
CVE-2020-9239

Huawei smartphones BLA-A09 versions 8.0.0.123(C212),versions earlier than 8.0.0.123(C567),versions earlier than 8.0.0.123(C797);BLA-TL00B versions ea…

Fix: 8.0.0.123 / 8.0.0.163+
Fix from $1,600 2020-09-11
Node Fetch MEDIUM 5.3
CVE-2020-15168

node-fetch before versions 2.6.1 and 3.0.0-beta.9 did not honor the size option after following a redirect, which means that when a content size was …

Fix: 2.6.1+
Fix from $1,600 2020-09-10
Apollo HIGH 7.0
CVE-2020-15170

apollo-adminservice before version 1.7.1 does not implement access controls. If users expose apollo-adminservice to internet(which is not recommended…

Fix: 1.7.1+
Fix from $1,950 2020-09-10
Experience Manager MEDIUM 6.1
CVE-2020-9743

AEM versions 6.5.5.0 (and below), 6.4.8.1 (and below), 6.3.3.8 (and below) and 6.2 SP1-CFP20 (and below) are affected by an HTML injection vulnerabil…

Fix: after 6.5.5.0
Fix from $1,600 2020-09-10
Silk V3 Decoder CRITICAL 9.8
CVE-2020-24074

The decode program in silk-v3-decoder Version:20160922 Build By kn007 does not strictly check data, resulting in a buffer overflow.

Patch available
Fix from $2,300 2020-09-09
Kamorta Firmware HIGH 7.1
CVE-2020-3617

u'Buffer over-read Issue in Q6 testbus framework due to diag packet length is not completely validated before accessing the field and leads to Inform…

Mitigation only
Fix from $1,950 2020-09-09
Apq8009 Firmware MEDIUM 5.5
CVE-2020-3621

u'Lack of check to ensure that the TX read index & RX write index that are read from shared memory are less than the FIFO size results into memory co…

Mitigation only
Fix from $1,600 2020-09-08
Msm8909w Firmware HIGH 7.8
CVE-2020-3648

u'Possible out of bound write in DSP driver code due to lack of check of data received from user' in Snapdragon Auto, Snapdragon Compute, Snapdragon …

Mitigation only
Fix from $1,950 2020-09-08
Apq8009 Firmware HIGH 7.5
CVE-2020-11118

u'Information exposure issues while processing IE header due to improper check of beacon IE frame' in Snapdragon Auto, Snapdragon Compute, Snapdragon…

Mitigation only
Fix from $1,950 2020-09-08
Apq8009 Firmware HIGH 7.8
CVE-2019-14074

u'Heap overflow in diag command handler due to lack of check of packet length received from user' in Snapdragon Auto, Snapdragon Compute, Snapdragon …

Mitigation only
Fix from $1,950 2020-09-08
Add Apt Repository MEDIUM 5.5
CVE-2020-15709

Versions of add-apt-repository before 0.98.9.2, 0.96.24.32.14, 0.96.20.10, and 0.92.37.8ubuntu0.1~esm1, printed a PPA (personal package archive) desc…

Fix: 0.92.37.8ubuntu0.1 / 0.96.20.10+
Fix from $1,600 2020-09-05
Asyncos MEDIUM 5.3
CVE-2020-3546

A vulnerability in the web-based management interface of Cisco AsyncOS software for Cisco Email Security Appliance (ESA) could allow an unauthenticat…

Fix: after 13.5.1
Fix from $1,600 2020-09-04
Rv340w Firmware MEDIUM 6.8
CVE-2020-3453

Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV340 Series Routers could allow an authenticated, remote atta…

Fix: 1.0.03.19+
Fix from $1,600 2020-09-04
Enterprise Network Function Virtualization Infrastructure HIGH 8.1
CVE-2020-3478

A vulnerability in the REST API of Cisco Enterprise NFV Infrastructure Software (NFVIS) could allow an authenticated, remote attacker to overwrite ce…

Fix: after 4.1.2
Fix from $1,950 2020-09-04
Jabber HIGH 8.8
CVE-2020-3495EPSS 62%

A vulnerability in Cisco Jabber for Windows could allow an authenticated, remote attacker to execute arbitrary code. The vulnerability is due to impr…

Fix: 12.1.3 / 12.5.2+
Fix from $1,950 2020-09-04
Jabber MEDIUM 6.5
CVE-2020-3498

A vulnerability in Cisco Jabber software could allow an authenticated, remote attacker to gain access to sensitive information. The vulnerability is …

Fix: 12.1.3 / 12.5.2+
Fix from $1,600 2020-09-04
Webex Training MEDIUM 5.3
CVE-2020-3542

A vulnerability in Cisco Webex Training could allow an authenticated, remote attacker to join a password-protected meeting without providing the meet…

Fix: 40.7.6+
Fix from $1,600 2020-09-04
Laravel HIGH 7.5
CVE-2020-24940

An issue was discovered in Laravel before 6.18.34 and 7.x before 7.23.2. Unvalidated values are saved to the database in some situations in which tab…

Fix: 6.18.34 / 7.23.2+
Fix from $1,950 2020-09-04
Whatsapp HIGH 7.5
CVE-2020-1890

A URL validation issue in WhatsApp for Android prior to v2.20.11 and WhatsApp Business for Android prior to v2.20.2 could have caused the recipient o…

Fix: 2.20.2 / 2.20.11+
Fix from $1,950 2020-09-03
Honor 20 Pro Firmware MEDIUM 5.5
CVE-2020-9235

Huawei smartphones HONOR 20 PRO Versions earlier than 10.1.0.230(C432E9R5P1),Versions earlier than 10.1.0.231(C10E3R3P2),Versions earlier than 10.1.0…

Fix: 10.1.0.160 / 10.1.0.212+
Fix from $1,600 2020-09-03
Raon Kupload HIGH 7.8
CVE-2020-7830

RAONWIZ v2018.0.2.50 and earlier versions contains a vulnerability that could allow remote files to be downloaded by lack of validation. Vulnerabilit…

Fix: after 2018.0.2.50
Fix from $1,950 2020-09-02
Trading Technologies Messaging HIGH 7.5
CVE-2020-5778

A flaw exists in Trading Technologies Messaging 7.1.28.3 (ttmd.exe) due to improper validation of user-supplied data when processing a type 8 message…

Mitigation only
Fix from $1,950 2020-09-02
Spectrum Protect Operations Center CRITICAL 9.8
CVE-2020-4693

IBM Spectrum Protect Operations Center 7.1.0.000 through 7.1.10 and 8.1.0.000 through 8.1.9 may allow an attacker to execute arbitrary code on the sy…

Fix: after 8.1.9.000
Fix from $2,300 2020-09-02
Infosphere Guardium MEDIUM 5.3
CVE-2012-3338

IBM InfoSphere Guardium 8.0, 8.01, and 8.2 could allow a remote attacker to bypass security restrictions, caused by improper restrictions on the crea…

Mitigation only
Fix from $1,600 2020-09-01
Ppp MEDIUM 5.5
CVE-2020-15704

The modprobe child process in the ./debian/patches/load_ppp_generic_if_needed patch file incorrectly handled module loading. A local non-root attacke…

Fix: 2.4.5-5ubuntu1.4 / 2.4.5-5.1ubuntu2.3+
Fix from $1,600 2020-09-01
Android HIGH 7.5
CVE-2020-25059

An issue was discovered on LG mobile devices with Android OS 7.2, 8.0, 8.1, 9, and 10 software. A service crash may occur because of incorrect input …

Mitigation only
Fix from $1,950 2020-08-31
Android HIGH 7.5
CVE-2020-25063

An issue was discovered on LG mobile devices with Android OS 7.2, 8.0, 8.1, 9, and 10 software. An application crash can occur because of incorrect a…

Mitigation only
Fix from $1,950 2020-08-31
Powerchute HIGH 8.8
CVE-2020-7526

Improper Input Validation vulnerability exists in PowerChute Business Edition (software V9.0.x and earlier) which could cause remote code execution w…

Fix: 9.1+
Fix from $1,950 2020-08-31
Gd32f103 Firmware MEDIUM 6.8
CVE-2020-13465

The security protection in Gigadevice GD32F103 devices allows physical attackers to redirect the control flow and execute arbitrary code via the debu…

No fix yet
Fix from $1,600 2020-08-31