Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper Input ValidationCWE-20 × clear
Email Security Appliance MEDIUM 5.8
CVE-2020-3370

A vulnerability in URL filtering of Cisco Content Security Management Appliance (SMA) could allow an unauthenticated, remote attacker to bypass URL f…

Fix: 13.0.1 / 13.5.1+
Fix from $1,600 2020-07-16
Sd Wan Firmware HIGH 7.8
CVE-2020-3379

A vulnerability in Cisco SD-WAN Solution Software could allow an authenticated, local attacker to elevate privileges to Administrator on the underlyi…

Fix: 18.3.0+
Fix from $1,950 2020-07-16
Rv110w Wireless N Vpn Firewall Firmware CRITICAL 9.8
CVE-2020-3323EPSS 6%

A vulnerability in the web-based management interface of Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers could allow an unauthenticate…

Fix: 1.0.3.54 / 1.2.2.8+
Fix from $2,300 2020-07-16
Iview CRITICAL 9.8
CVE-2020-14503

Advantech iView, versions 5.6 and prior, has an improper input validation vulnerability. Successful exploitation of this vulnerability could allow an…

Fix: after 5.6
Fix from $2,300 2020-07-15
Windows Server 2008 CRITICAL 10.0
CVE-2020-1350 KEVEPSS 91%

A remote code execution vulnerability exists in Windows Domain Name System servers when they fail to properly handle requests, aka 'Windows DNS Serve…

Patch available
Fix from $2,300 2020-07-14
Windows 10 HIGH 7.8
CVE-2020-1355

A remote code execution vulnerability exists when the Windows Font Driver Host improperly handles memory.An attacker who successfully exploited the v…

Patch available
Fix from $1,950 2020-07-14
Lync CRITICAL 9.8
CVE-2020-1025EPSS 6%

An elevation of privilege vulnerability exists when Microsoft SharePoint Server and Skype for Business Server improperly handle OAuth token validatio…

Patch available
Fix from $2,300 2020-07-14
Windows Server 2008 CRITICAL 9.0
CVE-2020-1032EPSS 5%

A remote code execution vulnerability exists when Hyper-V RemoteFX vGPU on a host server fails to properly validate input from an authenticated user …

Patch available
Fix from $2,300 2020-07-14
Windows Server 2008 CRITICAL 9.0
CVE-2020-1036EPSS 6%

A remote code execution vulnerability exists when Hyper-V RemoteFX vGPU on a host server fails to properly validate input from an authenticated user …

Patch available
Fix from $2,300 2020-07-14
Windows Server 2008 CRITICAL 9.0
CVE-2020-1040 KEVEPSS 7%

A remote code execution vulnerability exists when Hyper-V RemoteFX vGPU on a host server fails to properly validate input from an authenticated user …

Patch available
Fix from $2,300 2020-07-14
Windows Server 2008 CRITICAL 9.0
CVE-2020-1041EPSS 5%

A remote code execution vulnerability exists when Hyper-V RemoteFX vGPU on a host server fails to properly validate input from an authenticated user …

Patch available
Fix from $2,300 2020-07-14
Windows Server 2008 CRITICAL 9.0
CVE-2020-1042EPSS 6%

A remote code execution vulnerability exists when Hyper-V RemoteFX vGPU on a host server fails to properly validate input from an authenticated user …

Patch available
Fix from $2,300 2020-07-14
Windows Server 2008 CRITICAL 9.0
CVE-2020-1043EPSS 5%

A remote code execution vulnerability exists when Hyper-V RemoteFX vGPU on a host server fails to properly validate input from an authenticated user …

Patch available
Fix from $2,300 2020-07-14
Opcenter Execution Discrete MEDIUM 5.3
CVE-2020-7588

A vulnerability has been identified in Opcenter Execution Discrete (All versions < V3.2), Opcenter Execution Foundation (All versions < V3.2), Opcent…

Fix: 3.2 / 11.3+
Fix from $1,600 2020-07-14
Fedora CRITICAL 10.0
CVE-2020-13753

The bubblewrap sandbox of WebKitGTK and WPE WebKit, prior to 2.28.3, failed to properly block access to CLONE_NEWUSER and the TIOCSTI ioctl. CLONE_NE…

Fix: 2.28.3+
Fix from $2,300 2020-07-14
Application Delivery Controller Firmware MEDIUM 6.5
CVE-2020-8195 KEVEPSS 33%

Improper input validation in Citrix ADC and Citrix Gateway versions before 13.0-58.30, 12.1-57.18, 12.0-63.21, 11.1-64.14 and 10.5-70.18 and Citrix S…

Fix: 1.0.0.137 / 10.2.7+
Fix from $1,600 2020-07-10
Application Delivery Controller Firmware HIGH 7.5
CVE-2020-8187

Improper input validation in Citrix ADC and Citrix Gateway versions before 11.1-63.9 and 12.0-62.10 allows unauthenticated users to perform a denial …

Fix: 11.1-63.9 / 12.0-62.10+
Fix from $1,950 2020-07-10
P30 Firmware MEDIUM 5.5
CVE-2020-9258

HUAWEI P30 smartphone with versions earlier than 10.1.0.135(C00E135R2P11) have an improper input verification vulnerability. An attribution in a modu…

Fix: 10.1.0.135+
Fix from $1,600 2020-07-10
Raon K Upload CRITICAL 9.8
CVE-2020-7814

RAONWIZ v2018.0.2.50 and eariler versions contains a vulnerability that could allow remote files to be downloaded and excuted by lack of validation t…

Fix: 2018.0.2.51+
Fix from $2,300 2020-07-10
Ar120 S Firmware HIGH 7.5
CVE-2019-19415

The SIP module of some Huawei products have a denial of service (DoS) vulnerability. A remote attacker could exploit these three vulnerabilities by s…

Mitigation only
Fix from $1,950 2020-07-08
Ar120 S Firmware HIGH 7.5
CVE-2019-19416

The SIP module of some Huawei products have a denial of service (DoS) vulnerability. A remote attacker could exploit these three vulnerabilities by s…

Mitigation only
Fix from $1,950 2020-07-08
Ar120 S Firmware HIGH 7.5
CVE-2019-19417

The SIP module of some Huawei products have a denial of service (DoS) vulnerability. A remote attacker could exploit these three vulnerabilities by s…

Mitigation only
Fix from $1,950 2020-07-08
Android MEDIUM 5.5
CVE-2020-15584

An issue was discovered on Samsung mobile devices with Q(10.0) software. Attackers can trigger an out-of-bounds access and device reset via a 4K wall…

Mitigation only
Fix from $1,600 2020-07-07
Serv U Ftp Server CRITICAL 9.8
CVE-2020-15543

SolarWinds Serv-U FTP server before 15.2.1 does not validate an argument path.

Fix: 15.2.1+
Fix from $2,300 2020-07-05
Fedora HIGH 7.5
CVE-2020-15503

LibRaw before 0.20-RC1 lacks a thumbnail size range check. This affects decoders/unpack_thumb.cpp, postprocessing/mem_image.cpp, and utils/thumb_util…

Fix: after 0.19.5
Fix from $1,950 2020-07-02
Nexacro 14 CRITICAL 9.8
CVE-2020-7820

Nexacro14/17 ExtCommonApiV13 Library under 2019.9.6 version contain a vulnerability that could allow remote attacker to execute arbitrary code by set…

Fix: 2019.9.6+
Fix from $2,300 2020-07-02
Nexacro 14 CRITICAL 9.8
CVE-2020-7821

Nexacro14/17 ExtCommonApiV13 Library under 2019.9.6 version contain a vulnerability that could allow remote attacker to execute arbitrary code by mod…

Fix: 2019.9.6+
Fix from $2,300 2020-07-02
Fedora MEDIUM 6.5
CVE-2020-5238

The table extension in GitHub Flavored Markdown before version 0.29.0.gfm.1 takes O(n * n) time to parse certain inputs. An attacker could craft a ma…

Fix: 0.29.0.gfm.1+
Fix from $1,600 2020-07-01
Solution Manager MEDIUM 5.3
CVE-2020-6261

SAP Solution Manager (Trace Analysis), version 7.20, allows an attacker to perform a log injection into the trace file, due to Incomplete XML Validat…

Mitigation only
Fix from $1,600 2020-07-01
Virtual Gpu Manager HIGH 7.1
CVE-2020-5970

NVIDIA Virtual GPU Manager contains a vulnerability in the vGPU plugin, in which an input data size is not validated, which may lead to tampering or …

Fix: after 10.2
Fix from $1,950 2020-06-30