Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper Input ValidationCWE-20 × clear
Integrated Management Controller Supervisor HIGH 7.2
CVE-2019-1936EPSS 39%

A vulnerability in the web-based management interface of Cisco Integrated Management Controller (IMC) Supervisor, Cisco UCS Director, and Cisco UCS D…

Fix: after 2.2.0.6
Fix from $1,950 2019-08-21
Enterprise Network Function Virtualization Infrastructure Sofware MEDIUM 6.5
CVE-2019-1984

A vulnerability in Cisco Enterprise Network Functions Virtualization Infrastructure Software (NFVIS) could allow an authenticated, remote attacker wi…

Fix: 3.12.1+
Fix from $1,600 2019-08-21
Remote Phy 120 Firmware MEDIUM 6.7
CVE-2019-1839

A vulnerability in Cisco Remote PHY Device Software could allow an authenticated, local attacker to execute commands on the underlying Linux shell of…

Fix: 1.2 / 3.1+
Fix from $1,600 2019-08-21
Total Security MEDIUM 5.3
CVE-2016-10899

The total-security plugin before 3.4.1 for WordPress has a settings-change vulnerability.

Fix: 3.4.1+
Fix from $1,600 2019-08-21
Android MEDIUM 5.5
CVE-2019-2136

In Status::readFromParcel of Status.cpp, there is a possible out of bounds read due to improper input validation. This could lead to local informatio…

Mitigation only
Fix from $1,600 2019-08-20
Nuc Kit Firmware MEDIUM 6.7
CVE-2019-11140

Insufficient session validation in system firmware for Intel(R) NUC may allow a privileged user to potentially enable escalation of privilege, denial…

Patch available
Fix from $1,600 2019-08-19
Companion Auto Update CRITICAL 9.8
CVE-2018-20973

The companion-auto-update plugin before 3.2.1 for WordPress has local file inclusion.

Fix: 3.2.1+
Fix from $2,300 2019-08-16
Invite Anyone HIGH 7.5
CVE-2017-18545

The invite-anyone plugin before 1.3.16 for WordPress has incorrect escaping of untrusted Dashboard and front-end input.

Fix: 1.3.16+
Fix from $1,950 2019-08-16
Creative Cloud CRITICAL 9.8
CVE-2019-7959EPSS 7%

Creative Cloud Desktop Application versions 4.6.1 and earlier have a using components with known vulnerabilities vulnerability. Successful exploitati…

Fix: after 4.6.1
Fix from $2,300 2019-08-16
Ubuntu Linux CRITICAL 9.8
CVE-2019-9850

LibreOffice is typically bundled with LibreLogo, a programmable turtle vector graphics script, which can execute arbitrary python commands contained …

Fix: 6.2.6+
Fix from $2,300 2019-08-15
Ubuntu Linux CRITICAL 9.8
CVE-2019-9851EPSS 78%

LibreOffice is typically bundled with LibreLogo, a programmable turtle vector graphics script, which can execute arbitrary python commands contained …

Fix: 6.2.6+
Fix from $2,300 2019-08-15
Clickhouse CRITICAL 9.8
CVE-2018-14671

In ClickHouse before 18.10.3, unixODBC allowed loading arbitrary shared objects from the file system which led to a Remote Code Execution vulnerabili…

Fix: 18.10.3+
Fix from $2,300 2019-08-15
Windows 10 MEDIUM 5.8
CVE-2019-0723EPSS 5%

A denial of service vulnerability exists when Microsoft Hyper-V Network Switch on a host server fails to properly validate input from a privileged us…

Patch available
Fix from $1,600 2019-08-14
Windows 10 HIGH 7.6
CVE-2019-0965

A remote code execution vulnerability exists when Windows Hyper-V on a host server fails to properly validate input from an authenticated user on a g…

Patch available
Fix from $1,950 2019-08-14
Windows 10 MEDIUM 5.8
CVE-2019-0714EPSS 5%

A denial of service vulnerability exists when Microsoft Hyper-V Network Switch on a host server fails to properly validate input from a privileged us…

Patch available
Fix from $1,600 2019-08-14
Windows 10 MEDIUM 5.8
CVE-2019-0715EPSS 5%

A denial of service vulnerability exists when Microsoft Hyper-V Network Switch on a host server fails to properly validate input from a privileged us…

Patch available
Fix from $1,600 2019-08-14
Windows 10 MEDIUM 5.8
CVE-2019-0717EPSS 5%

A denial of service vulnerability exists when Microsoft Hyper-V Network Switch on a host server fails to properly validate input from a privileged us…

Patch available
Fix from $1,600 2019-08-14
Windows 10 MEDIUM 5.8
CVE-2019-0718EPSS 5%

A denial of service vulnerability exists when Microsoft Hyper-V Network Switch on a host server fails to properly validate input from a privileged us…

Patch available
Fix from $1,600 2019-08-14
Windows 10 HIGH 8.0
CVE-2019-0720

A remote code execution vulnerability exists when Windows Hyper-V Network Switch on a host server fails to properly validate input from an authentica…

Patch available
Fix from $1,950 2019-08-14
Linux Kernel HIGH 7.8
CVE-2017-18509

An issue was discovered in net/ipv6/ip6mr.c in the Linux kernel before 4.11. By setting a specific socket option, an attacker can control a pointer i…

Fix: 3.16.72 / 4.4.187+
Fix from $1,950 2019-08-13
Enterprise Network Function Virtualization Infrastructure CRITICAL 9.8
CVE-2019-1971

A vulnerability in the web portal of Cisco Enterprise NFV Infrastructure Software (NFVIS) could allow an unauthenticated, remote attacker to perform …

Fix: after 3.8.1
Fix from $2,300 2019-08-08
Sd Wan Firmware MEDIUM 5.8
CVE-2019-1951

A vulnerability in the packet filtering features of Cisco SD-WAN Solution could allow an unauthenticated, remote attacker to bypass L3 and L4 traffic…

Fix: after 19.1.0
Fix from $1,600 2019-08-08
Enterprise Network Function Virtualization Infrastructure MEDIUM 6.7
CVE-2019-1952

A vulnerability in the CLI of Cisco Enterprise NFV Infrastructure Software (NFVIS) could allow an authenticated, local attacker to overwrite or read …

Fix: 3.10.1+
Fix from $1,600 2019-08-08
Webex Meetings Server MEDIUM 6.1
CVE-2019-1954

A vulnerability in the web-based management interface of Cisco Webex Meetings Server Software could allow an unauthenticated, remote attacker to redi…

Fix: 4.0+
Fix from $1,600 2019-08-08
Email Security Appliance Firmware HIGH 7.5
CVE-2019-1955

A vulnerability in the Sender Policy Framework (SPF) functionality of Cisco AsyncOS Software for Cisco Email Security Appliances (ESA) could allow an…

Fix: 4.0mr1+
Fix from $1,950 2019-08-08
Backdrop Cms CRITICAL 9.8
CVE-2019-14771

Backdrop CMS 1.12.x before 1.12.8 and 1.13.x before 1.13.3 allows the upload of entire-site configuration archives through the user interface or comm…

Fix: 1.12.8 / 1.13.3+
Fix from $2,300 2019-08-08
Ios Xr HIGH 7.4
CVE-2019-1918

A vulnerability in the implementation of Intermediate System–to–Intermediate System (IS–IS) routing protocol functionality in Cisco…

Fix: 6.6.3+
Fix from $1,950 2019-08-07
Adaptive Security Appliance Software HIGH 7.3
CVE-2019-1944

Multiple vulnerabilities in the smart tunnel functionality of Cisco Adaptive Security Appliance (ASA) could allow an authenticated, local attacker to…

Fix: 9.4.4.37+
Fix from $1,950 2019-08-07
Adaptive Security Appliance Software HIGH 7.8
CVE-2019-1945

Multiple vulnerabilities in the smart tunnel functionality of Cisco Adaptive Security Appliance (ASA) could allow an authenticated, local attacker to…

Fix: 9.4.4.37+
Fix from $1,950 2019-08-07
Ios Xr HIGH 7.4
CVE-2019-1910

A vulnerability in the implementation of the Intermediate System–to–Intermediate System (IS–IS) routing protocol functionality in C…

Fix: 6.6.3+
Fix from $1,950 2019-08-07