Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper Input ValidationCWE-20 × clear
Ipq4019 Firmware CRITICAL 9.1
CVE-2018-13906

The HMAC authenticating the message from QSEE is vulnerable to timing side channel analysis leading to potentially forged application message in Snap…

Mitigation only
Fix from $2,300 2019-06-14
Nuc Kit Firmware MEDIUM 6.7
CVE-2019-11123

Insufficient session validation in system firmware for Intel(R) NUC Kit may allow a privileged user to potentially enable escalation of privilege, de…

Patch available
Fix from $1,600 2019-06-13
Nuc Kit Firmware MEDIUM 6.7
CVE-2019-11125

Insufficient input validation in system firmware for Intel(R) NUC Kit may allow a privileged user to potentially enable escalation of privilege, deni…

Patch available
Fix from $1,600 2019-06-13
Nuc Kit Firmware MEDIUM 6.7
CVE-2019-11128

Insufficient input validation in system firmware for Intel(R) NUC Kit may allow a privileged user to potentially enable escalation of privilege, deni…

Patch available
Fix from $1,600 2019-06-13
Converged Security Management Engine Firmware MEDIUM 6.7
CVE-2018-12147

Insufficient input validation in HECI subsystem in Intel(R) CSME before version 11.21.55, Intel® Server Platform Services before version 4.0 and Inte…

Fix: 4.0+
Fix from $1,600 2019-06-13
Software Guard Extensions MEDIUM 5.5
CVE-2019-0157

Insufficient input validation in the Intel(R) SGX driver for Linux may allow an authenticated user to potentially enable a denial of service via loca…

Fix: 1.1 / 2.5+
Fix from $1,600 2019-06-13
Windows 10 HIGH 7.6
CVE-2019-0620

A remote code execution vulnerability exists when Windows Hyper-V on a host server fails to properly validate input from an authenticated user on a g…

Patch available
Fix from $1,950 2019-06-12
Windows 10 HIGH 7.6
CVE-2019-0709

A remote code execution vulnerability exists when Windows Hyper-V on a host server fails to properly validate input from an authenticated user on a g…

Patch available
Fix from $1,950 2019-06-12
Windows 10 MEDIUM 6.8
CVE-2019-0710

A denial of service vulnerability exists when Microsoft Hyper-V on a host server fails to properly validate input from a privileged user on a guest o…

Patch available
Fix from $1,600 2019-06-12
Windows 10 MEDIUM 6.8
CVE-2019-0711

A denial of service vulnerability exists when Microsoft Hyper-V on a host server fails to properly validate input from a privileged user on a guest o…

Patch available
Fix from $1,600 2019-06-12
Windows 10 MEDIUM 6.8
CVE-2019-0713

A denial of service vulnerability exists when Microsoft Hyper-V on a host server fails to properly validate input from a privileged user on a guest o…

Patch available
Fix from $1,600 2019-06-12
Windows 10 HIGH 8.8
CVE-2019-0722

A remote code execution vulnerability exists when Windows Hyper-V on a host server fails to properly validate input from an authenticated user on a g…

Patch available
Fix from $1,950 2019-06-12
Windows 10 HIGH 7.8
CVE-2019-0973

An elevation of privilege vulnerability exists in the Windows Installer when the Windows Installer fails to properly sanitize input leading to an ins…

Patch available
Fix from $1,950 2019-06-12
Remote Mini Control HIGH 7.4
CVE-2019-3956

Dameware Remote Mini Control version 12.1.0.34 and prior contains an unauthenticated remote buffer over-read due to the server not properly validatin…

Fix: after 12.1.0.34
Fix from $1,950 2019-06-07
Dameware Mini Remote Control HIGH 7.4
CVE-2019-3957EPSS 26%

Dameware Remote Mini Control version 12.1.0.34 and prior contains an unauthenticated remote buffer over-read due to the server not properly validatin…

Fix: after 12.1.0.34
Fix from $1,950 2019-06-07
Mantisbt MEDIUM 6.5
CVE-2018-9839

An issue was discovered in MantisBT through 1.3.14, and 2.0.0. Using a crafted request on bug_report_page.php (modifying the 'm_id' parameter), any u…

Fix: after 1.3.14
Fix from $1,600 2019-06-06
Emc Openmanage Server Administrator CRITICAL 9.1
CVE-2019-3723

Dell EMC OpenManage Server Administrator (OMSA) versions prior to 9.1.0.3 and prior to 9.2.0.4 contain a web parameter tampering vulnerability. A rem…

Mitigation only
Fix from $2,300 2019-06-06
Telepresence Video Communication Server HIGH 8.6
CVE-2019-1845

A vulnerability in the authentication service of the Cisco Unified Communications Manager IM and Presence (Unified CM IM&P) Service, Cisco TelePr…

Mitigation only
Fix from $1,950 2019-06-05
Industrial Network Director HIGH 7.2
CVE-2019-1861

A vulnerability in the software update feature of Cisco Industrial Network Director could allow an authenticated, remote attacker to execute arbitrar…

Fix: 1.6.0+
Fix from $1,950 2019-06-05
Intelligent Management Center HIGH 8.8
CVE-2019-11968

A remote code execution vulnerability was identified in HPE Intelligent Management Center (IMC) PLAT earlier than version 7.3 E0506P09.

Fix: 7.3+
Fix from $1,950 2019-06-05
Intelligent Management Center HIGH 8.8
CVE-2019-11980

A remote code exection vulnerability was identified in HPE Intelligent Management Center (IMC) PLAT earlier than version 7.3 E0506P09.

Fix: 7.3+
Fix from $1,950 2019-06-05
Intelligent Management Center HIGH 8.8
CVE-2019-11967

A remote code execution vulnerability was identified in HPE Intelligent Management Center (IMC) PLAT earlier than version 7.3 E0506P09.

Fix: 7.3+
Fix from $1,950 2019-06-05
Vibrante Linux HIGH 7.8
CVE-2017-6261

NVIDIA Vibrante Linux version 1.1, 2.0, and 2.2 contains a vulnerability in the user space driver in which protection mechanisms are insufficient, ma…

No fix yet
Fix from $1,950 2019-06-05
S12700 Firmware HIGH 7.5
CVE-2019-5285

Some Huawei S series switches have a DoS vulnerability. An unauthenticated remote attacker can send crafted packets to the affected device to exploit…

Mitigation only
Fix from $1,950 2019-06-04
Mate 9 Pro Fimware MEDIUM 5.5
CVE-2019-5244

Mate 9 Pro Huawei smartphones earlier than LON-L29C 8.0.0.361(C636) versions have an information leak vulnerability due to the lack of input validati…

Mitigation only
Fix from $1,600 2019-06-04
Geforce Experience HIGH 7.8
CVE-2019-5678

NVIDIA GeForce Experience versions prior to 3.19 contains a vulnerability in the Web Helper component, in which an attacker with local system access …

Fix: 3.19+
Fix from $1,950 2019-05-31
GitLab MEDIUM 5.5
CVE-2019-9221

An issue was discovered in GitLab Community and Enterprise Edition before 11.6.10, 11.7.x before 11.7.6, and 11.8.x before 11.8.1. It has Incorrect A…

Fix: 11.6.10 / 11.7.6+
Fix from $1,600 2019-05-29
Bubblewrap HIGH 7.8
CVE-2019-12439

bubblewrap.c in Bubblewrap before 0.3.3 misuses temporary directories in /tmp as a mount point. In some particular configurations (related to XDG_RUN…

Fix: 0.3.3+
Fix from $1,950 2019-05-29
Qcs605 Firmware HIGH 7.8
CVE-2019-2250

Kernel can write to arbitrary memory address passed by user while freeing/stopping a thread in Snapdragon Compute, Snapdragon Consumer IOT, Snapdrago…

Mitigation only
Fix from $1,950 2019-05-24
Chrome MEDIUM 6.5
CVE-2019-5799

Incorrect inheritance of a new document's policy in Content Security Policy in Google Chrome prior to 73.0.3683.75 allowed a remote attacker to bypas…

Fix: 73.0.3683.75+
Fix from $1,600 2019-05-23