Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper Input ValidationCWE-20 × clear
Gitea HIGH 7.5
CVE-2019-11228

repo/setting.go in Gitea before 1.7.6 and 1.8.x before 1.8-RC3 does not validate the form.MirrorAddress before calling SaveAddress.

Fix: 1.7.6+
Fix from $1,950 2019-04-15
Iopsys HIGH 8.8
CVE-2018-20487

An issue was discovered in the firewall3 component in Inteno IOPSYS 1.0 through 3.16. The attacker must make a JSON-RPC method call to add a firewall…

Fix: after 3.16
Fix from $1,950 2019-04-11
Linux Kernel MEDIUM 6.5
CVE-2019-3460

A heap data infoleak in multiple locations including L2CAP_PARSE_CONF_RSP was found in the Linux kernel before 5.1-rc1.

Fix: after 5.1
Fix from $1,600 2019-04-11
Dap 1530 Firmware CRITICAL 9.8
CVE-2018-19300EPSS 74%

On D-Link DAP-1530 (A1) before firmware version 1.06b01, DAP-1610 (A1) before firmware version 1.06b01, DWR-111 (A1) before firmware version 1.02v02,…

Fix: after 2.02
Fix from $2,300 2019-04-11
Sequelize HIGH 7.5
CVE-2019-11069

Sequelize version 5 before 5.3.0 does not properly ensure that standard conforming strings are used.

Fix: 5.3.0+
Fix from $1,950 2019-04-10
Debian Linux HIGH 8.8
CVE-2019-11071

SPIP 3.1 before 3.1.10 and 3.2 before 3.2.4 allows authenticated visitors to execute arbitrary code on the host server because var_memotri is mishand…

Fix: 3.1.10 / 3.2.4+
Fix from $1,950 2019-04-10
Windows 10 CRITICAL 9.8
CVE-2019-0786EPSS 7%

An elevation of privilege vulnerability exists in the Microsoft Server Message Block (SMB) Server when an attacker with valid credentials attempts to…

Patch available
Fix from $2,300 2019-04-09
Windows 10 MEDIUM 6.8
CVE-2019-0690

A denial of service vulnerability exists when Microsoft Hyper-V Network Switch on a host server fails to properly validate input from a privileged us…

Patch available
Fix from $1,600 2019-04-09
Windows 10 MEDIUM 6.8
CVE-2019-0695

A denial of service vulnerability exists when Microsoft Hyper-V on a host server fails to properly validate input from a privileged user on a guest o…

Patch available
Fix from $1,600 2019-04-09
Windows 10 MEDIUM 6.8
CVE-2019-0701

A denial of service vulnerability exists when Microsoft Hyper-V on a host server fails to properly validate input from a privileged user on a guest o…

Patch available
Fix from $1,600 2019-04-09
Debian Linux MEDIUM 5.5
CVE-2019-1788

A vulnerability in the Object Linking & Embedding (OLE2) file scanning functionality of Clam AntiVirus (ClamAV) Software versions 0.101.1 and prior c…

Fix: after 0.101.1
Fix from $1,600 2019-04-08
Clamav MEDIUM 5.5
CVE-2019-1798

A vulnerability in the Portable Executable (PE) file scanning functionality of Clam AntiVirus (ClamAV) Software versions 0.101.1 and prior could allo…

Fix: after 0.101.1
Fix from $1,600 2019-04-08
Eye4 CRITICAL 9.8
CVE-2019-11014

The VStarCam vstc.vscam.client library and vstc.vscam shared object, as used in the Eye4 application (for Android, iOS, and Windows), do not prevent …

No fix yet
Fix from $2,300 2019-04-08
Clamav HIGH 7.8
CVE-2019-1785

A vulnerability in the RAR file scanning functionality of Clam AntiVirus (ClamAV) Software versions 0.101.1 and 0.101.0 could allow an unauthenticate…

Mitigation only
Fix from $1,950 2019-04-08
Clamav MEDIUM 5.5
CVE-2019-1786

A vulnerability in the Portable Document Format (PDF) scanning functionality of Clam AntiVirus (ClamAV) Software versions 0.101.1 and 0.101.0 could a…

Mitigation only
Fix from $1,600 2019-04-08
Debian Linux MEDIUM 5.5
CVE-2019-1787

A vulnerability in the Portable Document Format (PDF) scanning functionality of Clam AntiVirus (ClamAV) Software versions 0.101.1 and prior could all…

Fix: after 0.101.1
Fix from $1,600 2019-04-08
Experion Process Knowledge System CRITICAL 9.8
CVE-2014-9186

A file inclusion vulnerability exists in the confd.exe module in Honeywell Experion PKS R40x before R400.6, R41x before R410.6, and R43x before R430.…

Mitigation only
Fix from $2,300 2019-04-08
Mdm9206 Firmware HIGH 7.8
CVE-2018-11830

Improper input validation in QCPE create function may lead to integer overflow in Snapdragon Auto, Snapdragon Consumer Electronics Connectivity, Snap…

Mitigation only
Fix from $1,950 2019-04-04
Mdm9150 Firmware HIGH 7.8
CVE-2018-11966

Undefined behavior in UE while processing unknown IEI in OTA message in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Indu…

Mitigation only
Fix from $1,950 2019-04-04
Vordel Xml Gateway HIGH 7.5
CVE-2015-5606

Vordel XML Gateway (acquired by Axway) version 7.2.2 could allow remote attackers to cause a denial of service via a specially crafted request.

No fix yet
Fix from $1,950 2019-04-03
Iphone Os MEDIUM 6.5
CVE-2018-4460

A denial of service issue was addressed by removing the vulnerable code. This issue affected versions prior to iOS 12.1.1, macOS Mojave 10.14.2, tvOS…

Fix: 5.1.2 / 10.14.2+
Fix from $1,600 2019-04-03
Mac Os X MEDIUM 5.5
CVE-2018-4462

A validation issue was addressed with improved input sanitization. This issue affected versions prior to macOS Mojave 10.14.2.

Fix: 10.14.2+
Fix from $1,600 2019-04-03
Safari MEDIUM 6.5
CVE-2018-4439

A logic issue was addressed with improved validation. This issue affected versions prior to iOS 12.1.1, Safari 12.0.2, iTunes 12.9.2 for Windows, iCl…

Fix: 7.9 / 12.0.2+
Fix from $1,600 2019-04-03
Mac Os X HIGH 7.8
CVE-2018-4423

A logic issue was addressed with improved validation. This issue affected versions prior to macOS Mojave 10.14.1.

Fix: 10.14.1+
Fix from $1,950 2019-04-03
Iphone Os MEDIUM 6.5
CVE-2018-4429

A spoofing issue existed in the handling of URLs. This issue was addressed with improved input validation. This issue affected versions prior to iOS …

Fix: 5.1.2 / 12.1.1+
Fix from $1,600 2019-04-03
Iphone Os HIGH 7.8
CVE-2018-4435

A logic issue was addressed with improved restrictions. This issue affected versions prior to iOS 12.1.1, macOS Mojave 10.14.2, tvOS 12.1.1, watchOS …

Fix: 5.1.2 / 10.14.2+
Fix from $1,950 2019-04-03
Mac Os X MEDIUM 5.5
CVE-2018-4417

A validation issue was addressed with improved input sanitization. This issue affected versions prior to macOS Mojave 10.14.

Fix: 10.14+
Fix from $1,600 2019-04-03
Mac Os X MEDIUM 5.5
CVE-2018-4418

A validation issue was addressed with improved input sanitization. This issue affected versions prior to macOS Mojave 10.14.

Fix: 10.14+
Fix from $1,600 2019-04-03
Iphone Os HIGH 7.5
CVE-2018-4398

An issue existed in the method for determining prime numbers. This issue was addressed by using pseudorandom bases for testing of primes. This issue …

Fix: 5.1 / 7.8+
Fix from $1,950 2019-04-03
Iphone Os MEDIUM 5.5
CVE-2018-4399

An access issue existed with privileged API calls. This issue was addressed with additional restrictions. This issue affected versions prior to iOS 1…

Fix: 5.0 / 10.14+
Fix from $1,600 2019-04-03