Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper Input ValidationCWE-20 × clear
Operations Manager MEDIUM 6.5
CVE-2018-11046

Pivotal Operations Manager, versions 2.1.x prior to 2.1.6 and version 2.0.14, includes NGINX packages that lacks security vulnerability patches. An a…

Fix: 2.1.6+
Fix from $1,600 2018-06-25
Globalvillage Ecosystem HIGH 7.5
CVE-2018-12702

The approveAndCallcode function of a smart contract implementation for Globalvillage ecosystem (GVE), an Ethereum ERC20 token, allows attackers to st…

No fix yet
Fix from $1,950 2018-06-25
Block18 HIGH 7.5
CVE-2018-12703

The approveAndCallcode function of a smart contract implementation for Block 18 (18T), an tradable Ethereum ERC20 token, allows attackers to steal as…

No fix yet
Fix from $1,950 2018-06-25
Tl Wa850re Firmware HIGH 7.5
CVE-2018-12694

TP-Link TL-WA850RE Wi-Fi Range Extender with hardware version 5 allows remote attackers to cause a denial of service (reboot) via data/reboot.json.

No fix yet
Fix from $1,950 2018-06-23
Tinyexr CRITICAL 9.8
CVE-2018-12688

tinyexr 0.9.5 has a segmentation fault in the wav2Decode function.

No fix yet
Fix from $2,300 2018-06-22
Ansible HIGH 8.0
CVE-2017-7466

Ansible before version 2.3 has an input validation vulnerability in the handling of data sent from client systems. An attacker with control over a cl…

Fix: 2.3+
Fix from $1,950 2018-06-22
Scada HIGH 7.5
CVE-2018-12635

CirCarLife Scada v4.2.4 allows unauthorized upgrades via requests to the html/upgrade.html and services/system/firmware.upgrade URIs.

Mitigation only
Fix from $1,950 2018-06-22
Solutions Business Manager CRITICAL 9.8
CVE-2018-7679

Micro Focus Solutions Business Manager versions prior to 11.4 when ASP.NET is configured with execute permission on the virtual directories and does …

Fix: 11.4+
Fix from $2,300 2018-06-21
Debian Linux HIGH 7.5
CVE-2017-2669

Dovecot before version 2.2.29 is vulnerable to a denial of service. When 'dict' passdb and userdb were used for user authentication, the username sen…

Fix: after 2.2.28
Fix from $1,950 2018-06-21
Meeting Server MEDIUM 6.5
CVE-2018-0371

A vulnerability in the Web Admin Interface of Cisco Meeting Server could allow an authenticated, remote attacker to cause a denial of service (DoS) c…

Mitigation only
Fix from $1,600 2018-06-21
Anyconnect Secure Mobility Client MEDIUM 5.5
CVE-2018-0373

A vulnerability in vpnva-6.sys for 32-bit Windows and vpnva64-6.sys for 64-bit Windows of Cisco AnyConnect Secure Mobility Client for Windows Desktop…

Mitigation only
Fix from $1,600 2018-06-21
Nx Os HIGH 7.5
CVE-2018-0298

A vulnerability in the web UI of Cisco FXOS and Cisco UCS Fabric Interconnect Software could allow an unauthenticated, remote attacker to cause a buf…

Fix: 1.1.4.169 / 1.1.4.179+
Fix from $1,950 2018-06-21
Nx Os MEDIUM 6.5
CVE-2018-0299

A vulnerability in the Simple Network Management Protocol (SNMP) feature of Cisco NX-OS on the Cisco Nexus 4000 Series Switch could allow an authenti…

Mitigation only
Fix from $1,600 2018-06-21
Nx Os HIGH 7.8
CVE-2018-0302

A vulnerability in the CLI parser of Cisco FXOS Software and Cisco UCS Fabric Interconnect Software could allow an authenticated, local attacker to c…

Fix: 1.1.4.169 / 2.0.1.135+
Fix from $1,950 2018-06-21
Nx Os HIGH 8.8
CVE-2018-0303

A vulnerability in the Cisco Discovery Protocol component of Cisco FXOS Software and Cisco NX-OS Software could allow an unauthenticated, adjacent at…

Fix: 1.1.4.179 / 2.0.1.153+
Fix from $1,950 2018-06-21
Nx Os HIGH 7.8
CVE-2018-0306

A vulnerability in the CLI parser of Cisco NX-OS Software could allow an authenticated, local attacker to perform a command-injection attack on an af…

Fix: 5.2 / 7.3+
Fix from $1,950 2018-06-21
Nx Os HIGH 8.8
CVE-2018-0313

A vulnerability in the NX-API feature of Cisco NX-OS Software could allow an authenticated, remote attacker to send a malicious packet to the managem…

Mitigation only
Fix from $1,950 2018-06-21
Nx Os MEDIUM 6.5
CVE-2018-0331

A vulnerability in the Cisco Discovery Protocol (formerly known as CDP) subsystem of devices running, or based on, Cisco NX-OS Software contain a vul…

Fix: 2.0.1.152 / 2.0.1.153+
Fix from $1,600 2018-06-21
Nx Os HIGH 7.8
CVE-2018-0337

A vulnerability in the role-based access-checking mechanisms of Cisco NX-OS Software could allow an authenticated, local attacker to execute arbitrar…

Mitigation only
Fix from $1,950 2018-06-21
Nx Os MEDIUM 6.5
CVE-2018-0291

A vulnerability in the Simple Network Management Protocol (SNMP) input packet processor of Cisco NX-OS Software could allow an authenticated, remote …

Fix: 2.2 / 3.2+
Fix from $1,600 2018-06-20
Nx Os HIGH 7.5
CVE-2018-0295

A vulnerability in the Border Gateway Protocol (BGP) implementation of Cisco NX-OS Software could allow an unauthenticated, remote attacker to cause …

Fix: 7.0 / 7.3+
Fix from $1,950 2018-06-20
Nx Os CRITICAL 9.8
CVE-2018-0301EPSS 18%

A vulnerability in the NX-API feature of Cisco NX-OS Software could allow an unauthenticated, remote attacker to craft a packet to the management int…

Fix: 7.0 / 7.3+
Fix from $2,300 2018-06-20
Nexus 7000 Firmware CRITICAL 9.8
CVE-2018-0304EPSS 9%

A vulnerability in the Cisco Fabric Services component of Cisco FXOS Software and Cisco NX-OS Software could allow an unauthenticated, remote attacke…

Mitigation only
Fix from $2,300 2018-06-20
Nx Os HIGH 7.8
CVE-2018-0307

A vulnerability in the CLI of Cisco NX-OS Software could allow an authenticated, local attacker to perform a command-injection attack on an affected …

Fix: 7.0 / 7.3+
Fix from $1,950 2018-06-20
Nexus 7000 Firmware CRITICAL 9.8
CVE-2018-0308EPSS 6%

A vulnerability in the Cisco Fabric Services component of Cisco FXOS Software and Cisco NX-OS Software could allow an unauthenticated, remote attacke…

Mitigation only
Fix from $2,300 2018-06-20
Nexus 7000 Firmware CRITICAL 9.8
CVE-2018-0312EPSS 6%

A vulnerability in the Cisco Fabric Services component of Cisco FXOS Software and Cisco NX-OS Software could allow an unauthenticated, remote attacke…

Mitigation only
Fix from $2,300 2018-06-20
Nexus 7000 Firmware CRITICAL 9.8
CVE-2018-0314EPSS 6%

A vulnerability in the Cisco Fabric Services (CFS) component of Cisco FXOS Software and Cisco NX-OS Software could allow an unauthenticated, remote a…

Mitigation only
Fix from $2,300 2018-06-20
Qpid Broker J HIGH 7.5
CVE-2018-8030

A Denial of Service vulnerability was found in Apache Qpid Broker-J versions 7.0.0-7.0.4 when AMQP protocols 0-8, 0-9 or 0-91 are used to publish mes…

Fix: after 7.0.4
Fix from $1,950 2018-06-20
Angular Jwt MEDIUM 6.5
CVE-2018-11537

Auth0 angular-jwt before 0.1.10 treats whiteListedDomains entries as regular expressions, which allows remote attackers with knowledge of the jwtInte…

Fix: 0.1.10+
Fix from $1,600 2018-06-19
Python HIGH 7.5
CVE-2018-1061

python before versions 2.7.15, 3.4.9, 3.5.6rc1, 3.6.5rc1 and 3.7.0 is vulnerable to catastrophic backtracking in the difflib.IS_LINE_JUNK method. An…

Fix: 2.7.15 / 3.4.9+
Fix from $1,950 2018-06-19