Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper Input ValidationCWE-20 × clear
GitLab CRITICAL 9.8
CVE-2017-0916EPSS 6%

Gitlab Community Edition version 10.3 is vulnerable to a lack of input validation in the system_hook_push queue through web hook component resulting …

Fix: after 10.3.3
Fix from $2,300 2018-03-21
GitLab MEDIUM 6.1
CVE-2017-0917

Gitlab Community Edition version 10.2.4 is vulnerable to lack of input validation in the CI job component resulting in persistent cross site scriptin…

Fix: after 10.3.3
Fix from $1,600 2018-03-21
2345 Security Guard HIGH 7.8
CVE-2018-8873

In 2345 Security Guard 3.6, the driver file (2345NetFirewall.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified…

No fix yet
Fix from $1,950 2018-03-20
2345 Security Guard HIGH 7.8
CVE-2018-8874

In 2345 Security Guard 3.6, the driver file (2345Wrath.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other…

No fix yet
Fix from $1,950 2018-03-20
2345 Security Guard HIGH 7.8
CVE-2018-8875

In 2345 Security Guard 3.6, the driver file (2345Wrath.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other…

No fix yet
Fix from $1,950 2018-03-20
2345 Security Guard HIGH 7.8
CVE-2018-8876

In 2345 Security Guard 3.6, the driver file (2345Wrath.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other…

No fix yet
Fix from $1,950 2018-03-20
Maradns MEDIUM 5.9
CVE-2014-2032

Deadwood before 2.3.09, 3.x before 3.2.05, and as used in MaraDNS before 1.4.14 and 2.x before 2.0.09, allow remote attackers to cause a denial of se…

Fix: 1.4.14 / 2.0.09+
Fix from $1,600 2018-03-20
Commons Email HIGH 7.5
CVE-2018-1294

If a user of Apache Commons Email (typically an application programmer) passes unvalidated input as the so-called "Bounce Address", and that input co…

Fix: after 1.4
Fix from $1,950 2018-03-20
Syncope HIGH 7.2
CVE-2018-1321EPSS 18%

An administrator with report and template entitlements in Apache Syncope 1.2.x before 1.2.11, 2.0.x before 2.0.8, and unsupported releases 1.0.x and …

Fix: 1.2.11 / 2.0.8+
Fix from $1,950 2018-03-20
Elcsoft MEDIUM 5.3
CVE-2018-7511

In Eaton ELCSoft versions 2.04.02 and prior, there are multiple cases where specially crafted files could cause a buffer overflow which, in turn, may…

Fix: 2.04.02+
Fix from $1,600 2018-03-20
Hg532 Firmware HIGH 8.8
CVE-2017-17215EPSS 79%

Huawei HG532 with some customized versions has a remote code execution vulnerability. An authenticated attacker could send malicious packets to port …

Mitigation only
Fix from $1,950 2018-03-20
Simatic Cp 343 1 Firmware MEDIUM 6.5
CVE-2018-4843

A vulnerability has been identified in SIMATIC S7-400 CPU 414-3 PN/DP V7 (All versions < V7.0.3), SIMATIC S7-400 CPU 414F-3 PN/DP V7 (All versions …

Fix: 1.7.0 / 6.0.7+
Fix from $1,600 2018-03-20
Windriver MEDIUM 5.5
CVE-2018-8821

windrvr1260.sys in Jungo DriverWizard WinDriver 12.6.0 allows attackers to cause a denial of service (BSOD) via a crafted .exe file.

Fix: 12.8.0+
Fix from $1,600 2018-03-20
Cf Deployment HIGH 8.1
CVE-2018-1221

In cf-deployment before 1.14.0 and routing-release before 0.172.0, the Cloud Foundry Gorouter mishandles WebSocket requests for AWS Application Load …

Fix: 0.172.0 / 1.14.0+
Fix from $1,950 2018-03-19
Collectd MEDIUM 5.5
CVE-2017-18240

The Gentoo app-admin/collectd package before 5.7.2-r1 sets the ownership of PID file directory to the collectd account, which might allow local users…

Fix: after 5.7.2
Fix from $1,600 2018-03-19
2345 Security Guard HIGH 7.8
CVE-2018-8765

In 2345 Security Guard 3.6, the driver file (2345NetFirewall.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified…

No fix yet
Fix from $1,950 2018-03-18
Android HIGH 7.5
CVE-2017-18057

In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, improper input validation for vdev id…

Patch available
Fix from $1,950 2018-03-16
Android HIGH 7.5
CVE-2017-18058

In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, improper input validation for wow_buf…

Patch available
Fix from $1,950 2018-03-16
Android HIGH 7.5
CVE-2017-18059

In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, improper input validation for vdev id…

Patch available
Fix from $1,950 2018-03-16
Android HIGH 7.5
CVE-2017-18060

In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, improper input validation for resp_ev…

Patch available
Fix from $1,950 2018-03-16
Android HIGH 7.8
CVE-2017-18065

In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, improper input validation for vent->v…

Patch available
Fix from $1,950 2018-03-16
Android HIGH 7.8
CVE-2017-15831

In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, in the function wma_ndp_end_indicatio…

Patch available
Fix from $1,950 2018-03-16
Android HIGH 7.8
CVE-2017-18050

In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, improper input validation for vdev_ma…

Patch available
Fix from $1,950 2018-03-16
Android HIGH 7.5
CVE-2017-18051

In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, improper input validation for event->…

Patch available
Fix from $1,950 2018-03-16
Android HIGH 7.5
CVE-2017-18052

In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, improper input validation for cmpl_pa…

Patch available
Fix from $1,950 2018-03-16
Android HIGH 7.5
CVE-2017-18053

In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, improper input validation for fix_par…

Patch available
Fix from $1,950 2018-03-16
Android HIGH 7.8
CVE-2017-18054

In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, improper input validation for num_vde…

Patch available
Fix from $1,950 2018-03-16
Android HIGH 7.8
CVE-2017-18055

In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, improper input validation for wmi_eve…

Patch available
Fix from $1,950 2018-03-16
Openflow CRITICAL 9.8
CVE-2018-1078

OpenDayLight version Carbon SR3 and earlier contain a vulnerability during node reconciliation that can result in traffic flows that should be expire…

Mitigation only
Fix from $2,300 2018-03-16
Spring Framework MEDIUM 5.3
CVE-2018-1199

Spring Security (Spring Security 4.1.x before 4.1.5, 4.2.x before 4.2.4, and 5.0.x before 5.0.1; and Spring Framework 4.3.x before 4.3.14 and 5.0.x b…

Fix: 4.1.5 / 4.2.4+
Fix from $1,600 2018-03-16