Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper Input ValidationCWE-20 × clear
Android HIGH 7.5
CVE-2017-14878

In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, a length variable which is used to co…

Patch available
Fix from $1,950 2018-03-15
Android HIGH 7.8
CVE-2017-18056

In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, improper input validation for vdev_id…

Mitigation only
Fix from $1,950 2018-03-15
Android HIGH 7.8
CVE-2017-18063

In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, improper input validation for nlo_eve…

Patch available
Fix from $1,950 2018-03-15
Android HIGH 7.8
CVE-2017-18064

In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, improper input validation for p2p_noa…

Patch available
Fix from $1,950 2018-03-15
Android CRITICAL 9.8
CVE-2017-18067

In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, improper input validation while proce…

Patch available
Fix from $2,300 2018-03-15
Exempi MEDIUM 5.5
CVE-2017-18235

An issue was discovered in Exempi before 2.4.3. The VPXChunk class in XMPFiles/source/FormatSupport/WEBP_Support.cpp does not ensure nonzero widths a…

Fix: 2.4.3+
Fix from $1,600 2018-03-15
Spice Gtk CRITICAL 9.8
CVE-2017-12194EPSS 5%

A flaw was found in the way spice-client processed certain messages sent from the server. An attacker, having control of malicious spice-server, coul…

Fix: after 0.34
Fix from $2,300 2018-03-14
Woocommerce Products Filter CRITICAL 9.8
CVE-2018-8711

A local file inclusion issue was discovered in the WooCommerce Products Filter (aka WOOF) plugin before 2.2.0 for WordPress, as demonstrated by the s…

Fix: 2.2.0+
Fix from $2,300 2018-03-14
Pi Data Archive MEDIUM 5.9
CVE-2018-7531

An Improper Input Validation issue was discovered in OSIsoft PI Data Archive versions 2017 and prior. Unauthenticated users may use unvalidated custo…

Fix: after 2017
Fix from $1,600 2018-03-14
Windows 10 MEDIUM 5.8
CVE-2018-0885EPSS 5%

The Microsoft Hyper-V Network Switch in 64-bit versions of Microsoft Windows Server 2008 SP2 and R2 SP1, Windows Server 2012 and R2, Windows 10 Gold,…

Patch available
Fix from $1,600 2018-03-14
Windows 10 MEDIUM 5.6
CVE-2018-0888

The Microsoft Hyper-V Network Switch in 64-bit versions of Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2…

Patch available
Fix from $1,600 2018-03-14
Windows 10 HIGH 7.0
CVE-2018-0868

Windows Installer in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1 and RT 8.1, Windows Server 2012 and R2, Windows 10 Gold…

Patch available
Fix from $1,950 2018-03-14
Prime Jwt CRITICAL 9.8
CVE-2018-1000125

inversoft prime-jwt version prior to version 1.3.0 or prior to commit 0d94dcef0133d699f21d217e922564adbb83a227 contains an input validation vulnerabi…

Fix: 1.3.0+
Fix from $2,300 2018-03-13
Snh V6410pn Firmware CRITICAL 9.8
CVE-2018-6298

Remote code execution in Hanwha Techwin Smartcams

No fix yet
Fix from $2,300 2018-03-13
Debian Linux MEDIUM 5.3
CVE-2018-1000077

RubyGems version Ruby 2.2 series: 2.2.9 and earlier, Ruby 2.3 series: 2.3.6 and earlier, Ruby 2.4 series: 2.4.3 and earlier, Ruby 2.5 series: 2.5.0 a…

Fix: after 2.5.0
Fix from $1,600 2018-03-13
Ajenti HIGH 7.5
CVE-2018-1000081

Ajenti version version 2 contains a Input Validation vulnerability in ID string on Get-values POST request that can result in Server Crashing. This a…

No fix yet
Fix from $1,950 2018-03-13
Android HIGH 7.8
CVE-2017-6281

NVIDIA libnvomx contains a possible out of bounds write due to a improper input validation which could lead to local escalation of privilege. This is…

Mitigation only
Fix from $1,950 2018-03-12
Syncbreeze HIGH 7.5
CVE-2018-8065EPSS 76%

An issue was discovered in the web server in Flexense SyncBreeze Enterprise 10.6.24. There is a user mode write access violation on the syncbrs.exe m…

Patch available
Fix from $1,950 2018-03-12
Afflib MEDIUM 6.5
CVE-2018-8050

The af_get_page() function in lib/afflib_pages.cpp in AFFLIB (aka AFFLIBv3) through 3.7.16 allows remote attackers to cause a denial of service (segm…

Fix: after 3.7.16
Fix from $1,600 2018-03-11
Mps110 1 Firmware CRITICAL 9.8
CVE-2018-7231

A vulnerability exists in Schneider Electric's Pelco Sarix Professional in all firmware versions prior to 3.29.67 which could allow execution of comm…

Fix: 3.29.67+
Fix from $2,300 2018-03-09
Mps110 1 Firmware CRITICAL 9.8
CVE-2018-7232

A vulnerability exists in Schneider Electric's Pelco Sarix Professional in all firmware versions prior to 3.29.67 which could allow execution of comm…

Fix: 3.29.67+
Fix from $2,300 2018-03-09
Mps110 1 Firmware CRITICAL 9.8
CVE-2018-7233

A vulnerability exists in Schneider Electric's Pelco Sarix Professional in all firmware versions prior to 3.29.67 which could allow execution of comm…

Fix: 3.29.67+
Fix from $2,300 2018-03-09
Mps110 1 Firmware HIGH 7.5
CVE-2018-7235

A vulnerability exists in Schneider Electric's Pelco Sarix Professional in all firmware versions prior to 3.29.67 which could allow arbitrary system …

Fix: 3.29.67+
Fix from $1,950 2018-03-09
Mps110 1 Firmware CRITICAL 9.1
CVE-2018-7237

A vulnerability exists in Schneider Electric's Pelco Sarix Professional in all firmware versions prior to 3.29.67 which could allow a remote attacker…

Fix: 3.29.67+
Fix from $2,300 2018-03-09
S12700 Firmware HIGH 7.5
CVE-2016-8786

Huawei S12700 V200R005C00, V200R006C00, V200R007C00, V200R008C00, S5700 V200R006C00, V200R007C00, V200R008C00, S6700 V200R008C00, S7700 V200R001C00, …

Mitigation only
Fix from $1,950 2018-03-09
Resteasy HIGH 8.1
CVE-2016-9606EPSS 6%

JBoss RESTEasy before version 3.1.2 could be forced into parsing a request with YamlProvider, resulting in unmarshalling of potentially untrusted dat…

Fix: after 3.1.1
Fix from $1,950 2018-03-09
Financial Transaction Manager MEDIUM 6.3
CVE-2016-0276

IBM Financial Transaction Manager (FTM) for ACH Services for Multi-Platform 2.1.1.2 and 3.0.0.x before fp0013, Financial Transaction Manager (FTM) fo…

Fix: after 3.0.0.12
Fix from $1,600 2018-03-09
Dp300 Firmware MEDIUM 5.3
CVE-2017-17219

SCCPX module in Huawei DP300 V500R002C00; RP200 V500R002C00; V600R006C00; TE30 V100R001C10; V500R002C00; V600R006C00; TE40 V500R002C00; V600R006C00; …

Mitigation only
Fix from $1,600 2018-03-09
Espace 7950 Firmware HIGH 8.8
CVE-2017-17221

Import Signal Tone function in Huawei eSpace 7950 V200R003C30; eSpace 8950 V200R003C00; V200R003C30 has a remote code execution vulnerability. An aut…

No fix yet
Fix from $1,950 2018-03-09
Espace 7950 Firmware HIGH 8.8
CVE-2017-17222

Import Language Package function in Huawei eSpace 7950 V200R003C30; eSpace 8950 V200R003C00; V200R003C30 has a remote code execution vulnerability. A…

Mitigation only
Fix from $1,950 2018-03-09