Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper Input ValidationCWE-20 × clear
Tealeaf Customer Experience HIGH 8.1
CVE-2016-2983

IBM Tealeaf Customer Experience 8.7, 8.8, and 9.0.2 could allow a remote attacker under unusual circumstances to read operational data or TLS session…

Patch available
Fix from $1,950 2018-01-26
Engineering Requirements Management Doors MEDIUM 5.4
CVE-2017-1516

IBM Doors Web Access 9.5 and 9.6 could allow a remote attacker to hijack the clicking action of the victim. By persuading a victim to visit a malicio…

Fix: after 9.6.1.9
Fix from $1,600 2018-01-26
Swarm MEDIUM 5.9
CVE-2017-1000402

Jenkins Swarm Plugin Client 3.4 and earlier bundled a version of the commons-httpclient library with the vulnerability CVE-2012-6153 that incorrectly…

Fix: after 3.4
Fix from $1,600 2018-01-26
Jenkins HIGH 7.3
CVE-2017-1000391

Jenkins versions 2.88 and earlier and 2.73.2 and earlier stores metadata related to 'people', which encompasses actual user accounts, as well as user…

Fix: after 2.88
Fix from $1,950 2018-01-26
Jenkins HIGH 7.5
CVE-2017-1000394

Jenkins 2.73.1 and earlier, 2.83 and earlier bundled a version of the commons-fileupload library with the denial-of-service vulnerability known as CV…

Fix: after 2.83
Fix from $1,950 2018-01-26
Maven MEDIUM 5.9
CVE-2017-1000397

Jenkins Maven Plugin 2.17 and earlier bundled a version of the commons-httpclient library with the vulnerability CVE-2012-6153 that incorrectly verif…

Fix: after 2.17
Fix from $1,600 2018-01-26
Secure File Transfer HIGH 8.1
CVE-2016-10710

Biscom Secure File Transfer (SFT) 5.0.1000 through 5.0.1048 does not validate the dataFieldId value, and uses sequential numbers, which allows remote…

Fix: after 5.0.1048
Fix from $1,950 2018-01-25
Pcs 9611 Firmware CRITICAL 9.8
CVE-2018-5447

An Improper Input Validation issue was discovered in Nari PCS-9611 relay. An improper input validation vulnerability has been identified that affects…

Mitigation only
Fix from $2,300 2018-01-25
Resteasy HIGH 8.1
CVE-2018-1051

It was found that the fix for CVE-2016-9606 in versions 3.0.22 and 3.1.2 was incomplete and Yaml unmarshalling in Resteasy is still possible via `Yam…

Mitigation only
Fix from $1,950 2018-01-25
Kingsoft Wps Office MEDIUM 5.5
CVE-2018-6217

The WStr::_alloc_iostr_data() function in kso.dll in Kingsoft WPS Office 10.1.0.7106 and 10.2.0.5978 allows remote attackers to cause a denial of ser…

No fix yet
Fix from $1,600 2018-01-25
Anti Virus HIGH 7.8
CVE-2018-6201

In eScan Antivirus 14.0.1400.2029, the driver file (econceal.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified…

No fix yet
Fix from $1,950 2018-01-25
Anti Virus HIGH 7.8
CVE-2018-6202

In eScan Antivirus 14.0.1400.2029, the driver file (econceal.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified…

No fix yet
Fix from $1,950 2018-01-25
Anti Virus HIGH 7.8
CVE-2018-6203

In eScan Antivirus 14.0.1400.2029, the driver file (econceal.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified…

No fix yet
Fix from $1,950 2018-01-25
Anti Virus HIGH 7.8
CVE-2018-6204

In Max Secure Anti Virus 19.0.3.019,, the driver file (SDActMon.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecif…

No fix yet
Fix from $1,950 2018-01-25
Anti Virus HIGH 7.8
CVE-2018-6205

In Max Secure Anti Virus 19.0.3.019,, the driver file (MaxProtector32.sys) allows local users to cause a denial of service (BSOD) or possibly have un…

No fix yet
Fix from $1,950 2018-01-25
Anti Virus HIGH 7.8
CVE-2018-6206

In Max Secure Anti Virus 19.0.3.019,, the driver file (MaxProtector32.sys) allows local users to cause a denial of service (BSOD) or possibly have un…

No fix yet
Fix from $1,950 2018-01-25
Anti Virus HIGH 7.8
CVE-2018-6207

In Max Secure Anti Virus 19.0.3.019,, the driver file (MaxProtector32.sys) allows local users to cause a denial of service (BSOD) or possibly have un…

No fix yet
Fix from $1,950 2018-01-25
Anti Virus HIGH 7.8
CVE-2018-6208

In Max Secure Anti Virus 19.0.3.019,, the driver file (MaxProtector32.sys) allows local users to cause a denial of service (BSOD) or possibly have un…

No fix yet
Fix from $1,950 2018-01-25
Anti Virus HIGH 7.8
CVE-2018-6209

In Max Secure Anti Virus 19.0.3.019,, the driver file (MaxCryptMon.sys) allows local users to cause a denial of service (BSOD) or possibly have unspe…

No fix yet
Fix from $1,950 2018-01-25
Jboss Wildfly Application Server MEDIUM 5.5
CVE-2018-1047

A flaw was found in Wildfly 9.x. A path traversal vulnerability through the org.wildfly.extension.undertow.deployment.ServletResourceManager.getResou…

Mitigation only
Fix from $1,600 2018-01-24
Debian Linux CRITICAL 9.8
CVE-2017-12176

xorg-x11-server before 1.19.5 was missing extra length validation in ProcEstablishConnection function allowing malicious X client to cause X server t…

Fix: 1.19.5+
Fix from $2,300 2018-01-24
Debian Linux CRITICAL 9.8
CVE-2017-12178

xorg-x11-server before 1.19.5 had wrong extra length check in ProcXIChangeHierarchy function allowing malicious X client to cause X server to crash o…

Fix: 1.19.5+
Fix from $2,300 2018-01-24
Debian Linux CRITICAL 9.8
CVE-2017-12180

xorg-x11-server before 1.19.5 was missing length validation in XFree86 VidModeExtension allowing malicious X client to cause X server to crash or pos…

Fix: 1.19.5+
Fix from $2,300 2018-01-24
Debian Linux CRITICAL 9.8
CVE-2017-12181

xorg-x11-server before 1.19.5 was missing length validation in XFree86 DGA extension allowing malicious X client to cause X server to crash or possib…

Fix: 1.19.5+
Fix from $2,300 2018-01-24
Debian Linux CRITICAL 9.8
CVE-2017-12182

xorg-x11-server before 1.19.5 was missing length validation in XFree86 DRI extension allowing malicious X client to cause X server to crash or possib…

Fix: 1.19.5+
Fix from $2,300 2018-01-24
Debian Linux CRITICAL 9.8
CVE-2017-12183

xorg-x11-server before 1.19.5 was missing length validation in XFIXES extension allowing malicious X client to cause X server to crash or possibly ex…

Fix: 1.19.5+
Fix from $2,300 2018-01-24
Debian Linux CRITICAL 9.8
CVE-2017-12184

xorg-x11-server before 1.19.5 was missing length validation in XINERAMA extension allowing malicious X client to cause X server to crash or possibly …

Fix: 1.19.5+
Fix from $2,300 2018-01-24
Debian Linux CRITICAL 9.8
CVE-2017-12185

xorg-x11-server before 1.19.5 was missing length validation in MIT-SCREEN-SAVER extension allowing malicious X client to cause X server to crash or p…

Fix: 1.19.5+
Fix from $2,300 2018-01-24
Debian Linux CRITICAL 9.8
CVE-2017-12186

xorg-x11-server before 1.19.5 was missing length validation in X-Resource extension allowing malicious X client to cause X server to crash or possibl…

Fix: 1.19.5+
Fix from $2,300 2018-01-24
Debian Linux CRITICAL 9.8
CVE-2017-12187

xorg-x11-server before 1.19.5 was missing length validation in RENDER extension allowing malicious X client to cause X server to crash or possibly ex…

Fix: 1.19.5+
Fix from $2,300 2018-01-24