Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper Input ValidationCWE-20 × clear
Big Ip Local Traffic Manager HIGH 8.1
CVE-2017-6164

In F5 BIG-IP LTM, AAM, AFM, Analytics, APM, ASM, DNS, Edge Gateway, GTM, Link Controller, PEM, WebAccelerator and WebSafe software version 13.0.0, 12…

Fix: after 12.1.2
Fix from $1,950 2017-12-21
Git Large File Storage HIGH 8.8
CVE-2017-17831

GitHub Git LFS before 2.1.1 allows remote attackers to execute arbitrary commands via an ssh URL with an initial dash character in the hostname, loca…

Fix: 2.1.1+
Fix from $1,950 2017-12-21
Ubuntu Linux MEDIUM 5.5
CVE-2017-17810

In Netwide Assembler (NASM) 2.14rc0, there is a "SEGV on unknown address" that will cause a remote denial of service attack, because asm/preproc.c mi…

Patch available
Fix from $1,600 2017-12-21
Linux Kernel HIGH 7.8
CVE-2017-17805

The Salsa20 encryption algorithm in the Linux kernel before 4.14.8 does not correctly handle zero-length inputs, allowing a local attacker able to us…

Fix: 3.2.97 / 3.16.52+
Fix from $1,950 2017-12-20
Qradar Security Information And Event Manager HIGH 8.8
CVE-2017-1696

IBM QRadar 7.2 and 7.3 could allow a remote authenticated attacker to execute arbitrary commands on the system. By sending a specially-crafted reques…

Patch available
Fix from $1,950 2017-12-20
Anti.virus HIGH 7.8
CVE-2017-14963

In IKARUS anti.virus before 2.16.18, the ntguard.sys driver contains an Arbitrary Write vulnerability because of not validating input values from IOC…

Fix: 2.16.18+
Fix from $1,950 2017-12-20
Anti.virus HIGH 7.8
CVE-2017-14964

In IKARUS anti.virus before 2.16.18, the ntguard.sys driver contains an Arbitrary Write vulnerability because of not validating input values from IOC…

Fix: 2.16.18+
Fix from $1,950 2017-12-20
Anti.virus HIGH 7.8
CVE-2017-14965

In IKARUS anti.virus before 2.16.18, the ntguard.sys driver contains an Arbitrary Write vulnerability because of not validating input values from IOC…

Fix: 2.16.18+
Fix from $1,950 2017-12-20
Anti.virus HIGH 7.8
CVE-2017-14966

In IKARUS anti.virus before 2.16.18, the ntguard.sys driver contains an Arbitrary Write vulnerability because of not validating input values from IOC…

Fix: 2.16.18+
Fix from $1,950 2017-12-20
Anti.virus HIGH 7.8
CVE-2017-14967

In IKARUS anti.virus before 2.16.18, the ntguard.sys driver contains an Arbitrary Write vulnerability because of not validating input values from IOC…

Fix: 2.16.18+
Fix from $1,950 2017-12-20
Anti.virus HIGH 7.8
CVE-2017-14968

In IKARUS anti.virus before 2.16.18, the ntguard.sys driver contains an Arbitrary Write vulnerability because of not validating input values from IOC…

Fix: 2.16.18+
Fix from $1,950 2017-12-20
Vir.it Explorer Lite HIGH 7.8
CVE-2017-17796

In TG Soft Vir.IT eXplorer Lite 8.5.65, the driver file (VIRAGTLT.SYS) allows local users to cause a denial of service (BSOD) or possibly have unspec…

No fix yet
Fix from $1,950 2017-12-20
Anti.virus HIGH 7.8
CVE-2017-17797

In IKARUS anti.virus 2.16.20, the driver file (ntguard.SYS) allows local users to cause a denial of service (BSOD) or possibly have unspecified other…

No fix yet
Fix from $1,950 2017-12-20
Vir.it Explorer HIGH 7.8
CVE-2017-17798

In TG Soft Vir.IT eXplorer Lite 8.5.42, the driver file (VIRAGTLT.SYS) allows local users to cause a denial of service (BSOD) or possibly have unspec…

No fix yet
Fix from $1,950 2017-12-20
Vir.it Explorer HIGH 7.8
CVE-2017-17799

In TG Soft Vir.IT eXplorer Lite 8.5.65, the driver file (VIRAGTLT.SYS) allows local users to cause a denial of service (BSOD) or possibly have unspec…

No fix yet
Fix from $1,950 2017-12-20
Vir.it Explorer HIGH 7.8
CVE-2017-17800

In TG Soft Vir.IT eXplorer Lite 8.5.65, the driver file (VIRAGTLT.SYS) allows local users to cause a denial of service (BSOD) or possibly have unspec…

No fix yet
Fix from $1,950 2017-12-20
Vir.it Explorer HIGH 7.8
CVE-2017-17801

In TG Soft Vir.IT eXplorer Lite 8.5.65, the driver file (VIRAGTLT.SYS) allows local users to cause a denial of service (BSOD) or possibly have unspec…

No fix yet
Fix from $1,950 2017-12-20
Vir.it Explorer HIGH 7.8
CVE-2017-17802

In TG Soft Vir.IT eXplorer Lite 8.5.65, the driver file (VIRAGTLT.SYS) allows local users to cause a denial of service (BSOD) or possibly have unspec…

No fix yet
Fix from $1,950 2017-12-20
Vir.it Explorer HIGH 7.8
CVE-2017-17803

In TG Soft Vir.IT eXplorer Lite 8.5.65, the driver file (VIRAGTLT.SYS) allows local users to cause a denial of service (BSOD) or possibly have unspec…

No fix yet
Fix from $1,950 2017-12-20
Anti.virus HIGH 7.8
CVE-2017-17804

In IKARUS anti.virus 2.16.20, the driver file (ntguard.SYS) allows local users to cause a denial of service (BSOD) or possibly have unspecified other…

No fix yet
Fix from $1,950 2017-12-20
Anti.virus HIGH 7.8
CVE-2017-17795

In IKARUS anti.virus 2.16.20, the driver file (ntguard.SYS) allows local users to cause a denial of service (BSOD) or possibly have unspecified other…

No fix yet
Fix from $1,950 2017-12-20
Enterprise Linux HIGH 8.8
CVE-2017-15103

A security-check flaw was found in the way the Heketi 5 server API handled user requests. An authenticated Heketi user could send specially crafted r…

Patch available
Fix from $1,950 2017-12-18
Clustered Data Ontap MEDIUM 6.5
CVE-2017-14583

NetApp Clustered Data ONTAP versions 9.x prior to 9.1P10 and 9.2P2 are susceptible to a vulnerability which allows an attacker to cause a Denial of S…

Fix: after 9.1
Fix from $1,600 2017-12-18
Dir 130 Firmware CRITICAL 9.8
CVE-2017-3191EPSS 14%

D-Link DIR-130 firmware version 1.23 and DIR-330 firmware version 1.12 are vulnerable to authentication bypass of the remote login page. A remote att…

Mitigation only
Fix from $2,300 2017-12-16
Ecstatic HIGH 7.5
CVE-2016-10703

A regular expression Denial of Service (DoS) vulnerability in the file lib/ecstatic.js of the ecstatic npm package, before version 2.0.0, allows a re…

Fix: 2.0.0+
Fix from $1,950 2017-12-14
Routerboard HIGH 7.5
CVE-2017-17537

MikroTik RouterBOARD v6.39.2 and v6.40.5 allows an unauthenticated remote attacker to cause a denial of service by connecting to TCP port 53 and send…

No fix yet
Fix from $1,950 2017-12-13
Bamboo CRITICAL 9.6
CVE-2017-14589

It was possible for double OGNL evaluation in FreeMarker templates through Struts FreeMarker tags to occur. An attacker who has restricted administra…

Fix: 6.1.6 / 6.2.5+
Fix from $2,300 2017-12-13
Xen MEDIUM 5.6
CVE-2017-17565

An issue was discovered in Xen through 4.9.x allowing PV guest OS users to cause a denial of service (host OS crash) if shadow mode and log-dirty mod…

Fix: after 4.9.1
Fix from $1,600 2017-12-12
Sharepoint Enterprise Server HIGH 8.8
CVE-2017-11936

Microsoft SharePoint Enterprise Server 2016 allows an elevation of privilege vulnerability due to the way web requests are handled, aka "Microsoft Sh…

Patch available
Fix from $1,950 2017-12-12
Exchange Server HIGH 8.1
CVE-2017-11932EPSS 5%

Microsoft Exchange Server 2016 CU5 and Microsoft Exchange Server 2016 CU5 allow a spoofing vulnerability due to the way Outlook Web Access (OWA) vali…

Patch available
Fix from $1,950 2017-12-12