Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper Input ValidationCWE-20 × clear
Druid MEDIUM 6.5
CVE-2024-45537

Apache Druid allows users with certain permissions to read data from other database systems using JDBC. This functionality allows trusted users to se…

Fix: 30.0.1+
Fix from $1,600 2024-09-17
Contao MEDIUM 5.3
CVE-2024-45612

Contao is an Open Source CMS. In affected versions an untrusted user can inject insert tags into the canonical tag, which are then replaced on the we…

Fix: 4.13.49 / 5.3.15+
Fix from $1,600 2024-09-17
Unclassified CRITICAL 9.9
CVE-2024-45798

arduino-esp32 is an Arduino core for the ESP32, ESP32-S2, ESP32-S3, ESP32-C3, ESP32-C6 and ESP32-H2 microcontrollers. The `arduino-esp32` CI is vulne…

Mitigation only
Fix from $2,300 2024-09-17
Raid Web Console MEDIUM 5.7
CVE-2024-34545

Improper input validation in some Intel(R) RAID Web Console software all versions may allow an authenticated user to potentially enable information d…

Mitigation only
Fix from $1,600 2024-09-16
Unclassified HIGH 7.5
CVE-2024-21829

Improper input validation in UEFI firmware error handler for some Intel(R) Processors may allow a privileged user to potentially enable escalation of…

Mitigation only
Fix from $1,950 2024-09-16
Unclassified HIGH 7.5
CVE-2024-21871

Improper input validation in UEFI firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via…

Mitigation only
Fix from $1,950 2024-09-16
Unclassified HIGH 7.2
CVE-2024-21781

Improper input validation in UEFI firmware for some Intel(R) Processors may allow a privileged user to enable information disclosure or denial of ser…

Mitigation only
Fix from $1,950 2024-09-16
Android HIGH 7.8
CVE-2024-44094

In ppmp_protect_mfcfw_buf of code/drm_fw.c, there is a possible memory corruption due to improper input validation. This could lead to local escalati…

Mitigation only
Fix from $1,950 2024-09-13
Compactlogix 5380 Firmware HIGH 7.5
CVE-2024-6077

A denial-of-service vulnerability exists in the Rockwell Automation affected products when specially crafted packets are sent to the CIP Security Obj…

Mitigation only
Fix from $1,950 2024-09-12
Multi Tenant Loadmaster MEDIUM 6.8
CVE-2024-6658

Improper Input Validation vulnerability of Authenticated User in Progress LoadMaster allows OS Command Injection.This issue affects:  Product …

Fix: 7.1.35.12 / 7.2.54.12+
Fix from $1,600 2024-09-12
5015 U8ihft Firmware HIGH 7.5
CVE-2024-45825

CVE-2024-45825 IMPACT A denial-of-service vulnerability exists in the affected products. The vulnerability occurs when a malformed CIP packet is sent…

Mitigation only
Fix from $1,950 2024-09-12
Ios Xr HIGH 7.4
CVE-2024-20406

A vulnerability in the segment routing feature for the Intermediate System-to-Intermediate System (IS-IS) protocol of Cisco IOS XR Software could all…

Fix: 7.0.0 / 7.11.2+
Fix from $1,950 2024-09-11
Windows Server 2008 CRITICAL 9.8
CVE-2024-43455

Windows Remote Desktop Licensing Service Spoofing Vulnerability

Fix: 10.0.14393.7336 / 10.0.17763.6293+
Fix from $2,300 2024-09-10
Windows 10 1507 HIGH 7.8
CVE-2024-38245

Kernel Streaming Service Driver Elevation of Privilege Vulnerability

Fix: 10.0.10240.20766 / 10.0.14393.7336+
Fix from $1,950 2024-09-10
Windows 10 1507 HIGH 7.8
CVE-2024-38241EPSS 6%

Kernel Streaming Service Driver Elevation of Privilege Vulnerability

Fix: 10.0.10240.20766 / 10.0.14393.7336+
Fix from $1,950 2024-09-10
Windows 10 1507 HIGH 7.8
CVE-2024-38243

Kernel Streaming Service Driver Elevation of Privilege Vulnerability

Fix: 10.0.10240.20766 / 10.0.14393.7336+
Fix from $1,950 2024-09-10
Windows 10 1507 HIGH 7.8
CVE-2024-38244EPSS 6%

Kernel Streaming Service Driver Elevation of Privilege Vulnerability

Fix: 10.0.10240.20766 / 10.0.14393.7336+
Fix from $1,950 2024-09-10
Windows 10 1507 MEDIUM 6.5
CVE-2024-38234

Windows Networking Denial of Service Vulnerability

Fix: 10.0.10240.20766 / 10.0.14393.7336+
Fix from $1,600 2024-09-10
Windows Server 2012 HIGH 7.5
CVE-2024-38230

Windows Standards-Based Storage Management Service Denial of Service Vulnerability

Fix: 10.0.14393.7336 / 10.0.17763.6293+
Fix from $1,950 2024-09-10
Azure Web Apps CRITICAL 9.9
CVE-2024-38194

An authenticated attacker can exploit an improper authorization vulnerability in Azure Web Apps to elevate privileges over a network.

Patch available
Fix from $2,300 2024-09-10
Azure Stack Hub CRITICAL 9.0
CVE-2024-38216

Azure Stack Hub Elevation of Privilege Vulnerability

Fix: 1.2311.1.22+
Fix from $2,300 2024-09-10
Windows 10 1507 HIGH 7.8
CVE-2024-38046

PowerShell Elevation of Privilege Vulnerability

Fix: 10.0.10240.20766 / 10.0.14393.7336+
Fix from $1,950 2024-09-10
Sql Server 2016 HIGH 8.8
CVE-2024-37965

Microsoft SQL Server Elevation of Privilege Vulnerability

Fix: 13.0.6445.1 / 13.0.7040.1+
Fix from $1,950 2024-09-10
Precision 7920 Rack Firmware MEDIUM 6.0
CVE-2024-42424

Dell Precision Rack, 14G Intel BIOS versions prior to 2.22.2, contains an Improper Input Validation vulnerability. A high privileged attacker with lo…

Fix: 2.22.1+
Fix from $1,600 2024-09-10
Exynos 980 Firmware MEDIUM 5.5
CVE-2024-27366

An issue was discovered in Samsung Mobile Processor, Wearable Processor Exynos Exynos 980, Exynos 850, Exynos 1080, Exynos 1280, Exynos 1380, Exynos …

Mitigation only
Fix from $1,600 2024-09-09
Unclassified MEDIUM 5.7
CVE-2024-8445

The fix for CVE-2024-2199 in 389-ds-base was insufficient to cover all scenarios. In certain product versions, an authenticated user may cause a serv…

Mitigation only
Fix from $1,600 2024-09-05
Unclassified CRITICAL 9.8
CVE-2024-44808

An issue in Vypor Attack API System v.1.0 allows a remote attacker to execute arbitrary code via the user GET parameter.

Mitigation only
Fix from $2,300 2024-09-04
Emui MEDIUM 5.5
CVE-2024-45446

Access permission verification vulnerability in the camera driver module Impact: Successful exploitation of this vulnerability will affect availabili…

Mitigation only
Fix from $1,600 2024-09-04
Emui MEDIUM 5.5
CVE-2024-45444

Access permission verification vulnerability in the WMS module Impact: Successful exploitation of this vulnerability may affect service confidentiali…

No fix yet
Fix from $1,600 2024-09-04
Emui HIGH 7.5
CVE-2024-45441

Input verification vulnerability in the system service module Impact: Successful exploitation of this vulnerability will affect availability.

No fix yet
Fix from $1,950 2024-09-04