Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper Input ValidationCWE-20 × clear
Orvc HIGH 7.5
CVE-2023-28649

The Hub in the Snap One OvrC cloud platform is a device used to centralize and manage nested devices connected to it. A vulnerability exists in which…

Fix: 7.3.0+
Fix from $1,950 2023-05-22
Catalyst Center HIGH 8.8
CVE-2023-20182

Multiple vulnerabilities in the API of Cisco DNA Center Software could allow an authenticated, remote attacker to read information from a restricted …

Fix: 2.3.3.7 / 2.3.5.3+
Fix from $1,950 2023-05-18
Identity Services Engine MEDIUM 6.5
CVE-2023-20171

Multiple vulnerabilities in Cisco Identity Services Engine (ISE) could allow an authenticated attacker to delete or read arbitrary files on the under…

Mitigation only
Fix from $1,600 2023-05-18
Android MEDIUM 6.7
CVE-2023-20708

In keyinstall, there is a possible out of bounds read due to a missing bounds check. This could lead to local escalation of privilege with System exe…

Mitigation only
Fix from $1,600 2023-05-15
Android MEDIUM 6.7
CVE-2023-20718

In vcu, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution…

Mitigation only
Fix from $1,600 2023-05-15
Android MEDIUM 6.7
CVE-2023-20720

In pqframework, there is a possible out of bounds read due to a missing bounds check. This could lead to local escalation of privilege with System ex…

Mitigation only
Fix from $1,600 2023-05-15
Android MEDIUM 6.7
CVE-2023-20721

In isp, there is a possible out of bounds write due to improper input validation. This could lead to local escalation of privilege with System execut…

Mitigation only
Fix from $1,600 2023-05-15
Android MEDIUM 6.7
CVE-2023-20722

In m4u, there is a possible out of bounds write due to improper input validation. This could lead to local escalation of privilege with System execut…

Mitigation only
Fix from $1,600 2023-05-15
Android MEDIUM 5.5
CVE-2023-21111

In several functions of PhoneAccountRegistrar.java, there is a possible way to prevent an access to emergency services due to improper input validati…

Patch available
Fix from $1,600 2023-05-15
Android MEDIUM 5.5
CVE-2023-20704

In apu, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with no additional exec…

Mitigation only
Fix from $1,600 2023-05-15
Android MEDIUM 5.5
CVE-2023-20705

In apu, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with no additional exec…

Mitigation only
Fix from $1,600 2023-05-15
Android MEDIUM 6.7
CVE-2023-20707

In ril, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution…

Mitigation only
Fix from $1,600 2023-05-15
Control For Beaglebone Sl MEDIUM 6.5
CVE-2022-47392

An authenticated, remote attacker may use a improper input validation vulnerability in the CmpApp/CmpAppBP/CmpAppForce Components of multiple CODESYS…

Fix: 4.8.0.0+
Fix from $1,600 2023-05-15
Control For Beaglebone Sl HIGH 7.5
CVE-2022-47391

In multiple CODESYS products in multiple versions an unauthorized, remote attacker may use a improper input validation vulnerability to read from inv…

Fix: 4.8.0.0+
Fix from $1,950 2023-05-15
Sling Commons Json CRITICAL 9.8
CVE-2022-47937

Improper input validation in the Apache Sling Commons JSON bundle allows an attacker to trigger unexpected errors by supplying specially-crafted inpu…

Fix: after 2.0.20
Fix from $2,300 2023-05-15
Control For Beaglebone Sl MEDIUM 6.5
CVE-2022-47378

Multiple CODESYS products in multiple versions are prone to a improper input validation vulnerability. An authenticated remote attacker may craft spe…

Fix: 4.8.0.0+
Fix from $1,600 2023-05-15
Aiven HIGH 8.8
CVE-2023-32305

aiven-extras is a PostgreSQL extension. Versions prior to 1.1.9 contain a privilege escalation vulnerability, allowing elevation to superuser inside …

Fix: 1.1.9+
Fix from $1,950 2023-05-12
Security Verify Access HIGH 7.5
CVE-2023-25927

IBM Security Verify Access 10.0.0, 10.0.1, 10.0.2, 10.0.3, 10.0.4, and 10.0.5 could allow an attacker to crash the webseald process using specially c…

Mitigation only
Fix from $1,950 2023-05-12
Openmeetings HIGH 7.2
CVE-2023-29246

An attacker who has gained access to an admin account can perform RCE via null-byte injection Vendor: The Apache Software Foundation Versions Affec…

Fix: 7.1.0+
Fix from $1,950 2023-05-12
Armorstart St 284ee Firmware MEDIUM 5.9
CVE-2023-29026

A cross site scripting vulnerability was discovered in Rockwell Automation's ArmorStart ST product that could potentially allow a malicious user wi…

Mitigation only
Fix from $1,600 2023-05-11
Sel 3350 Firmware HIGH 8.8
CVE-2023-31161

An Improper Input Validation vulnerability in the Schweitzer Engineering Laboratories Real-Time Automation Controller (SEL RTAC) Web Interface could …

No fix yet
Fix from $1,950 2023-05-10
Sel 2241 Rtac Module Firmware HIGH 8.8
CVE-2023-31148

An Improper Input Validation vulnerability in the Schweitzer Engineering Laboratories Real-Time Automation Controller (SEL RTAC) Web Interface coul…

Mitigation only
Fix from $1,950 2023-05-10
Sel 2241 Rtac Module Firmware HIGH 8.8
CVE-2023-31149

An Improper Input Validation vulnerability in the Schweitzer Engineering Laboratories Real-Time Automation Controller (SEL RTAC) Web Interface coul…

Mitigation only
Fix from $1,950 2023-05-10
Retail Edge Program MEDIUM 5.5
CVE-2023-25772

Improper input validation in the Intel(R) Retail Edge Mobile Android application before version 3.0.301126-RELEASE may allow an authenticated user to…

Fix: 3.0.301126 / 3.4.7+
Fix from $1,600 2023-05-10
Server System D50tnp1mhcrlc Firmware MEDIUM 5.5
CVE-2023-25175

Improper input validation in some Intel(R) Server Board BMC firmware before version 2.90 may allow a privileged user to enable information disclosure…

Fix: 2.90+
Fix from $1,600 2023-05-10
Server System D50tnp1mhcrlc Firmware MEDIUM 5.5
CVE-2023-22379

Improper input validation in some Intel(R) Server Board BMC firmware before version 2.90 may allow a privileged user to enable information disclosure…

Fix: 2.90+
Fix from $1,600 2023-05-10
Agilex 7 Fpga F Series 019 Firmware HIGH 7.8
CVE-2022-38787

Improper input validation in firmware for some Intel(R) FPGA products before version 2.7.0 Hotfix may allow an authenticated user to potentially enab…

Fix: after 2.7.0
Fix from $1,950 2023-05-10
Cm8i3cb4n Firmware HIGH 7.8
CVE-2022-36339

Improper input validation in firmware for Intel(R) NUC 8 Compute Element, Intel(R) NUC 11 Compute Element, Intel(R) NUC 12 Compute Element may allow …

Mitigation only
Fix from $1,950 2023-05-10
Nuc10i3fnh Firmware MEDIUM 5.5
CVE-2022-37327

Improper input validation in BIOS firmware for Intel(R) NUC, Intel(R) NUC Performance Kit, Intel(R) NUC Performance Mini PC, Intel(R) NUC 8 Compute E…

Mitigation only
Fix from $1,600 2023-05-10
Compute Stick Stk2mv64cc Firmware HIGH 7.8
CVE-2022-32766

Improper input validation for some Intel(R) BIOS firmware may allow a privileged user to potentially enable escalation of privilege via local access.

Patch available
Fix from $1,950 2023-05-10