Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper Input ValidationCWE-20 × clear
MEDIUM 5.5 CVE-2021-20297 A flaw was found in NetworkManager in versions before 1.30.0. Setting match.path and activating a profile crashes NetworkManager. The highest threat … Openshift Container Platform 1.30.0+ Fix from $1,6002021-05-26 HIGH 7.5 CVE-2021-22699 Improper Input Validation vulnerability exists in Modicon M241/M251 logic controllers firmware prior to V5.1.9.1 that could cause denial of service w… Modicon M241 Firmware 5.1.9.1+ Fix from $1,9502021-05-26 CRITICAL 9.8 CVE-2021-21985 KEVEPSS 100% The vSphere Client (HTML5) contains a remote code execution vulnerability due to lack of input validation in the Virtual SAN Health Check plug-in whi… Vcenter Server 3.10.2.1 / 4.2.1+ Fix from $2,3002021-05-26 MEDIUM 5.5 CVE-2020-13602 Remote Denial of Service in LwM2M do_write_op_tlv. Zephyr versions >= 1.14.2, >= 2.2.0 contain Improper Input Validation (CWE-20), Loop with Unreacha… Zephyr after 2.2.0 Fix from $1,6002021-05-25 HIGH 7.5 CVE-2020-36332 A flaw was found in libwebp in versions before 1.0.1. When reading a file libwebp allocates an excessive amount of memory. The highest threat from th… Enterprise Linux 1.0.1+ Fix from $1,9502021-05-21 MEDIUM 5.3 CVE-2021-3531 A flaw was found in the Red Hat Ceph Storage RGW in versions before 14.2.21. When processing a GET Request for a swift URL that ends with two slashes… Ceph 14.2.21+ Fix from $1,6002021-05-18 MEDIUM 6.5 CVE-2021-3524 A flaw was found in the Red Hat Ceph Storage RadosGW (Ceph Object Gateway) in versions before 14.2.21. The vulnerability is related to the injection … Ceph 14.2.21+ Fix from $1,6002021-05-17 HIGH 7.1 CVE-2020-27833 A Zip Slip vulnerability was found in the oc binary in openshift-clients where an arbitrary file write is achieved by using a specially crafted raw c… Openshift Container Platform after 4.7 Fix from $1,9502021-05-14 MEDIUM 5.5 CVE-2021-29611 TensorFlow is an end-to-end open source platform for machine learning. Incomplete validation in `SparseReshape` results in a denial of service based … Tensorflow 2.1.4 / 2.2.3+ Fix from $1,6002021-05-14 MEDIUM 6.8 CVE-2021-23906 An issue was discovered in the Headunit NTG6 in the MBUX Infotainment System on Mercedes-Benz vehicles through 2021. A Message Length is not checked … Mercedes Benz User Experience after 2021 Fix from $1,6002021-05-13 MEDIUM 6.5 CVE-2020-25713 A malformed input file can lead to a segfault due to an out of bounds array access in raptor_xml_writer_start_element_common. Fedora Patch available Fix from $1,6002021-05-13 HIGH 7.8 CVE-2020-27823 A flaw was found in OpenJPEG’s encoder. This flaw allows an attacker to pass specially crafted x,y offset input to OpenJPEG to use during encoding. T… Fedora 2.4.0+ Fix from $1,9502021-05-13 MEDIUM 5.3 CVE-2020-12526 TwinCAT OPC UA Server in versions up to 2.3.0.12 and IPC Diagnostics UA Server in versions up to 3.1.0.1 from Beckhoff Automation GmbH & Co. KG are v… Ipc Diagnostics Ua Server after 3.3.18 Fix from $1,6002021-05-13 MEDIUM 5.5 CVE-2020-27824 A flaw was found in OpenJPEG’s encoder in the opj_dwt_calc_explicit_stepsizes() function. This flaw allows an attacker who can supply crafted input t… Enterprise Linux 2.4.0+ Fix from $1,6002021-05-13 MEDIUM 5.5 CVE-2021-22152 A Denial of Service due to Improper Input Validation vulnerability in the Management Console component of BlackBerry UEM version(s) 12.13.1 QF2 and e… Unified Endpoint Management after 12.12.0 Fix from $1,6002021-05-13 MEDIUM 6.5 CVE-2020-26143 An issue was discovered in the ALFA Windows 10 driver 1030.36.604 for AWUS036ACH. The WEP, WPA, WPA2, and WPA3 implementations accept fragmented plai… Awus036h Firmware Mitigation only Fix from $1,6002021-05-11 MEDIUM 6.5 CVE-2020-26144 An issue was discovered on Samsung Galaxy S3 i9305 4.4.4 devices. The WEP, WPA, WPA2, and WPA3 implementations accept plaintext A-MSDU frames as long… Galaxy I9305 Firmware 10.0.1-31 / 11.0.0-36+ Fix from $1,6002021-05-11 MEDIUM 6.5 CVE-2020-26145 An issue was discovered on Samsung Galaxy S3 i9305 4.4.4 devices. The WEP, WPA, WPA2, and WPA3 implementations accept second (or subsequent) broadcas… Galaxy I9305 Firmware 1.2+ Fix from $1,6002021-05-11 MEDIUM 5.3 CVE-2020-26146EPSS 6% An issue was discovered on Samsung Galaxy S3 i9305 4.4.4 devices. The WPA, WPA2, and WPA3 implementations reassemble fragments with non-consecutive p… Galaxy I9305 Firmware 10.0.1-31 / 11.0.0-36+ Fix from $1,6002021-05-11 HIGH 7.8 CVE-2021-31198 Microsoft Exchange Server Remote Code Execution Vulnerability Exchange Server Patch available Fix from $1,9502021-05-11 HIGH 7.8 CVE-2021-32471 Insufficient input validation in the Marvin Minsky 1967 implementation of the Universal Turing Machine allows program users to execute arbitrary code… Universal Turing Machine No fix yet Fix from $1,9502021-05-10 HIGH 7.5 CVE-2020-11268 Potential UE reset while decoding a crafted Sib1 or SIB1 that schedules unsupported SIBs and can lead to denial of service in Snapdragon Auto, Snapdr… Apq8009 Mitigation only Fix from $1,9502021-05-07 CRITICAL 9.8 CVE-2021-1468 Multiple vulnerabilities in Cisco SD-WAN vManage Software could allow an unauthenticated, remote attacker to execute arbitrary code or gain access to… Catalyst Sd Wan Manager 20.3.3 / 20.4.1+ Fix from $2,3002021-05-06 HIGH 8.8 CVE-2021-1505 Multiple vulnerabilities in Cisco SD-WAN vManage Software could allow an unauthenticated, remote attacker to execute arbitrary code or gain access to… Catalyst Sd Wan Manager 20.3.3 / 20.4.1+ Fix from $1,9502021-05-06 HIGH 7.2 CVE-2021-1506 Multiple vulnerabilities in Cisco SD-WAN vManage Software could allow an unauthenticated, remote attacker to execute arbitrary code or gain access to… Catalyst Sd Wan Manager 20.3.3 / 20.4.1+ Fix from $1,9502021-05-06 HIGH 8.8 CVE-2021-1508 Multiple vulnerabilities in Cisco SD-WAN vManage Software could allow an unauthenticated, remote attacker to execute arbitrary code or gain access to… Catalyst Sd Wan Manager 19.2.99 / 20.3.3+ Fix from $1,9502021-05-06 HIGH 7.5 CVE-2021-1513 A vulnerability in the vDaemon process of Cisco SD-WAN Software could allow an unauthenticated, remote attacker to cause a device to reload, resultin… Catalyst Sd Wan Manager 20.3.1 / 20.4.1+ Fix from $1,9502021-05-06 HIGH 7.8 CVE-2021-1514 A vulnerability in the CLI of Cisco SD-WAN Software could allow an authenticated, local attacker to inject arbitrary commands to be executed with Adm… Catalyst Sd Wan Manager 18.3 / 20.1.1+ Fix from $1,9502021-05-06 MEDIUM 5.5 CVE-2021-1519 A vulnerability in the interprocess communication (IPC) channel of Cisco AnyConnect Secure Mobility Client Software could allow an authenticated, loc… Anyconnect Secure Mobility Client 4.10.00093+ Fix from $1,6002021-05-06 HIGH 7.5 CVE-2021-1275 Multiple vulnerabilities in Cisco SD-WAN vManage Software could allow an unauthenticated, remote attacker to execute arbitrary code or gain access to… Catalyst Sd Wan Manager 20.3.3 / 20.4.1+ Fix from $1,9502021-05-06