Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper Input ValidationCWE-20 × clear
HIGH 7.8 CVE-2021-1260 Multiple vulnerabilities in Cisco SD-WAN products could allow an authenticated attacker to perform command injection attacks against an affected devi… Sd Wan Firmware Mitigation only Fix from $1,9502021-01-20 HIGH 7.8 CVE-2021-1261 Multiple vulnerabilities in Cisco SD-WAN products could allow an authenticated attacker to perform command injection attacks against an affected devi… Sd Wan Firmware Mitigation only Fix from $1,9502021-01-20 HIGH 7.8 CVE-2021-1262 Multiple vulnerabilities in Cisco SD-WAN products could allow an authenticated attacker to perform command injection attacks against an affected devi… Sd Wan Firmware 19.2.4 / 20.1.2+ Fix from $1,9502021-01-20 MEDIUM 5.4 CVE-2021-1253 Multiple vulnerabilities in the web-based management interface of Cisco Data Center Network Manager (DCNM) could allow a remote attacker with network… Data Center Network Manager 11.5+ Fix from $1,6002021-01-20 HIGH 8.8 CVE-2021-0208 An improper input validation vulnerability in the Routing Protocol Daemon (RPD) service of Juniper Networks Junos OS allows an attacker to send a mal… Junos Mitigation only Fix from $1,9502021-01-15 HIGH 7.2 CVE-2021-1148 Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers could allow an authe… Rv110w Firmware Mitigation only Fix from $1,9502021-01-13 HIGH 7.2 CVE-2021-1149 Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers could allow an authe… Rv110w Firmware Mitigation only Fix from $1,9502021-01-13 HIGH 7.2 CVE-2021-1150 Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers could allow an authe… Rv110w Firmware Mitigation only Fix from $1,9502021-01-13 HIGH 7.2 CVE-2021-1146 Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers could allow an authe… Rv110w Firmware Mitigation only Fix from $1,9502021-01-13 HIGH 7.2 CVE-2021-1147 Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers could allow an authe… Rv110w Firmware Mitigation only Fix from $1,9502021-01-13 CRITICAL 9.1 CVE-2020-9139 There is a improper input validation vulnerability in some Huawei Smartphone.Successful exploit of this vulnerability can cause memory access errors … Emui Mitigation only Fix from $2,3002021-01-13 CRITICAL 9.8 CVE-2021-3028 git-big-picture before 1.0.0 mishandles ' characters in a branch name, leading to code execution. Git Big Picture 1.0.0+ Fix from $2,3002021-01-13 HIGH 7.5 CVE-2021-0313 In isWordBreakAfter of LayoutUtils.cpp, there is a possible way to slow or crash a TextView due to improper input validation. This could lead to remo… Android Patch available Fix from $1,9502021-01-11 MEDIUM 5.0 CVE-2021-0322 In onCreate of SlicePermissionActivity.java, there is a possible misleading string displayed due to improper input validation. This could lead to loc… Android Patch available Fix from $1,6002021-01-11 CRITICAL 9.8 CVE-2020-0471 In reassemble_and_dispatch of packet_fragmenter.cc, there is a possible way to inject packets into an encrypted Bluetooth connection due to improper … Android Patch available Fix from $2,3002021-01-11 MEDIUM 6.5 CVE-2020-16040EPSS 100% Insufficient data validation in V8 in Google Chrome prior to 87.0.4280.88 allowed a remote attacker to potentially exploit heap corruption via a craf… Chrome 87.0.4280.88+ Fix from $1,6002021-01-08 HIGH 8.8 CVE-2020-16015 Insufficient data validation in WASM in Google Chrome prior to 87.0.4280.66 allowed a remote attacker to potentially exploit heap corruption via a cr… Chrome 87.0.4280.66+ Fix from $1,9502021-01-08 HIGH 7.1 CVE-2021-1060 NVIDIA vGPU software contains a vulnerability in the guest kernel mode driver and vGPU plugin, in which an input index is not validated, which may le… Virtual Gpu Manager 8.6 / 11.3+ Fix from $1,9502021-01-08 HIGH 7.1 CVE-2021-1065 NVIDIA vGPU manager contains a vulnerability in the vGPU plugin, in which input data is not validated, which may lead to tampering of data or denial … Virtual Gpu Manager 8.6 / 11.3+ Fix from $1,9502021-01-08 MEDIUM 5.5 CVE-2021-1066 NVIDIA vGPU manager contains a vulnerability in the vGPU plugin, in which input data is not validated, which may lead to unexpected consumption of re… Virtual Gpu Manager 8.6 / 11.3+ Fix from $1,6002021-01-08 MEDIUM 5.5 CVE-2021-1053 NVIDIA GPU Display Driver for Windows and Linux, all versions, contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgkDdiEs… Gpu Driver 390.141 / 392.63+ Fix from $1,6002021-01-08 HIGH 7.8 CVE-2020-6656 Eaton's easySoft software v7.xx prior to v7.22 are susceptible to file parsing type confusion remote code execution vulnerability. A malicious entity… Easysoft 7.20+ Fix from $1,9502021-01-07 MEDIUM 6.5 CVE-2020-4896 IBM Emptoris Sourcing 10.1.0, 10.1.1, and 10.1.3 is vulnerable to web cache poisoning, caused by improper input validation by modifying HTTP request … Emptoris Sourcing 10.1.0.38 / 10.1.1.35+ Fix from $1,6002021-01-07 HIGH 7.8 CVE-2020-6655 The Eaton's easySoft software v7.xx prior to v7.22 are susceptible to Out-of-bounds remote code execution vulnerability. A malicious entity can execu… Easysoft 7.22+ Fix from $1,9502021-01-07 MEDIUM 5.3 CVE-2020-36175 The Ninja Forms plugin before 3.4.27.1 for WordPress allows attackers to bypass validation via the email field. Ninja Forms 3.4.27.1+ Fix from $1,6002021-01-06 HIGH 7.8 CVE-2020-27844 A flaw was found in openjpeg's src/lib/openjp2/t2.c in versions prior to 2.4.0. This flaw allows an attacker to provide crafted input to openjpeg dur… Debian Linux 2.4.0+ Fix from $1,9502021-01-05 HIGH 7.5 CVE-2020-25275 Dovecot before 2.3.13 has Improper Input Validation in lda, lmtp, and imap, leading to an application crash via a crafted email message with certain … Debian Linux 2.3.13+ Fix from $1,9502021-01-04 MEDIUM 5.5 CVE-2020-35493 A flaw exists in binutils in bfd/pef.c. An attacker who is able to submit a crafted PEF file to be parsed by objdump could cause a heap buffer overfl… Fedora 2.34+ Fix from $1,6002021-01-04 HIGH 8.8 CVE-2018-25002 uploader.php in the KCFinder integration project through 2018-06-01 for Drupal mishandles validation, aka SA-CONTRIB-2018-024. NOTE: This project is … Kcfinder after 2018-06-01 Fix from $1,9502021-01-01 CRITICAL 9.1 CVE-2018-19945 A vulnerability has been reported to affect earlier QNAP devices running QTS 4.3.4 to 4.3.6. Caused by improper limitations of a pathname to a restri… Qts 4.3.4.0899 / 4.3.6.0895+ Fix from $2,3002020-12-31