Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper Input ValidationCWE-20 × clear
MEDIUM 6.5 CVE-2020-16216 In IntelliVue patient monitors MX100, MX400-550, MX600, MX700, MX750, MX800, MX850, MP2-MP90, and IntelliVue X2 and X3 Versions N and prior, the pr… Patient Information Center Ix Mitigation only Fix from $1,6002020-09-11 MEDIUM 5.5 CVE-2020-9239 Huawei smartphones BLA-A09 versions 8.0.0.123(C212),versions earlier than 8.0.0.123(C567),versions earlier than 8.0.0.123(C797);BLA-TL00B versions ea… Bla A09 Firmware 8.0.0.123 / 8.0.0.163+ Fix from $1,6002020-09-11 MEDIUM 5.3 CVE-2020-15168 node-fetch before versions 2.6.1 and 3.0.0-beta.9 did not honor the size option after following a redirect, which means that when a content size was … Node Fetch 2.6.1+ Fix from $1,6002020-09-10 HIGH 7.0 CVE-2020-15170 apollo-adminservice before version 1.7.1 does not implement access controls. If users expose apollo-adminservice to internet(which is not recommended… Apollo 1.7.1+ Fix from $1,9502020-09-10 MEDIUM 6.1 CVE-2020-9743 AEM versions 6.5.5.0 (and below), 6.4.8.1 (and below), 6.3.3.8 (and below) and 6.2 SP1-CFP20 (and below) are affected by an HTML injection vulnerabil… Experience Manager after 6.5.5.0 Fix from $1,6002020-09-10 CRITICAL 9.8 CVE-2020-24074 The decode program in silk-v3-decoder Version:20160922 Build By kn007 does not strictly check data, resulting in a buffer overflow. Silk V3 Decoder Patch available Fix from $2,3002020-09-09 HIGH 7.1 CVE-2020-3617 u'Buffer over-read Issue in Q6 testbus framework due to diag packet length is not completely validated before accessing the field and leads to Inform… Kamorta Firmware Mitigation only Fix from $1,9502020-09-09 MEDIUM 5.5 CVE-2020-3621 u'Lack of check to ensure that the TX read index & RX write index that are read from shared memory are less than the FIFO size results into memory co… Apq8009 Firmware Mitigation only Fix from $1,6002020-09-08 HIGH 7.8 CVE-2020-3648 u'Possible out of bound write in DSP driver code due to lack of check of data received from user' in Snapdragon Auto, Snapdragon Compute, Snapdragon … Msm8909w Firmware Mitigation only Fix from $1,9502020-09-08 HIGH 7.5 CVE-2020-11118 u'Information exposure issues while processing IE header due to improper check of beacon IE frame' in Snapdragon Auto, Snapdragon Compute, Snapdragon… Apq8009 Firmware Mitigation only Fix from $1,9502020-09-08 HIGH 7.8 CVE-2019-14074 u'Heap overflow in diag command handler due to lack of check of packet length received from user' in Snapdragon Auto, Snapdragon Compute, Snapdragon … Apq8009 Firmware Mitigation only Fix from $1,9502020-09-08 MEDIUM 5.5 CVE-2020-15709 Versions of add-apt-repository before 0.98.9.2, 0.96.24.32.14, 0.96.20.10, and 0.92.37.8ubuntu0.1~esm1, printed a PPA (personal package archive) desc… Add Apt Repository 0.92.37.8ubuntu0.1 / 0.96.20.10+ Fix from $1,6002020-09-05 MEDIUM 5.3 CVE-2020-3546 A vulnerability in the web-based management interface of Cisco AsyncOS software for Cisco Email Security Appliance (ESA) could allow an unauthenticat… Asyncos after 13.5.1 Fix from $1,6002020-09-04 MEDIUM 6.8 CVE-2020-3453 Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV340 Series Routers could allow an authenticated, remote atta… Rv340w Firmware 1.0.03.19+ Fix from $1,6002020-09-04 HIGH 8.1 CVE-2020-3478 A vulnerability in the REST API of Cisco Enterprise NFV Infrastructure Software (NFVIS) could allow an authenticated, remote attacker to overwrite ce… Enterprise Network Function Virtualization Infrastructure after 4.1.2 Fix from $1,9502020-09-04 HIGH 8.8 CVE-2020-3495EPSS 62% A vulnerability in Cisco Jabber for Windows could allow an authenticated, remote attacker to execute arbitrary code. The vulnerability is due to impr… Jabber 12.1.3 / 12.5.2+ Fix from $1,9502020-09-04 MEDIUM 6.5 CVE-2020-3498 A vulnerability in Cisco Jabber software could allow an authenticated, remote attacker to gain access to sensitive information. The vulnerability is … Jabber 12.1.3 / 12.5.2+ Fix from $1,6002020-09-04 MEDIUM 5.3 CVE-2020-3542 A vulnerability in Cisco Webex Training could allow an authenticated, remote attacker to join a password-protected meeting without providing the meet… Webex Training 40.7.6+ Fix from $1,6002020-09-04 HIGH 7.5 CVE-2020-24940 An issue was discovered in Laravel before 6.18.34 and 7.x before 7.23.2. Unvalidated values are saved to the database in some situations in which tab… Laravel 6.18.34 / 7.23.2+ Fix from $1,9502020-09-04 HIGH 7.5 CVE-2020-1890 A URL validation issue in WhatsApp for Android prior to v2.20.11 and WhatsApp Business for Android prior to v2.20.2 could have caused the recipient o… Whatsapp 2.20.2 / 2.20.11+ Fix from $1,9502020-09-03 MEDIUM 5.5 CVE-2020-9235 Huawei smartphones HONOR 20 PRO Versions earlier than 10.1.0.230(C432E9R5P1),Versions earlier than 10.1.0.231(C10E3R3P2),Versions earlier than 10.1.0… Honor 20 Pro Firmware 10.1.0.160 / 10.1.0.212+ Fix from $1,6002020-09-03 HIGH 7.8 CVE-2020-7830 RAONWIZ v2018.0.2.50 and earlier versions contains a vulnerability that could allow remote files to be downloaded by lack of validation. Vulnerabilit… Raon Kupload after 2018.0.2.50 Fix from $1,9502020-09-02 HIGH 7.5 CVE-2020-5778 A flaw exists in Trading Technologies Messaging 7.1.28.3 (ttmd.exe) due to improper validation of user-supplied data when processing a type 8 message… Trading Technologies Messaging Mitigation only Fix from $1,9502020-09-02 CRITICAL 9.8 CVE-2020-4693 IBM Spectrum Protect Operations Center 7.1.0.000 through 7.1.10 and 8.1.0.000 through 8.1.9 may allow an attacker to execute arbitrary code on the sy… Spectrum Protect Operations Center after 8.1.9.000 Fix from $2,3002020-09-02 MEDIUM 5.3 CVE-2012-3338 IBM InfoSphere Guardium 8.0, 8.01, and 8.2 could allow a remote attacker to bypass security restrictions, caused by improper restrictions on the crea… Infosphere Guardium Mitigation only Fix from $1,6002020-09-01 MEDIUM 5.5 CVE-2020-15704 The modprobe child process in the ./debian/patches/load_ppp_generic_if_needed patch file incorrectly handled module loading. A local non-root attacke… Ppp 2.4.5-5ubuntu1.4 / 2.4.5-5.1ubuntu2.3+ Fix from $1,6002020-09-01 HIGH 7.5 CVE-2020-25059 An issue was discovered on LG mobile devices with Android OS 7.2, 8.0, 8.1, 9, and 10 software. A service crash may occur because of incorrect input … Android Mitigation only Fix from $1,9502020-08-31 HIGH 7.5 CVE-2020-25063 An issue was discovered on LG mobile devices with Android OS 7.2, 8.0, 8.1, 9, and 10 software. An application crash can occur because of incorrect a… Android Mitigation only Fix from $1,9502020-08-31 HIGH 8.8 CVE-2020-7526 Improper Input Validation vulnerability exists in PowerChute Business Edition (software V9.0.x and earlier) which could cause remote code execution w… Powerchute 9.1+ Fix from $1,9502020-08-31 MEDIUM 6.8 CVE-2020-13465 The security protection in Gigadevice GD32F103 devices allows physical attackers to redirect the control flow and execute arbitrary code via the debu… Gd32f103 Firmware No fix yet Fix from $1,6002020-08-31