Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper Input ValidationCWE-20 × clear
MEDIUM 6.5 CVE-2020-15106 In etcd before versions 3.3.23 and 3.4.10, a large slice causes panic in decodeRecord method. The size of a record is stored in the length field of a… Fedora 3.3.23 / 3.4.10+ Fix from $1,6002020-08-05 MEDIUM 6.7 CVE-2020-8607 An input validation vulnerability found in multiple Trend Micro products utilizing a particular version of a specific rootkit protection driver could… Antivirus Toolkit 1.62.1240+ Fix from $1,6002020-08-05 MEDIUM 5.3 CVE-2020-15109 In solidus before versions 2.8.6, 2.9.6, and 2.10.2, there is an bility to change order address without triggering address validations. This vulnerab… Solidus 2.8.6 / 2.9.6+ Fix from $1,6002020-08-04 HIGH 7.8 CVE-2020-7822 DaviewIndy has a Heap-based overflow vulnerability, triggered when the user opens a malformed image file that is mishandled by Daview.exe. Attackers … Daviewindy after 8.98.7 Fix from $1,9502020-08-04 HIGH 7.8 CVE-2020-7823 DaviewIndy has a Memory corruption vulnerability, triggered when the user opens a malformed image file that is mishandled by Daview.exe. Attackers co… Daviewindy after 8.98.7 Fix from $1,9502020-08-04 HIGH 7.5 CVE-2020-5771 Improper Input Validation in Teltonika firmware TRB2_R_00.02.04.01 allows a remote, authenticated attacker to gain root privileges by uploading a mal… Trb245 Firmware No fix yet Fix from $1,9502020-08-03 CRITICAL 9.1 CVE-2020-16272 The SRP-6a implementation in Kee Vault KeePassRPC before 1.12.0 is missing validation for a client-provided parameter, which allows remote attackers … Keepassrpc 1.12.0+ Fix from $2,3002020-08-03 HIGH 8.8 CVE-2020-3383EPSS 7% A vulnerability in the archive utility of Cisco Data Center Network Manager (DCNM) could allow an authenticated, remote attacker to conduct directory… Data Center Network Manager 11.4+ Fix from $1,9502020-07-31 CRITICAL 9.8 CVE-2020-3375 A vulnerability in Cisco SD-WAN Solution Software could allow an unauthenticated, remote attacker to cause a buffer overflow on an affected device. T… Sd Wan 18.4.5 / 19.2.2+ Fix from $2,3002020-07-31 CRITICAL 9.8 CVE-2020-3698 Out of bound write while QoS DSCP mapping due to improper input validation for data received from association response frame in Snapdragon Auto, Snap… Apq8009 Firmware Patch available Fix from $2,3002020-07-30 HIGH 7.8 CVE-2019-14123 Possible buffer overflow and over read possible due to missing bounds checks for fixed limits if we consider widevine HLOS client as non-trustable in… Kamorta Firmware Mitigation only Fix from $1,9502020-07-30 CRITICAL 9.8 CVE-2020-15086 In TYPO3 installations with the "mediace" extension from version 7.6.2 and before version 7.6.5, it has been discovered that an internal verification… Mediace 7.6.5+ Fix from $2,3002020-07-29 HIGH 8.8 CVE-2020-15098 In TYPO3 CMS greater than or equal to 9.0.0 and less than 9.5.20, and greater than or equal to 10.0.0 and less than 10.4.6, it has been discovered th… TYPO3 9.5.20 / 10.4.6+ Fix from $1,9502020-07-29 HIGH 8.1 CVE-2020-15099 In TYPO3 CMS greater than or equal to 9.0.0 and less than 9.5.20, and greater than or equal to 10.0.0 and less than 10.4.6, in a case where an attack… TYPO3 9.5.20 / 10.4.6+ Fix from $1,9502020-07-29 HIGH 7.5 CVE-2020-7518 A CWE-20: Improper input validation vulnerability exists in Easergy Builder (Version 1.4.7.2 and older) which could allow an attacker to modify proje… Easergy Builder after 1.4.7.2 Fix from $1,9502020-07-23 HIGH 7.5 CVE-2020-10922 This vulnerability allows remote attackers to create a denial-of-service condition on affected installations of C-MORE HMI EA9 Firmware version 6.52 … C More Hmi Ea9 Firmware Mitigation only Fix from $1,9502020-07-23 HIGH 7.5 CVE-2020-3452 KEVEPSS 100% A vulnerability in the web services interface of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software c… Adaptive Security Appliance Software 6.2.3.16 / 6.3.0.6+ Fix from $1,9502020-07-22 HIGH 8.8 CVE-2020-6507EPSS 19% Out of bounds write in V8 in Google Chrome prior to 83.0.4103.106 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML… Chrome 83.0.4103.106+ Fix from $1,9502020-07-22 HIGH 7.5 CVE-2018-21036 Sails.js before v1.0.0-46 allows attackers to cause a denial of service with a single request because there is no error handler in sails-hook-sockets… Sails 1.0.0-46+ Fix from $1,9502020-07-21 HIGH 7.8 CVE-2020-12029EPSS 47% All versions of FactoryTalk View SE do not properly validate input of filenames within a project directory. A remote, unauthenticated attacker may be… Factorytalk View No fix yet Fix from $1,9502020-07-20 HIGH 7.8 CVE-2020-9254 HUAWEI P30 Pro smartphones with versions earlier than 10.1.0.123(C432E19R2P5patch02), versions earlier than 10.1.0.126(C10E11R5P1), and versions earl… P30 Pro Firmware 10.1.0.123 / 10.1.0.126+ Fix from $1,9502020-07-17 MEDIUM 5.5 CVE-2020-9255 Huawei Honor 10 smartphones with versions earlier than 10.0.0.178(C00E178R1P4) have a denial of service vulnerability. Certain service in the system … Honor 10 Firmware 10.0.0.178+ Fix from $1,6002020-07-17 HIGH 7.8 CVE-2020-7818 DaviewIndy 8.98.9 and earlier has a Heap-based overflow vulnerability, triggered when the user opens a malformed PDF file that is mishandled by Davie… Daviewindy after 8.98.9 Fix from $1,9502020-07-17 HIGH 7.5 CVE-2020-1640 An improper use of a validation framework when processing incoming genuine BGP packets within Juniper Networks RPD (routing protocols process) daemon… Junos Mitigation only Fix from $1,9502020-07-17 HIGH 7.5 CVE-2020-1644 On Juniper Networks Junos OS and Junos OS Evolved devices, the receipt of a specific BGP UPDATE packet causes an internal counter to be incremented i… Junos Mitigation only Fix from $1,9502020-07-17 MEDIUM 5.3 CVE-2020-5130 SonicOS SSLVPN LDAP login request allows remote attackers to cause external service interaction (DNS) due to improper validation of the request. This… Sonicos after 6.5.4.4-44n Fix from $1,6002020-07-17 HIGH 7.8 CVE-2020-5131 SonicWall NetExtender Windows client vulnerable to arbitrary file write vulnerability, this allows attacker to overwrite a DLL and execute code with … Netextender after 9.0.815 Fix from $1,9502020-07-17 HIGH 8.8 CVE-2020-3387EPSS 13% A vulnerability in Cisco SD-WAN vManage Software could allow an authenticated, remote attacker to execute code with root privileges on an affected sy… Sd Wan Firmware 19.2.3 / 20.1.1.1+ Fix from $1,9502020-07-16 CRITICAL 9.8 CVE-2020-3357 A vulnerability in the Secure Sockets Layer (SSL) VPN feature of Cisco Small Business RV340, RV340W, RV345, and RV345P Dual WAN Gigabit VPN Routers c… Rv340 Dual Wan Gigabit Vpn Router Firmware 1.0.03.18+ Fix from $2,3002020-07-16 HIGH 8.6 CVE-2020-3358 A vulnerability in the Secure Sockets Layer (SSL) VPN feature for Cisco Small Business RV VPN Routers could allow an unauthenticated, remote attacker… Rv340 Dual Wan Gigabit Vpn Router Firmware 1.0.03.18+ Fix from $1,9502020-07-16