Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper Input ValidationCWE-20 × clear
MEDIUM 5.8 CVE-2020-3370 A vulnerability in URL filtering of Cisco Content Security Management Appliance (SMA) could allow an unauthenticated, remote attacker to bypass URL f… Email Security Appliance 13.0.1 / 13.5.1+ Fix from $1,6002020-07-16 HIGH 7.8 CVE-2020-3379 A vulnerability in Cisco SD-WAN Solution Software could allow an authenticated, local attacker to elevate privileges to Administrator on the underlyi… Sd Wan Firmware 18.3.0+ Fix from $1,9502020-07-16 CRITICAL 9.8 CVE-2020-3323EPSS 6% A vulnerability in the web-based management interface of Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers could allow an unauthenticate… Rv110w Wireless N Vpn Firewall Firmware 1.0.3.54 / 1.2.2.8+ Fix from $2,3002020-07-16 CRITICAL 9.8 CVE-2020-14503 Advantech iView, versions 5.6 and prior, has an improper input validation vulnerability. Successful exploitation of this vulnerability could allow an… Iview after 5.6 Fix from $2,3002020-07-15 CRITICAL 10.0 CVE-2020-1350 KEVEPSS 91% A remote code execution vulnerability exists in Windows Domain Name System servers when they fail to properly handle requests, aka 'Windows DNS Serve… Windows Server 2008 Patch available Fix from $2,3002020-07-14 HIGH 7.8 CVE-2020-1355 A remote code execution vulnerability exists when the Windows Font Driver Host improperly handles memory.An attacker who successfully exploited the v… Windows 10 Patch available Fix from $1,9502020-07-14 CRITICAL 9.8 CVE-2020-1025EPSS 6% An elevation of privilege vulnerability exists when Microsoft SharePoint Server and Skype for Business Server improperly handle OAuth token validatio… Lync Patch available Fix from $2,3002020-07-14 CRITICAL 9.0 CVE-2020-1032EPSS 5% A remote code execution vulnerability exists when Hyper-V RemoteFX vGPU on a host server fails to properly validate input from an authenticated user … Windows Server 2008 Patch available Fix from $2,3002020-07-14 CRITICAL 9.0 CVE-2020-1036EPSS 6% A remote code execution vulnerability exists when Hyper-V RemoteFX vGPU on a host server fails to properly validate input from an authenticated user … Windows Server 2008 Patch available Fix from $2,3002020-07-14 CRITICAL 9.0 CVE-2020-1040 KEVEPSS 7% A remote code execution vulnerability exists when Hyper-V RemoteFX vGPU on a host server fails to properly validate input from an authenticated user … Windows Server 2008 Patch available Fix from $2,3002020-07-14 CRITICAL 9.0 CVE-2020-1041EPSS 5% A remote code execution vulnerability exists when Hyper-V RemoteFX vGPU on a host server fails to properly validate input from an authenticated user … Windows Server 2008 Patch available Fix from $2,3002020-07-14 CRITICAL 9.0 CVE-2020-1042EPSS 6% A remote code execution vulnerability exists when Hyper-V RemoteFX vGPU on a host server fails to properly validate input from an authenticated user … Windows Server 2008 Patch available Fix from $2,3002020-07-14 CRITICAL 9.0 CVE-2020-1043EPSS 5% A remote code execution vulnerability exists when Hyper-V RemoteFX vGPU on a host server fails to properly validate input from an authenticated user … Windows Server 2008 Patch available Fix from $2,3002020-07-14 MEDIUM 5.3 CVE-2020-7588 A vulnerability has been identified in Opcenter Execution Discrete (All versions < V3.2), Opcenter Execution Foundation (All versions < V3.2), Opcent… Opcenter Execution Discrete 3.2 / 11.3+ Fix from $1,6002020-07-14 CRITICAL 10.0 CVE-2020-13753 The bubblewrap sandbox of WebKitGTK and WPE WebKit, prior to 2.28.3, failed to properly block access to CLONE_NEWUSER and the TIOCSTI ioctl. CLONE_NE… Fedora 2.28.3+ Fix from $2,3002020-07-14 MEDIUM 6.5 CVE-2020-8195 KEVEPSS 33% Improper input validation in Citrix ADC and Citrix Gateway versions before 13.0-58.30, 12.1-57.18, 12.0-63.21, 11.1-64.14 and 10.5-70.18 and Citrix S… Application Delivery Controller Firmware 1.0.0.137 / 10.2.7+ Fix from $1,6002020-07-10 HIGH 7.5 CVE-2020-8187 Improper input validation in Citrix ADC and Citrix Gateway versions before 11.1-63.9 and 12.0-62.10 allows unauthenticated users to perform a denial … Application Delivery Controller Firmware 11.1-63.9 / 12.0-62.10+ Fix from $1,9502020-07-10 MEDIUM 5.5 CVE-2020-9258 HUAWEI P30 smartphone with versions earlier than 10.1.0.135(C00E135R2P11) have an improper input verification vulnerability. An attribution in a modu… P30 Firmware 10.1.0.135+ Fix from $1,6002020-07-10 CRITICAL 9.8 CVE-2020-7814 RAONWIZ v2018.0.2.50 and eariler versions contains a vulnerability that could allow remote files to be downloaded and excuted by lack of validation t… Raon K Upload 2018.0.2.51+ Fix from $2,3002020-07-10 HIGH 7.5 CVE-2019-19415 The SIP module of some Huawei products have a denial of service (DoS) vulnerability. A remote attacker could exploit these three vulnerabilities by s… Ar120 S Firmware Mitigation only Fix from $1,9502020-07-08 HIGH 7.5 CVE-2019-19416 The SIP module of some Huawei products have a denial of service (DoS) vulnerability. A remote attacker could exploit these three vulnerabilities by s… Ar120 S Firmware Mitigation only Fix from $1,9502020-07-08 HIGH 7.5 CVE-2019-19417 The SIP module of some Huawei products have a denial of service (DoS) vulnerability. A remote attacker could exploit these three vulnerabilities by s… Ar120 S Firmware Mitigation only Fix from $1,9502020-07-08 MEDIUM 5.5 CVE-2020-15584 An issue was discovered on Samsung mobile devices with Q(10.0) software. Attackers can trigger an out-of-bounds access and device reset via a 4K wall… Android Mitigation only Fix from $1,6002020-07-07 CRITICAL 9.8 CVE-2020-15543 SolarWinds Serv-U FTP server before 15.2.1 does not validate an argument path. Serv U Ftp Server 15.2.1+ Fix from $2,3002020-07-05 HIGH 7.5 CVE-2020-15503 LibRaw before 0.20-RC1 lacks a thumbnail size range check. This affects decoders/unpack_thumb.cpp, postprocessing/mem_image.cpp, and utils/thumb_util… Fedora after 0.19.5 Fix from $1,9502020-07-02 CRITICAL 9.8 CVE-2020-7820 Nexacro14/17 ExtCommonApiV13 Library under 2019.9.6 version contain a vulnerability that could allow remote attacker to execute arbitrary code by set… Nexacro 14 2019.9.6+ Fix from $2,3002020-07-02 CRITICAL 9.8 CVE-2020-7821 Nexacro14/17 ExtCommonApiV13 Library under 2019.9.6 version contain a vulnerability that could allow remote attacker to execute arbitrary code by mod… Nexacro 14 2019.9.6+ Fix from $2,3002020-07-02 MEDIUM 6.5 CVE-2020-5238 The table extension in GitHub Flavored Markdown before version 0.29.0.gfm.1 takes O(n * n) time to parse certain inputs. An attacker could craft a ma… Fedora 0.29.0.gfm.1+ Fix from $1,6002020-07-01 MEDIUM 5.3 CVE-2020-6261 SAP Solution Manager (Trace Analysis), version 7.20, allows an attacker to perform a log injection into the trace file, due to Incomplete XML Validat… Solution Manager Mitigation only Fix from $1,6002020-07-01 HIGH 7.1 CVE-2020-5970 NVIDIA Virtual GPU Manager contains a vulnerability in the vGPU plugin, in which an input data size is not validated, which may lead to tampering or … Virtual Gpu Manager after 10.2 Fix from $1,9502020-06-30