Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper Input ValidationCWE-20 × clear
MEDIUM 5.3 CVE-2019-5303 There are two denial of service vulnerabilities on some Huawei smartphones. An attacker may send specially crafted TD-SCDMA messages from a rogue bas… Alp Al00b Firmware 9.1.0.300 / 9.1.0.302+ Fix from $1,6002020-04-27 MEDIUM 5.5 CVE-2020-1880 Huawei smartphone Lion-AL00C with versions earlier than 10.0.0.205(C00E202R7P2) have a denial of service vulnerability. An attacker crafted specially… Lion Al00c Firmware 10.0.0.205+ Fix from $1,6002020-04-27 MEDIUM 6.5 CVE-2017-18747 Certain NETGEAR devices are affected by incorrect configuration of security settings. This affects EX3700 before 1.0.0.64, EX3800 before 1.0.0.64, EX… Ex3700 Firmware 1.0.0.16 / 1.0.0.24+ Fix from $1,6002020-04-23 CRITICAL 9.8 CVE-2020-4415EPSS 8% IBM Spectrum Protect 7.1 and 8.1 server is vulnerable to a stack-based buffer overflow, caused by improper bounds checking. This could allow a remote… Spectrum Protect after 8.1.9.200 Fix from $2,3002020-04-23 HIGH 7.5 CVE-2020-12066 CServer::SendMsg in engine/server/server.cpp in Teeworlds 0.7.x before 0.7.5 allows remote attackers to shut down the server. Fedora 0.7.5+ Fix from $1,9502020-04-22 MEDIUM 6.5 CVE-2018-21122 Certain NETGEAR devices are affected by denial of service. This affects GS110EMX before 1.0.0.9, GS810EMX before 1.0.0.5, XS512EM before 1.0.0.6, and… Gs110emx Firmware 1.0.0.5 / 1.0.0.6+ Fix from $1,6002020-04-22 MEDIUM 6.5 CVE-2017-18763 Certain NETGEAR devices are affected by incorrect configuration of security settings. This affects JNR1010v2 before 1.1.0.42, JR6150 before 1.0.1.10,… Jnr1010 Firmware 1.0.0.18 / 1.0.0.30+ Fix from $1,6002020-04-22 HIGH 8.8 CVE-2018-21115 NETGEAR XR500 devices before 2.3.2.32 are affected by remote code execution by unauthenticated attackers. Xr500 Firmware 2.3.2.32+ Fix from $1,9502020-04-22 MEDIUM 5.5 CVE-2017-18778 Certain NETGEAR devices are affected by incorrect configuration of security settings. This affects D6220 before 1.0.0.28, D6400 before 1.0.0.60, D700… D6220 Firmware 1.0.0.28 / 1.0.0.38+ Fix from $1,6002020-04-22 MEDIUM 6.5 CVE-2018-21140 Certain NETGEAR devices are affected by incorrect configuration of security settings. This affects D3600 before 1.0.0.76 and D6000 before 1.0.0.76. D3600 Firmware 1.0.0.76+ Fix from $1,6002020-04-21 HIGH 7.5 CVE-2020-11008 Affected versions of Git have a vulnerability whereby Git can be tricked into sending private credentials to a host controlled by an attacker. This b… Git 2.17.5 / 2.18.4+ Fix from $1,9502020-04-21 MEDIUM 6.2 CVE-2017-18798 Certain NETGEAR devices are affected by incorrect configuration of security settings. This affects R6700v2 before 1.1.0.38, R6800 before 1.1.0.38, D7… R6700 Firmware 1.0.0.25 / 1.0.1.50+ Fix from $1,6002020-04-21 HIGH 7.5 CVE-2017-18799 Certain NETGEAR devices are affected by incorrect configuration of security settings. This affects R6200v2 before 1.0.3.14, R6250 before 1.0.4.8, R63… R6200 Firmware 1.0.0.30 / 1.0.0.56+ Fix from $1,9502020-04-21 MEDIUM 6.2 CVE-2017-18803 NETGEAR R7800 devices before 1.0.2.30 are affected by incorrect configuration of security settings. R7800 Firmware 1.0.2.30+ Fix from $1,6002020-04-21 MEDIUM 5.3 CVE-2020-11890 An issue was discovered in Joomla! before 3.9.17. Improper input validations in the usergroup table class could lead to a broken ACL configuration. Joomla\! 3.9.17+ Fix from $1,6002020-04-21 HIGH 8.1 CVE-2020-1757 A flaw was found in all undertow-2.x.x SP1 versions prior to undertow-2.0.30.SP1, all undertow-1.x.x and undertow-2.x.x versions prior to undertow-2.… Undertow 2.1.0+ Fix from $1,9502020-04-21 MEDIUM 6.2 CVE-2017-18840 Certain NETGEAR devices are affected by denial of service. This affects M4300-28G before 12.0.2.15, M4300-52G before 12.0.2.15, M4300-28G-POE+ before… M4300 28g Firmware 12.0.2.15+ Fix from $1,6002020-04-20 MEDIUM 6.1 CVE-2020-5728 OpenMRS 2.9 and prior copies "Referrer" header values into an html element named "redirectUrl" within many webpages (such as login.htm). There is ins… Openmrs after 2.9.0 Fix from $1,6002020-04-17 CRITICAL 9.8 CVE-2019-20778 An issue was discovered on LG mobile devices with Android OS 7.0, 7.1, 7.2, 8.0, 8.1, and 9.0 software. The Backup subsystem does not properly restri… Android Mitigation only Fix from $2,3002020-04-17 CRITICAL 9.8 CVE-2020-10211 A remote code execution vulnerability in UCB component of Mitel MiVoice Connect before 19.1 SP1 could allow an unauthenticated remote attacker to exe… Mivoice Connect 22.11.4900.0+ Fix from $2,3002020-04-17 MEDIUM 6.5 CVE-2020-11007 In Shopizer before version 2.11.0, using API or Controller based versions negative quantity is not adequately validated hence creating incorrect shop… Shopizer 2.11.0+ Fix from $1,6002020-04-16 CRITICAL 9.1 CVE-2020-3652 Possible buffer over-read issue in windows x86 wlan driver function while processing beacon or request frame due to lack of check of length of variab… Msm8998 Firmware Mitigation only Fix from $2,3002020-04-16 CRITICAL 9.1 CVE-2020-3653 Possible buffer over-read in windows wlan driver function due to lack of check of length of variable received from userspace in Snapdragon Compute, S… Msm8998 Firmware Mitigation only Fix from $2,3002020-04-16 HIGH 7.5 CVE-2020-3262 A vulnerability in the Control and Provisioning of Wireless Access Points (CAPWAP) protocol handler of Cisco Wireless LAN Controller (WLC) Software c… 5508 Wireless Controller Firmware Mitigation only Fix from $1,9502020-04-15 HIGH 7.5 CVE-2020-3162 A vulnerability in the Constrained Application Protocol (CoAP) implementation of Cisco IoT Field Network Director could allow an unauthenticated remo… Iot Field Network Director 4.6.0+ Fix from $1,9502020-04-15 HIGH 7.8 CVE-2020-3194 A vulnerability in Cisco Webex Network Recording Player for Microsoft Windows and Cisco Webex Player for Microsoft Windows could allow an attacker to… Webex Network Recording Player 1.3.48 / 4.0+ Fix from $1,9502020-04-15 HIGH 8.8 CVE-2020-3239EPSS 74% Multiple vulnerabilities in the REST API of Cisco UCS Director and Cisco UCS Director Express for Big Data may allow a remote attacker to bypass auth… Ucs Director after 3.7.3.0 Fix from $1,9502020-04-15 HIGH 7.3 CVE-2020-3240EPSS 39% Multiple vulnerabilities in the REST API of Cisco UCS Director and Cisco UCS Director Express for Big Data may allow a remote attacker to bypass auth… Ucs Director after 3.7.3.0 Fix from $1,9502020-04-15 CRITICAL 9.8 CVE-2020-3243EPSS 88% Multiple vulnerabilities in the REST API of Cisco UCS Director and Cisco UCS Director Express for Big Data may allow a remote attacker to bypass auth… Ucs Director after 3.7.3.0 Fix from $2,3002020-04-15 CRITICAL 9.8 CVE-2020-3247EPSS 75% Multiple vulnerabilities in the REST API of Cisco UCS Director and Cisco UCS Director Express for Big Data may allow a remote attacker to bypass auth… Ucs Director after 3.7.3.0 Fix from $2,3002020-04-15