Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
HIGH 7.2
CVE-2019-1936EPSS 39%
A vulnerability in the web-based management interface of Cisco Integrated Management Controller (IMC) Supervisor, Cisco UCS Director, and Cisco UCS D…
Integrated Management Controller Supervisor
after 2.2.0.6
MEDIUM 6.5
CVE-2019-1984
A vulnerability in Cisco Enterprise Network Functions Virtualization Infrastructure Software (NFVIS) could allow an authenticated, remote attacker wi…
Enterprise Network Function Virtualization Infrastructure Sofware
3.12.1+
MEDIUM 6.7
CVE-2019-1839
A vulnerability in Cisco Remote PHY Device Software could allow an authenticated, local attacker to execute commands on the underlying Linux shell of…
Remote Phy 120 Firmware
1.2 / 3.1+
MEDIUM 5.3
CVE-2016-10899
The total-security plugin before 3.4.1 for WordPress has a settings-change vulnerability.
Total Security
3.4.1+
MEDIUM 5.5
CVE-2019-2136
In Status::readFromParcel of Status.cpp, there is a possible out of bounds read due to improper input validation. This could lead to local informatio…
Android
Mitigation only
MEDIUM 6.7
CVE-2019-11140
Insufficient session validation in system firmware for Intel(R) NUC may allow a privileged user to potentially enable escalation of privilege, denial…
Nuc Kit Firmware
Patch available
CRITICAL 9.8
CVE-2018-20973
The companion-auto-update plugin before 3.2.1 for WordPress has local file inclusion.
Companion Auto Update
3.2.1+
HIGH 7.5
CVE-2017-18545
The invite-anyone plugin before 1.3.16 for WordPress has incorrect escaping of untrusted Dashboard and front-end input.
Invite Anyone
1.3.16+
CRITICAL 9.8
CVE-2019-7959EPSS 7%
Creative Cloud Desktop Application versions 4.6.1 and earlier have a using components with known vulnerabilities vulnerability. Successful exploitati…
Creative Cloud
after 4.6.1
CRITICAL 9.8
CVE-2019-9850
LibreOffice is typically bundled with LibreLogo, a programmable turtle vector graphics script, which can execute arbitrary python commands contained …
Ubuntu Linux
6.2.6+
CRITICAL 9.8
CVE-2019-9851EPSS 78%
LibreOffice is typically bundled with LibreLogo, a programmable turtle vector graphics script, which can execute arbitrary python commands contained …
Ubuntu Linux
6.2.6+
CRITICAL 9.8
CVE-2018-14671
In ClickHouse before 18.10.3, unixODBC allowed loading arbitrary shared objects from the file system which led to a Remote Code Execution vulnerabili…
Clickhouse
18.10.3+
MEDIUM 5.8
CVE-2019-0723EPSS 5%
A denial of service vulnerability exists when Microsoft Hyper-V Network Switch on a host server fails to properly validate input from a privileged us…
Windows 10
Patch available
HIGH 7.6
CVE-2019-0965
A remote code execution vulnerability exists when Windows Hyper-V on a host server fails to properly validate input from an authenticated user on a g…
Windows 10
Patch available
MEDIUM 5.8
CVE-2019-0714EPSS 5%
A denial of service vulnerability exists when Microsoft Hyper-V Network Switch on a host server fails to properly validate input from a privileged us…
Windows 10
Patch available
MEDIUM 5.8
CVE-2019-0715EPSS 5%
A denial of service vulnerability exists when Microsoft Hyper-V Network Switch on a host server fails to properly validate input from a privileged us…
Windows 10
Patch available
MEDIUM 5.8
CVE-2019-0717EPSS 5%
A denial of service vulnerability exists when Microsoft Hyper-V Network Switch on a host server fails to properly validate input from a privileged us…
Windows 10
Patch available
MEDIUM 5.8
CVE-2019-0718EPSS 5%
A denial of service vulnerability exists when Microsoft Hyper-V Network Switch on a host server fails to properly validate input from a privileged us…
Windows 10
Patch available
HIGH 8.0
CVE-2019-0720
A remote code execution vulnerability exists when Windows Hyper-V Network Switch on a host server fails to properly validate input from an authentica…
Windows 10
Patch available
HIGH 7.8
CVE-2017-18509
An issue was discovered in net/ipv6/ip6mr.c in the Linux kernel before 4.11. By setting a specific socket option, an attacker can control a pointer i…
Linux Kernel
3.16.72 / 4.4.187+
CRITICAL 9.8
CVE-2019-1971
A vulnerability in the web portal of Cisco Enterprise NFV Infrastructure Software (NFVIS) could allow an unauthenticated, remote attacker to perform …
Enterprise Network Function Virtualization Infrastructure
after 3.8.1
MEDIUM 5.8
CVE-2019-1951
A vulnerability in the packet filtering features of Cisco SD-WAN Solution could allow an unauthenticated, remote attacker to bypass L3 and L4 traffic…
Sd Wan Firmware
after 19.1.0
MEDIUM 6.7
CVE-2019-1952
A vulnerability in the CLI of Cisco Enterprise NFV Infrastructure Software (NFVIS) could allow an authenticated, local attacker to overwrite or read …
Enterprise Network Function Virtualization Infrastructure
3.10.1+
MEDIUM 6.1
CVE-2019-1954
A vulnerability in the web-based management interface of Cisco Webex Meetings Server Software could allow an unauthenticated, remote attacker to redi…
Webex Meetings Server
4.0+
HIGH 7.5
CVE-2019-1955
A vulnerability in the Sender Policy Framework (SPF) functionality of Cisco AsyncOS Software for Cisco Email Security Appliances (ESA) could allow an…
Email Security Appliance Firmware
4.0mr1+
CRITICAL 9.8
CVE-2019-14771
Backdrop CMS 1.12.x before 1.12.8 and 1.13.x before 1.13.3 allows the upload of entire-site configuration archives through the user interface or comm…
Backdrop Cms
1.12.8 / 1.13.3+
HIGH 7.4
CVE-2019-1918
A vulnerability in the implementation of Intermediate System–to–Intermediate System (IS–IS) routing protocol functionality in Cisco…
Ios Xr
6.6.3+
HIGH 7.3
CVE-2019-1944
Multiple vulnerabilities in the smart tunnel functionality of Cisco Adaptive Security Appliance (ASA) could allow an authenticated, local attacker to…
Adaptive Security Appliance Software
9.4.4.37+
HIGH 7.8
CVE-2019-1945
Multiple vulnerabilities in the smart tunnel functionality of Cisco Adaptive Security Appliance (ASA) could allow an authenticated, local attacker to…
Adaptive Security Appliance Software
9.4.4.37+
HIGH 7.4
CVE-2019-1910
A vulnerability in the implementation of the Intermediate System–to–Intermediate System (IS–IS) routing protocol functionality in C…
Ios Xr
6.6.3+