Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper Input ValidationCWE-20 × clear
HIGH 7.2 CVE-2019-1936EPSS 39% A vulnerability in the web-based management interface of Cisco Integrated Management Controller (IMC) Supervisor, Cisco UCS Director, and Cisco UCS D… Integrated Management Controller Supervisor after 2.2.0.6 Fix from $1,9502019-08-21 MEDIUM 6.5 CVE-2019-1984 A vulnerability in Cisco Enterprise Network Functions Virtualization Infrastructure Software (NFVIS) could allow an authenticated, remote attacker wi… Enterprise Network Function Virtualization Infrastructure Sofware 3.12.1+ Fix from $1,6002019-08-21 MEDIUM 6.7 CVE-2019-1839 A vulnerability in Cisco Remote PHY Device Software could allow an authenticated, local attacker to execute commands on the underlying Linux shell of… Remote Phy 120 Firmware 1.2 / 3.1+ Fix from $1,6002019-08-21 MEDIUM 5.3 CVE-2016-10899 The total-security plugin before 3.4.1 for WordPress has a settings-change vulnerability. Total Security 3.4.1+ Fix from $1,6002019-08-21 MEDIUM 5.5 CVE-2019-2136 In Status::readFromParcel of Status.cpp, there is a possible out of bounds read due to improper input validation. This could lead to local informatio… Android Mitigation only Fix from $1,6002019-08-20 MEDIUM 6.7 CVE-2019-11140 Insufficient session validation in system firmware for Intel(R) NUC may allow a privileged user to potentially enable escalation of privilege, denial… Nuc Kit Firmware Patch available Fix from $1,6002019-08-19 CRITICAL 9.8 CVE-2018-20973 The companion-auto-update plugin before 3.2.1 for WordPress has local file inclusion. Companion Auto Update 3.2.1+ Fix from $2,3002019-08-16 HIGH 7.5 CVE-2017-18545 The invite-anyone plugin before 1.3.16 for WordPress has incorrect escaping of untrusted Dashboard and front-end input. Invite Anyone 1.3.16+ Fix from $1,9502019-08-16 CRITICAL 9.8 CVE-2019-7959EPSS 7% Creative Cloud Desktop Application versions 4.6.1 and earlier have a using components with known vulnerabilities vulnerability. Successful exploitati… Creative Cloud after 4.6.1 Fix from $2,3002019-08-16 CRITICAL 9.8 CVE-2019-9850 LibreOffice is typically bundled with LibreLogo, a programmable turtle vector graphics script, which can execute arbitrary python commands contained … Ubuntu Linux 6.2.6+ Fix from $2,3002019-08-15 CRITICAL 9.8 CVE-2019-9851EPSS 78% LibreOffice is typically bundled with LibreLogo, a programmable turtle vector graphics script, which can execute arbitrary python commands contained … Ubuntu Linux 6.2.6+ Fix from $2,3002019-08-15 CRITICAL 9.8 CVE-2018-14671 In ClickHouse before 18.10.3, unixODBC allowed loading arbitrary shared objects from the file system which led to a Remote Code Execution vulnerabili… Clickhouse 18.10.3+ Fix from $2,3002019-08-15 MEDIUM 5.8 CVE-2019-0723EPSS 5% A denial of service vulnerability exists when Microsoft Hyper-V Network Switch on a host server fails to properly validate input from a privileged us… Windows 10 Patch available Fix from $1,6002019-08-14 HIGH 7.6 CVE-2019-0965 A remote code execution vulnerability exists when Windows Hyper-V on a host server fails to properly validate input from an authenticated user on a g… Windows 10 Patch available Fix from $1,9502019-08-14 MEDIUM 5.8 CVE-2019-0714EPSS 5% A denial of service vulnerability exists when Microsoft Hyper-V Network Switch on a host server fails to properly validate input from a privileged us… Windows 10 Patch available Fix from $1,6002019-08-14 MEDIUM 5.8 CVE-2019-0715EPSS 5% A denial of service vulnerability exists when Microsoft Hyper-V Network Switch on a host server fails to properly validate input from a privileged us… Windows 10 Patch available Fix from $1,6002019-08-14 MEDIUM 5.8 CVE-2019-0717EPSS 5% A denial of service vulnerability exists when Microsoft Hyper-V Network Switch on a host server fails to properly validate input from a privileged us… Windows 10 Patch available Fix from $1,6002019-08-14 MEDIUM 5.8 CVE-2019-0718EPSS 5% A denial of service vulnerability exists when Microsoft Hyper-V Network Switch on a host server fails to properly validate input from a privileged us… Windows 10 Patch available Fix from $1,6002019-08-14 HIGH 8.0 CVE-2019-0720 A remote code execution vulnerability exists when Windows Hyper-V Network Switch on a host server fails to properly validate input from an authentica… Windows 10 Patch available Fix from $1,9502019-08-14 HIGH 7.8 CVE-2017-18509 An issue was discovered in net/ipv6/ip6mr.c in the Linux kernel before 4.11. By setting a specific socket option, an attacker can control a pointer i… Linux Kernel 3.16.72 / 4.4.187+ Fix from $1,9502019-08-13 CRITICAL 9.8 CVE-2019-1971 A vulnerability in the web portal of Cisco Enterprise NFV Infrastructure Software (NFVIS) could allow an unauthenticated, remote attacker to perform … Enterprise Network Function Virtualization Infrastructure after 3.8.1 Fix from $2,3002019-08-08 MEDIUM 5.8 CVE-2019-1951 A vulnerability in the packet filtering features of Cisco SD-WAN Solution could allow an unauthenticated, remote attacker to bypass L3 and L4 traffic… Sd Wan Firmware after 19.1.0 Fix from $1,6002019-08-08 MEDIUM 6.7 CVE-2019-1952 A vulnerability in the CLI of Cisco Enterprise NFV Infrastructure Software (NFVIS) could allow an authenticated, local attacker to overwrite or read … Enterprise Network Function Virtualization Infrastructure 3.10.1+ Fix from $1,6002019-08-08 MEDIUM 6.1 CVE-2019-1954 A vulnerability in the web-based management interface of Cisco Webex Meetings Server Software could allow an unauthenticated, remote attacker to redi… Webex Meetings Server 4.0+ Fix from $1,6002019-08-08 HIGH 7.5 CVE-2019-1955 A vulnerability in the Sender Policy Framework (SPF) functionality of Cisco AsyncOS Software for Cisco Email Security Appliances (ESA) could allow an… Email Security Appliance Firmware 4.0mr1+ Fix from $1,9502019-08-08 CRITICAL 9.8 CVE-2019-14771 Backdrop CMS 1.12.x before 1.12.8 and 1.13.x before 1.13.3 allows the upload of entire-site configuration archives through the user interface or comm… Backdrop Cms 1.12.8 / 1.13.3+ Fix from $2,3002019-08-08 HIGH 7.4 CVE-2019-1918 A vulnerability in the implementation of Intermediate System–to–Intermediate System (IS–IS) routing protocol functionality in Cisco… Ios Xr 6.6.3+ Fix from $1,9502019-08-07 HIGH 7.3 CVE-2019-1944 Multiple vulnerabilities in the smart tunnel functionality of Cisco Adaptive Security Appliance (ASA) could allow an authenticated, local attacker to… Adaptive Security Appliance Software 9.4.4.37+ Fix from $1,9502019-08-07 HIGH 7.8 CVE-2019-1945 Multiple vulnerabilities in the smart tunnel functionality of Cisco Adaptive Security Appliance (ASA) could allow an authenticated, local attacker to… Adaptive Security Appliance Software 9.4.4.37+ Fix from $1,9502019-08-07 HIGH 7.4 CVE-2019-1910 A vulnerability in the implementation of the Intermediate System–to–Intermediate System (IS–IS) routing protocol functionality in C… Ios Xr 6.6.3+ Fix from $1,9502019-08-07