Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper Input ValidationCWE-20 × clear
CRITICAL 9.1 CVE-2018-13906 The HMAC authenticating the message from QSEE is vulnerable to timing side channel analysis leading to potentially forged application message in Snap… Ipq4019 Firmware Mitigation only Fix from $2,3002019-06-14 MEDIUM 6.7 CVE-2019-11123 Insufficient session validation in system firmware for Intel(R) NUC Kit may allow a privileged user to potentially enable escalation of privilege, de… Nuc Kit Firmware Patch available Fix from $1,6002019-06-13 MEDIUM 6.7 CVE-2019-11125 Insufficient input validation in system firmware for Intel(R) NUC Kit may allow a privileged user to potentially enable escalation of privilege, deni… Nuc Kit Firmware Patch available Fix from $1,6002019-06-13 MEDIUM 6.7 CVE-2019-11128 Insufficient input validation in system firmware for Intel(R) NUC Kit may allow a privileged user to potentially enable escalation of privilege, deni… Nuc Kit Firmware Patch available Fix from $1,6002019-06-13 MEDIUM 6.7 CVE-2018-12147 Insufficient input validation in HECI subsystem in Intel(R) CSME before version 11.21.55, Intel® Server Platform Services before version 4.0 and Inte… Converged Security Management Engine Firmware 4.0+ Fix from $1,6002019-06-13 MEDIUM 5.5 CVE-2019-0157 Insufficient input validation in the Intel(R) SGX driver for Linux may allow an authenticated user to potentially enable a denial of service via loca… Software Guard Extensions 1.1 / 2.5+ Fix from $1,6002019-06-13 HIGH 7.6 CVE-2019-0620 A remote code execution vulnerability exists when Windows Hyper-V on a host server fails to properly validate input from an authenticated user on a g… Windows 10 Patch available Fix from $1,9502019-06-12 HIGH 7.6 CVE-2019-0709 A remote code execution vulnerability exists when Windows Hyper-V on a host server fails to properly validate input from an authenticated user on a g… Windows 10 Patch available Fix from $1,9502019-06-12 MEDIUM 6.8 CVE-2019-0710 A denial of service vulnerability exists when Microsoft Hyper-V on a host server fails to properly validate input from a privileged user on a guest o… Windows 10 Patch available Fix from $1,6002019-06-12 MEDIUM 6.8 CVE-2019-0711 A denial of service vulnerability exists when Microsoft Hyper-V on a host server fails to properly validate input from a privileged user on a guest o… Windows 10 Patch available Fix from $1,6002019-06-12 MEDIUM 6.8 CVE-2019-0713 A denial of service vulnerability exists when Microsoft Hyper-V on a host server fails to properly validate input from a privileged user on a guest o… Windows 10 Patch available Fix from $1,6002019-06-12 HIGH 8.8 CVE-2019-0722 A remote code execution vulnerability exists when Windows Hyper-V on a host server fails to properly validate input from an authenticated user on a g… Windows 10 Patch available Fix from $1,9502019-06-12 HIGH 7.8 CVE-2019-0973 An elevation of privilege vulnerability exists in the Windows Installer when the Windows Installer fails to properly sanitize input leading to an ins… Windows 10 Patch available Fix from $1,9502019-06-12 HIGH 7.4 CVE-2019-3956 Dameware Remote Mini Control version 12.1.0.34 and prior contains an unauthenticated remote buffer over-read due to the server not properly validatin… Remote Mini Control after 12.1.0.34 Fix from $1,9502019-06-07 HIGH 7.4 CVE-2019-3957EPSS 26% Dameware Remote Mini Control version 12.1.0.34 and prior contains an unauthenticated remote buffer over-read due to the server not properly validatin… Dameware Mini Remote Control after 12.1.0.34 Fix from $1,9502019-06-07 MEDIUM 6.5 CVE-2018-9839 An issue was discovered in MantisBT through 1.3.14, and 2.0.0. Using a crafted request on bug_report_page.php (modifying the 'm_id' parameter), any u… Mantisbt after 1.3.14 Fix from $1,6002019-06-06 CRITICAL 9.1 CVE-2019-3723 Dell EMC OpenManage Server Administrator (OMSA) versions prior to 9.1.0.3 and prior to 9.2.0.4 contain a web parameter tampering vulnerability. A rem… Emc Openmanage Server Administrator Mitigation only Fix from $2,3002019-06-06 HIGH 8.6 CVE-2019-1845 A vulnerability in the authentication service of the Cisco Unified Communications Manager IM and Presence (Unified CM IM&P) Service, Cisco TelePr… Telepresence Video Communication Server Mitigation only Fix from $1,9502019-06-05 HIGH 7.2 CVE-2019-1861 A vulnerability in the software update feature of Cisco Industrial Network Director could allow an authenticated, remote attacker to execute arbitrar… Industrial Network Director 1.6.0+ Fix from $1,9502019-06-05 HIGH 8.8 CVE-2019-11968 A remote code execution vulnerability was identified in HPE Intelligent Management Center (IMC) PLAT earlier than version 7.3 E0506P09. Intelligent Management Center 7.3+ Fix from $1,9502019-06-05 HIGH 8.8 CVE-2019-11980 A remote code exection vulnerability was identified in HPE Intelligent Management Center (IMC) PLAT earlier than version 7.3 E0506P09. Intelligent Management Center 7.3+ Fix from $1,9502019-06-05 HIGH 8.8 CVE-2019-11967 A remote code execution vulnerability was identified in HPE Intelligent Management Center (IMC) PLAT earlier than version 7.3 E0506P09. Intelligent Management Center 7.3+ Fix from $1,9502019-06-05 HIGH 7.8 CVE-2017-6261 NVIDIA Vibrante Linux version 1.1, 2.0, and 2.2 contains a vulnerability in the user space driver in which protection mechanisms are insufficient, ma… Vibrante Linux No fix yet Fix from $1,9502019-06-05 HIGH 7.5 CVE-2019-5285 Some Huawei S series switches have a DoS vulnerability. An unauthenticated remote attacker can send crafted packets to the affected device to exploit… S12700 Firmware Mitigation only Fix from $1,9502019-06-04 MEDIUM 5.5 CVE-2019-5244 Mate 9 Pro Huawei smartphones earlier than LON-L29C 8.0.0.361(C636) versions have an information leak vulnerability due to the lack of input validati… Mate 9 Pro Fimware Mitigation only Fix from $1,6002019-06-04 HIGH 7.8 CVE-2019-5678 NVIDIA GeForce Experience versions prior to 3.19 contains a vulnerability in the Web Helper component, in which an attacker with local system access … Geforce Experience 3.19+ Fix from $1,9502019-05-31 MEDIUM 5.5 CVE-2019-9221 An issue was discovered in GitLab Community and Enterprise Edition before 11.6.10, 11.7.x before 11.7.6, and 11.8.x before 11.8.1. It has Incorrect A… GitLab 11.6.10 / 11.7.6+ Fix from $1,6002019-05-29 HIGH 7.8 CVE-2019-12439 bubblewrap.c in Bubblewrap before 0.3.3 misuses temporary directories in /tmp as a mount point. In some particular configurations (related to XDG_RUN… Bubblewrap 0.3.3+ Fix from $1,9502019-05-29 HIGH 7.8 CVE-2019-2250 Kernel can write to arbitrary memory address passed by user while freeing/stopping a thread in Snapdragon Compute, Snapdragon Consumer IOT, Snapdrago… Qcs605 Firmware Mitigation only Fix from $1,9502019-05-24 MEDIUM 6.5 CVE-2019-5799 Incorrect inheritance of a new document's policy in Content Security Policy in Google Chrome prior to 73.0.3683.75 allowed a remote attacker to bypas… Chrome 73.0.3683.75+ Fix from $1,6002019-05-23