Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper Input ValidationCWE-20 × clear
HIGH 7.5 CVE-2016-3980EPSS 7% The Java Startup Framework (aka jstart) in SAP JAVA AS 7.2 through 7.4 allows remote attackers to cause a denial of service (process crash) via a cra… Application Server Java after 7.4 Fix from $1,9502016-04-08 HIGH 7.5 CVE-2016-3979EPSS 6% Internet Communication Manager (aka ICMAN or ICM) in SAP JAVA AS 7.2 through 7.4 allows remote attackers to cause a denial of service (heap memory co… Java As No fix yet Fix from $1,9502016-04-08 HIGH 7.3 CVE-2016-2098EPSS 81% Action Pack in Ruby on Rails before 3.2.22.2, 4.x before 4.1.14.2, and 4.2.x before 4.2.5.2 allows remote attackers to execute arbitrary Ruby code by… Debian Linux after 3.2.22.1 Fix from $1,9502016-04-07 HIGH 8.8 CVE-2016-0792EPSS 83% Multiple unspecified API endpoints in Jenkins before 1.650 and LTS before 1.642.2 allow remote authenticated users to execute arbitrary code via seri… Jenkins after 1.649 Fix from $1,9502016-04-07 MEDIUM 6.1 CVE-2016-0789 CRLF injection vulnerability in the CLI command documentation in Jenkins before 1.650 and LTS before 1.642.2 allows remote attackers to inject arbitr… Jenkins after 1.649 Fix from $1,6002016-04-07 MEDIUM 5.5 CVE-2015-8305 Huawei Sophia-L10 smartphones with software before P7-L10C900B852 allow attackers to cause a denial of service (system panic) via a crafted applicati… P7 Firmware Mitigation only Fix from $1,6002016-04-07 MEDIUM 6.8 CVE-2016-1563 NetApp Clustered Data ONTAP 8.3.1 does not properly verify X.509 certificates from TLS servers, which allows man-in-the-middle attackers to spoof ser… Clustered Data Ontap Mitigation only Fix from $1,6002016-04-07 CRITICAL 9.8 CVE-2016-1291EPSS 7% Cisco Prime Infrastructure 1.2.0 through 2.2(2) and Cisco Evolved Programmable Network Manager (EPNM) 1.2 allow remote attackers to execute arbitrary… Evolved Programmable Network Manager Mitigation only Fix from $2,3002016-04-06 HIGH 7.5 CVE-2016-1345 Cisco FireSIGHT System Software 5.4.0 through 6.0.1 and ASA with FirePOWER Services 5.4.0 through 6.0.0.1 allow remote attackers to bypass malware pr… Asa With Firepower Services Mitigation only Fix from $1,9502016-04-01 HIGH 7.5 CVE-2016-1351 The Locator/ID Separation Protocol (LISP) implementation in Cisco IOS 15.1 and 15.2 and NX-OS 4.1 through 6.2 allows remote attackers to cause a deni… iOS Mitigation only Fix from $1,9502016-03-26 MEDIUM 5.5 CVE-2016-1752 The kernel in Apple iOS before 9.3, OS X before 10.11.4, tvOS before 9.2, and watchOS before 2.2 allows attackers to cause a denial of service via a … Iphone Os 2.2 / 9.2+ Fix from $1,6002016-03-24 HIGH 7.8 CVE-2016-1747 IOGraphics in Apple OS X before 10.11.4 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corru… Mac Os X after 10.11.3 Fix from $1,9502016-03-24 HIGH 7.8 CVE-2016-1746 IOGraphics in Apple OS X before 10.11.4 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corru… Mac Os X after 10.11.3 Fix from $1,9502016-03-24 HIGH 7.8 CVE-2016-1733 AppleRAID in Apple OS X before 10.11.4 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corrup… Mac Os X after 10.11.3 Fix from $1,9502016-03-24 HIGH 8.4 CVE-2015-7551 The Fiddle::Handle implementation in ext/fiddle/handle.c in Ruby before 2.0.0-p648, 2.1 before 2.1.8, and 2.2 before 2.2.4, as distributed in Apple O… Ruby after 10.11.3 Fix from $1,9502016-03-24 CRITICAL 9.8 CVE-2016-1998EPSS 7% HPE Service Manager (SM) 9.3x before 9.35 P4 and 9.4x before 9.41.P2 allows remote attackers to execute arbitrary commands via a crafted serialized J… Service Manager Patch available Fix from $2,3002016-03-22 CRITICAL 9.8 CVE-2016-1997EPSS 7% HPE Operations Orchestration 10.x before 10.51 and Operations Orchestration content before 1.7.0 allow remote attackers to execute arbitrary commands… Operations Orchestration after 1.5.3 Fix from $2,3002016-03-22 CRITICAL 9.8 CVE-2016-0815 The MPEG4Source::fragmentedRead function in MPEG4Extractor.cpp in libstagefright in mediaserver in Android 4.x before 4.4.4, 5.x before 5.1.1 LMY49H,… Android Mitigation only Fix from $2,3002016-03-12 MEDIUM 6.5 CVE-2016-1338 Cisco TelePresence Video Communication Server (VCS) X8.5.1 and X8.5.2 allows remote authenticated users to cause a denial of service (VoIP outage) vi… Telepresence Video Communication Server Software Mitigation only Fix from $1,6002016-03-12 MEDIUM 6.8 CVE-2016-2088EPSS 23% resolver.c in named in ISC BIND 9.10.x before 9.10.3-P4, when DNS cookies are enabled, allows remote attackers to cause a denial of service (INSIST a… Bind Mitigation only Fix from $1,6002016-03-09 MEDIUM 5.9 CVE-2016-2774EPSS 74% ISC DHCP 4.1.x before 4.1-ESV-R13 and 4.2.x and 4.3.x before 4.3.4 does not restrict the number of concurrent TCP sessions, which allows remote attac… Debian Linux Mitigation only Fix from $1,6002016-03-09 HIGH 8.4 CVE-2016-1008 Untrusted search path vulnerability in Adobe Reader and Acrobat before 11.0.15, Acrobat and Acrobat Reader DC Classic before 15.006.30121, and Acroba… Acrobat after 15.010.20059 Fix from $1,9502016-03-09 CRITICAL 9.8 CVE-2016-0132EPSS 22% Microsoft .NET Framework 2.0 SP2, 3.0 SP2, 3.5, 3.5.1, 4.5.2, 4.6, and 4.6.1 mishandles signature validation for unspecified elements of XML document… .net Framework Mitigation only Fix from $2,3002016-03-09 HIGH 8.8 CVE-2016-0121EPSS 41% The Adobe Type Manager Library in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Go… Windows 10 No fix yet Fix from $1,9502016-03-09 MEDIUM 6.5 CVE-2016-0120EPSS 39% The Adobe Type Manager Library in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Go… Windows 10 No fix yet Fix from $1,6002016-03-09 HIGH 7.8 CVE-2016-0118EPSS 34% The PDF library in Microsoft Windows 10 Gold and 1511 allows remote attackers to execute arbitrary code via a crafted PDF document, aka "Windows Remo… Windows 10 Mitigation only Fix from $1,9502016-03-09 HIGH 7.8 CVE-2016-0117EPSS 73% The PDF library in Microsoft Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, and Windows 10 Gold and 1511 allows remote attackers to ex… Windows 10 Mitigation only Fix from $1,9502016-03-09 HIGH 8.8 CVE-2016-0101EPSS 20% Microsoft Windows Server 2008 R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, and Windows 10 Gold and 1511 allow… Windows 10 Mitigation only Fix from $1,9502016-03-09 HIGH 8.8 CVE-2016-0098EPSS 20% Microsoft Windows Server 2008 R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, and Windows 10 allow remote attack… Windows 10 Mitigation only Fix from $1,9502016-03-09 HIGH 7.8 CVE-2016-0092EPSS 58% OLE in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, … Windows 10 Mitigation only Fix from $1,9502016-03-09