Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper Input ValidationCWE-20 × clear
MEDIUM 6.9 CVE-2014-4973 The ESET Personal Firewall NDIS filter (EpFwNdis.sys) driver in the Firewall Module Build 1183 (20140214) and earlier in ESET Smart Security and ESET… Smart Security No fix yet Fix from $1,6002014-09-23 MEDIUM 5.0 CVE-2014-6429 The SnifferDecompress function in wiretap/ngsniffer.c in the DOS Sniffer file parser in Wireshark 1.10.x before 1.10.10 and 1.12.x before 1.12.1 does… Wireshark Mitigation only Fix from $1,6002014-09-20 MEDIUM 5.0 CVE-2014-6430 The SnifferDecompress function in wiretap/ngsniffer.c in the DOS Sniffer file parser in Wireshark 1.10.x before 1.10.10 and 1.12.x before 1.12.1 does… Wireshark Mitigation only Fix from $1,6002014-09-20 MEDIUM 6.1 CVE-2014-3379 Cisco IOS XR 5.1 and earlier on Network Convergence System 6000 devices allows remote attackers to cause a denial of service (NPU and card hang or re… Ios Xr Mitigation only Fix from $1,6002014-09-20 MEDIUM 5.0 CVE-2014-3376 Cisco IOS XR 5.1 and earlier allows remote attackers to cause a denial of service (process reload) via a malformed RSVP packet, aka Bug ID CSCuq12031. Ios Xr Mitigation only Fix from $1,6002014-09-20 MEDIUM 5.0 CVE-2014-3378 tacacsd in Cisco IOS XR 5.1 and earlier allows remote attackers to cause a denial of service (process reload) via a malformed TACACS+ packet, aka Bug… Ios Xr Mitigation only Fix from $1,6002014-09-20 MEDIUM 6.9 CVE-2014-4416 An unspecified integrated graphics driver routine in the Intel Graphics Driver subsystem in Apple OS X before 10.9.5 does not properly validate calls… Mac Os X Mitigation only Fix from $1,6002014-09-19 HIGH 9.3 CVE-2014-4390 Bluetooth in Apple OS X before 10.9.5 does not properly validate API calls, which allows attackers to execute arbitrary code in a privileged context … Mac Os X Mitigation only Fix from $1,9502014-09-19 MEDIUM 6.9 CVE-2014-4394 An unspecified integrated graphics driver routine in the Intel Graphics Driver subsystem in Apple OS X before 10.9.5 does not properly validate calls… Mac Os X Mitigation only Fix from $1,6002014-09-19 MEDIUM 6.9 CVE-2014-4395 An unspecified integrated graphics driver routine in the Intel Graphics Driver subsystem in Apple OS X before 10.9.5 does not properly validate calls… Mac Os X Mitigation only Fix from $1,6002014-09-19 MEDIUM 6.9 CVE-2014-4396 An unspecified integrated graphics driver routine in the Intel Graphics Driver subsystem in Apple OS X before 10.9.5 does not properly validate calls… Mac Os X Mitigation only Fix from $1,6002014-09-19 MEDIUM 6.9 CVE-2014-4397 An unspecified integrated graphics driver routine in the Intel Graphics Driver subsystem in Apple OS X before 10.9.5 does not properly validate calls… Mac Os X Mitigation only Fix from $1,6002014-09-19 MEDIUM 6.9 CVE-2014-4398 An unspecified integrated graphics driver routine in the Intel Graphics Driver subsystem in Apple OS X before 10.9.5 does not properly validate calls… Mac Os X Mitigation only Fix from $1,6002014-09-19 MEDIUM 6.9 CVE-2014-4399 An unspecified integrated graphics driver routine in the Intel Graphics Driver subsystem in Apple OS X before 10.9.5 does not properly validate calls… Mac Os X Mitigation only Fix from $1,6002014-09-19 MEDIUM 6.9 CVE-2014-4400 An unspecified integrated graphics driver routine in the Intel Graphics Driver subsystem in Apple OS X before 10.9.5 does not properly validate calls… Mac Os X Mitigation only Fix from $1,6002014-09-19 MEDIUM 6.9 CVE-2014-4401 An unspecified integrated graphics driver routine in the Intel Graphics Driver subsystem in Apple OS X before 10.9.5 does not properly validate calls… Mac Os X Mitigation only Fix from $1,6002014-09-19 HIGH 7.8 CVE-2014-4418 IOKit in Apple iOS before 8 and Apple TV before 7 does not properly validate IODataQueue object metadata, which allows attackers to execute arbitrary… Iphone Os after 7.1.2 Fix from $1,9502014-09-18 HIGH 7.8 CVE-2014-4388 IOKit in Apple iOS before 8 and Apple TV before 7 does not properly validate IODataQueue object metadata, which allows attackers to execute arbitrary… Mac Os X after 10.9.5 Fix from $1,9502014-09-18 MEDIUM 5.0 CVE-2014-3796 VMware NSX 6.0 before 6.0.6, and vCloud Networking and Security (vCNS) 5.1 before 5.1.4.2 and 5.5 before 5.5.3, does not properly validate input, whi… Nsx Patch available Fix from $1,6002014-09-15 MEDIUM 5.0 CVE-2014-3609EPSS 56% HttpHdrRange.cc in Squid 3.x before 3.3.12 and 3.4.x before 3.4.6 allows remote attackers to cause a denial of service (crash) via a request with cra… Squid Patch available Fix from $1,6002014-09-11 MEDIUM 6.5 CVE-2014-5460EPSS 71% Unrestricted file upload vulnerability in the Tribulant Slideshow Gallery plugin before 1.4.7 for WordPress allows remote authenticated users to exec… Tibulant Slideshow Gallery after 1.4.6 Fix from $1,6002014-09-11 MEDIUM 5.0 CVE-2014-3348 The SSH module in the Integrated Management Controller (IMC) before 2.3.1 in Cisco Unified Computing System on E-Series blade servers allows remote a… Integrated Management Controller after 2.2.2 Fix from $1,6002014-09-10 MEDIUM 5.0 CVE-2014-4068EPSS 20% The Response Group Service in Microsoft Lync Server 2010 and 2013 and the Core Components in Lync Server 2013 do not properly handle exceptions, whic… Lync Server Mitigation only Fix from $1,6002014-09-10 MEDIUM 6.8 CVE-2014-2957EPSS 5% The dmarc_process function in dmarc.c in Exim before 4.82.1, when EXPERIMENTAL_DMARC is enabled, allows remote attackers to execute arbitrary code vi… Exim after 4.82 Fix from $1,6002014-09-04 MEDIUM 6.6 CVE-2013-2598 app/aboot/aboot.c in the Little Kernel (LK) bootloader, as distributed with Qualcomm Innovation Center (QuIC) Android contributions for MSM devices a… Android Msm Mitigation only Fix from $1,6002014-08-31 MEDIUM 6.3 CVE-2014-3346 The web framework in Cisco Transport Gateway for Smart Call Home (aka TG-SCH or Transport Gateway Installation Software) does not validate an unspeci… Transport Gateway Installation Software Mitigation only Fix from $1,6002014-08-29 HIGH 7.1 CVE-2014-0761 The DNP3 driver in CG Automation ePAQ-9410 Substation Gateway allows remote attackers to cause a denial of service (infinite loop or process crash) v… Epaq 9410 Substation Gateway Mitigation only Fix from $1,9502014-08-28 MEDIUM 5.8 CVE-2014-0480 The core.urlresolvers.reverse function in Django before 1.4.14, 1.5.x before 1.5.9, 1.6.x before 1.6.6, and 1.7 before release candidate 3 does not p… Django Patch available Fix from $1,6002014-08-26 MEDIUM 5.0 CVE-2014-3589 PIL/IcnsImagePlugin.py in Python Imaging Library (PIL) and Pillow before 2.3.2 and 2.5.x before 2.5.2 allows remote attackers to cause a denial of se… Python Imaging after 2.3.1 Fix from $1,6002014-08-25 HIGH 8.5 CVE-2014-3338 The CTIManager module in Cisco Unified Communications Manager (CM) 10.0(1), when single sign-on is enabled, does not properly validate Kerberos SSO t… Unified Communications Manager Mitigation only Fix from $1,9502014-08-12