Top technology
Linux 13140
Google 12537
Microsoft 12388
Oracle 7054
Apple 6692
Ibm 6393
Adobe 6390
Cisco 5759
Debian 3919
Mozilla 2901
Apache 2864
Redhat 2604
HIGH 9.3
CVE-2014-1818EPSS 20%
GDI+ in Microsoft Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Serv…
Windows 7
Patch available
MEDIUM 5.5
CVE-2014-3292
The Real Time Monitoring Tool (RTMT) implementation in Cisco Unified Communications Manager (Unified CM) allows remote authenticated users to (1) rea…
Unified Communications Manager
Mitigation only
MEDIUM 5.7
CVE-2014-3291
Cisco Wireless LAN Controller (WLC) devices allow remote attackers to cause a denial of service (NULL pointer dereference and device restart) via a z…
Wireless Lan Controller
Mitigation only
HIGH 7.5
CVE-2014-2508
EMC Documentum Content Server before 6.7 SP1 P28, 6.7 SP2 before P14, 7.0 before P15, and 7.1 before P05 allows remote authenticated users to conduct…
Documentum Content Server
after 6.7
HIGH 7.5
CVE-2014-2503
The thumbnail proxy server in EMC Documentum Digital Asset Manager (DAM) 6.5 SP3, 6.5 SP4, 6.5 SP5, and 6.5 SP6 before P13 allows remote attackers to…
Documentum Digital Asset Manager
No fix yet
HIGH 7.1
CVE-2014-2345
COPA-DATA zenon DNP3 NG driver (DNP3 master) 7.10 and 7.11 through 7.11 SP0 build 10238 and zenon DNP3 Process Gateway (DNP3 outstation) 7.11 SP0 bui…
Zenon Dnp3 Ng Driver
Mitigation only
MEDIUM 5.0
CVE-2014-3941
TYPO3 4.5.0 before 4.5.34, 4.7.0 before 4.7.19, 6.0.0 before 6.0.14, 6.1.0 before 6.1.9, and 6.2.0 before 6.2.3 allows remote attackers to have unspe…
TYPO3
Mitigation only
MEDIUM 5.0
CVE-2013-2014
OpenStack Identity (Keystone) before 2013.1 allows remote attackers to cause a denial of service (memory consumption and crash) via multiple long req…
Fedora
2013.1+
MEDIUM 5.0
CVE-2014-0095EPSS 8%
java/org/apache/coyote/ajp/AbstractAjpProcessor.java in Apache Tomcat 8.x before 8.0.4 allows remote attackers to cause a denial of service (thread c…
Tomcat
Patch available
MEDIUM 5.0
CVE-2014-2342
Triangle MicroWorks SCADA Data Gateway before 3.00.0635 allows remote attackers to cause a denial of service (excessive data processing) via a crafte…
Scada Data Gateway
after 3.00.0633
MEDIUM 5.0
CVE-2013-5919
Suricata before 1.4.6 allows remote attackers to cause a denial of service (crash) via a malformed SSL record.
Suricata
after 1.4.5
MEDIUM 5.0
CVE-2012-5572
CRLF injection vulnerability in the cookie method (lib/Dancer/Cookie.pm) in Dancer before 1.3114 allows remote attackers to inject arbitrary HTTP hea…
Dancer
after 1.3113
MEDIUM 5.8
CVE-2014-3283
Open redirect vulnerability in Self-Care Client Portal applications in the web framework in VOSS in Cisco Unified Communications Domain Manager (CDM)…
Unified Communications Domain Manager
after 9.0
MEDIUM 5.0
CVE-2014-3285
Cisco Wide Area Application Services (WAAS) 5.3(.5a) and earlier, when SharePoint acceleration is enabled, does not properly parse SharePoint respons…
Wide Area Application Services
after 5.3
MEDIUM 5.0
CVE-2014-0239EPSS 67%
The internal DNS server in Samba 4.x before 4.0.18 does not check the QR field in the header section of an incoming DNS message before sending a resp…
Samba
4.0.18 / 4.1.8+
MEDIUM 5.0
CVE-2013-2111
The IMAP functionality in Dovecot before 2.2.2 allows remote attackers to cause a denial of service (infinite loop and CPU consumption) via invalid A…
Dovecot
after 2.2.1
MEDIUM 5.0
CVE-2013-1883
Mantis Bug Tracker (aka MantisBT) 1.2.12 before 1.2.15 allows remote attackers to cause a denial of service (resource consumption) via a filter using…
Mantisbt
Patch available
MEDIUM 5.0
CVE-2013-3980
The Meeting Server in IBM Sametime 8.x through 8.5.2.1 and 9.x through 9.0.0.1 allows remote attackers to cause a denial of service (room unusability…
Sametime
Mitigation only
MEDIUM 6.0
CVE-2014-3272
The Agent in Cisco Tidal Enterprise Scheduler (TES) 6.1 and earlier allows local users to gain privileges via crafted Tidal Job Buffers (TJB) paramet…
Tidal Enterprise Scheduler
after 6.1
HIGH 7.1
CVE-2014-0943
IBM WebSphere Commerce 6.0 Feature Pack 2 through Feature Pack 5, 7.0.0.0 through 7.0.0.8, and 7.0 Feature Pack 1 through Feature Pack 7 allows remot…
Websphere Commerce
Mitigation only
MEDIUM 6.1
CVE-2014-3284
Cisco IOS XE on ASR1000 devices, when PPPoE termination is enabled, allows remote attackers to cause a denial of service (device reload) via a malfor…
Ios Xe
Mitigation only
MEDIUM 5.0
CVE-2014-1346
WebKit, as used in Apple Safari before 6.1.4 and 7.x before 7.0.4, does not properly interpret Unicode encoding, which allows remote attackers to spo…
Safari
after 6.1.3
HIGH 7.5
CVE-2014-3775
libgadu before 1.11.4 and 1.12.0 before 1.12.0-rc3, as used in Pidgin and other products, allows remote Gadu-Gadu file relay servers to cause a denia…
Libgadu
after 1.11.4
MEDIUM 6.8
CVE-2014-0954
IBM WebSphere Portal 6.1.0 through 6.1.0.6 CF27, 6.1.5 through 6.1.5.3 CF27, 7.0 through 7.0.0.2 CF28, and 8.0 before 8.0.0.1 CF12 does not validate …
Websphere Portal
Patch available
MEDIUM 6.8
CVE-2014-3802EPSS 11%
msdia.dll in Microsoft Debug Interface Access (DIA) SDK, as distributed in Microsoft Visual Studio before 2013, does not properly validate an unspeci…
Debug Interface Access Software Development Kit
after 2012
MEDIUM 5.8
CVE-2014-3739
Open redirect vulnerability in zport/acl_users/cookieAuthHelper/login_form in Zenoss 4.2.5 allows remote attackers to redirect users to arbitrary web…
Zenoss
No fix yet
MEDIUM 6.5
CVE-2013-4250
The (1) file upload component and (2) File Abstraction Layer (FAL) in TYPO3 6.0.x before 6.0.8 and 6.1.x before 6.1.3 do not properly check file exte…
TYPO3
Mitigation only
MEDIUM 5.0
CVE-2014-3268
Cisco IOS 15.2(4)M4 on Cisco Unified Border Element (CUBE) devices allows remote attackers to cause a denial of service (input-queue consumption and …
iOS
Mitigation only
MEDIUM 6.8
CVE-2014-3269
The SNMP module in Cisco IOS XE 3.5E allows remote authenticated users to cause a denial of service (device reload) by polling frequently, aka Bug ID…
Ios Xe
Mitigation only
MEDIUM 5.0
CVE-2014-3270
The DHCPv6 implementation in Cisco IOS XR allows remote attackers to cause a denial of service (process hang) via a malformed packet, aka Bug ID CSCu…
Ios Xr
Mitigation only