Top technology
Linux 13140
Google 12537
Microsoft 12388
Oracle 7054
Apple 6692
Ibm 6393
Adobe 6390
Cisco 5759
Debian 3919
Mozilla 2901
Apache 2864
Redhat 2604
MEDIUM 5.0
CVE-2013-4402EPSS 5%
The compressed packet parser in GnuPG 1.4.x before 1.4.15 and 2.0.x before 2.0.22 allows remote attackers to cause a denial of service (infinite recu…
Ubuntu Linux
Mitigation only
HIGH 7.5
CVE-2013-2186EPSS 13%
The DiskFileItem class in Apache Commons FileUpload, as used in Red Hat JBoss BRMS 5.3.1; JBoss Portal 4.3 CP07, 5.2.2, and 6.0.0; and Red Hat JBoss …
Jboss Enterprise Brms Platform
after 3.1
HIGH 7.8
CVE-2013-6016
The Traffic Management Microkernel (TMM) in F5 BIG-IP LTM, APM, ASM, Edge Gateway, GTM, Link Controller, and WOM 10.0.0 through 10.2.2 and 11.0.0; An…
Big Ip Global Traffic Manager
Mitigation only
MEDIUM 6.8
CVE-2011-4106EPSS 23%
TimThumb (timthumb.php) before 2.0 does not validate the entire source with the domain white list, which allows remote attackers to upload and execut…
Timthumb
after 1.99
HIGH 7.5
CVE-2013-6283EPSS 10%
VideoLAN VLC Media Player 2.0.8 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a lo…
Vlc Media Player
after 2.0.8
MEDIUM 5.0
CVE-2013-5536
Cisco Secure Access Control System (ACS) does not properly implement an incoming-packet firewall rule, which allows remote attackers to cause a denia…
Secure Access Control System
Mitigation only
HIGH 7.8
CVE-2013-5537
The web framework on Cisco Web Security Appliance (WSA), Email Security Appliance (ESA), and Content Security Management Appliance (SMA) devices does…
Web Security Appliance
Mitigation only
MEDIUM 6.8
CVE-2013-5168
Console in Apple Mac OS X before 10.9 allows user-assisted remote attackers to execute arbitrary applications by triggering a log entry with a crafte…
Mac Os X
after 10.8.5
MEDIUM 6.6
CVE-2013-5175
The kernel in Apple Mac OS X before 10.9 allows local users to obtain sensitive information or cause a denial of service (out-of-bounds read and syst…
Mac Os X
after 10.8.5
MEDIUM 5.8
CVE-2013-4390
Open redirect vulnerability in the AbstractAuthenticationFormServlet in the Auth Core (org.apache.sling.auth.core) bundle before 1.1.4 in Apache Slin…
Sling
after 1.1.2
MEDIUM 5.0
CVE-2013-4450EPSS 37%
The HTTP server in Node.js 0.10.x before 0.10.21 and 0.8.x before 0.8.26 allows remote attackers to cause a denial of service (memory and CPU consump…
Node.js
Patch available
HIGH 7.1
CVE-2013-5970
hostd-vmdb in VMware ESXi 4.0 through 5.0 and ESX 4.0 through 4.1 allows remote attackers to cause a denial of service (hostd-vmdb service outage) by…
Esx
Mitigation only
MEDIUM 5.8
CVE-2012-4117
The fabric-interconnect component in Cisco Unified Computing System (UCS) does not properly verify X.509 certificates, which allows man-in-the-middle…
Unified Computing System
Mitigation only
MEDIUM 5.4
CVE-2013-0500
IBM Storwize V7000 Unified 1.3.x and 1.4.x before 1.4.2.0 does not properly handle device files that are created with the NFS protocol but accessed w…
Storwize V7000 Unified Software
Mitigation only
MEDIUM 6.8
CVE-2013-5529
The deployment module in the server in Cisco WebEx Meeting Center does not properly validate the passphrase, which allows remote attackers to launch …
Webex Meetings Server
Mitigation only
MEDIUM 6.0
CVE-2013-5539
The upload-dialog implementation in Cisco Identity Services Engine (ISE) allows remote authenticated users to upload files with an arbitrary file typ…
Identity Services Engine Software
Mitigation only
MEDIUM 6.8
CVE-2012-4076
Cisco NX-OS allows local users to gain privileges and execute arbitrary commands via shell metacharacters in a command that calls the system library …
Nx Os
Mitigation only
HIGH 7.1
CVE-2013-5508
The SQL*Net inspection engine in Cisco Adaptive Security Appliance (ASA) Software 7.x before 7.2(5.12), 8.x before 8.2(5.44), 8.3.x before 8.3(2.39),…
Adaptive Security Appliance Software
Mitigation only
HIGH 7.8
CVE-2013-2787
Alstom e-terracontrol 3.5, 3.6, and 3.7 allows remote attackers to cause a denial of service (infinite loop) via crafted DNP3 packets.
E Terracontrol
Mitigation only
MEDIUM 5.0
CVE-2013-5532
Buffer overflow in the web-application interface on Cisco 9900 IP phones allows remote attackers to cause a denial of service (webapp interface outag…
Unified Ip Phones 9900 Series Firmware
Mitigation only
MEDIUM 6.0
CVE-2013-5533
The image-upgrade functionality on Cisco 9900 Unified IP phones allows local users to gain privileges by placing shell commands in an unspecified par…
Unified Ip Phones 9900 Series Firmware
Mitigation only
HIGH 7.1
CVE-2013-5526
Cisco 9900 fourth-generation IP phones do not properly perform SDP negotiation, which allows remote attackers to cause a denial of service (device re…
Unified Ip Phone 9951
Mitigation only
MEDIUM 5.7
CVE-2013-5527
The OSPF functionality in Cisco IOS and IOS XE allows remote attackers to cause a denial of service (device reload) via crafted options in an LSA typ…
iOS
Mitigation only
HIGH 7.5
CVE-2013-2138
The (1) uploadify and (2) flowplayer SWF files in Gallery 3 before 3.0.8 do not properly remove query parameters and fragments, which allows remote a…
Gallery
after 3.0.7
MEDIUM 6.8
CVE-2013-5576EPSS 48%
administrator/components/com_media/helpers/media.php in the media manager in Joomla! 2.5.x before 2.5.14 and 3.x before 3.1.5 allows remote authentic…
Joomla\!
Patch available
HIGH 7.8
CVE-2013-3860EPSS 31%
Microsoft .NET Framework 2.0 SP2, 3.5, 3.5 SP1, 3.5.1, 4, and 4.5 does not properly parse a DTD during XML digital-signature validation, which allows…
.net Framework
Mitigation only
HIGH 7.8
CVE-2013-3861EPSS 82%
Microsoft .NET Framework 2.0 SP2, 3.5, 3.5 SP1, 3.5.1, 4, and 4.5 allows remote attackers to cause a denial of service (application crash or hang) vi…
.net Framework
Mitigation only
MEDIUM 5.0
CVE-2012-4091
The RIP service engine in Cisco NX-OS allows remote attackers to cause a denial of service (engine restart) via a malformed (1) RIPv4 or (2) RIPv6 me…
Nx Os
Mitigation only
MEDIUM 5.0
CVE-2012-4098
The BGP implementation in Cisco NX-OS does not properly filter AS paths, which allows remote attackers to cause a denial of service (BGP service rese…
Nx Os
Mitigation only
MEDIUM 6.2
CVE-2012-4122
The CLI parser in Cisco NX-OS allows local users to bypass intended access restrictions, and overwrite or create arbitrary files, via shell output re…
Nx Os
Mitigation only