Top technology
Linux 13140
Google 12537
Microsoft 12388
Oracle 7054
Apple 6692
Ibm 6393
Adobe 6390
Cisco 5759
Debian 3919
Mozilla 2901
Apache 2864
Redhat 2604
MEDIUM 6.8
CVE-2012-4082
MCTools in the Cisco Management Controller in Cisco Unified Computing System (UCS) allows local users to gain privileges by entering crafted command-…
Unified Computing System
Mitigation only
HIGH 7.1
CVE-2013-5155
The Sandbox subsystem in Apple iOS before 7 allows attackers to cause a denial of service (infinite loop) via an application that writes crafted valu…
Iphone Os
after 6.1.4
HIGH 7.8
CVE-2013-5140
The kernel in Apple iOS before 7 allows remote attackers to cause a denial of service (assertion failure and device restart) via an invalid packet fr…
Iphone Os
after 6.1.4
MEDIUM 6.1
CVE-2011-2391
The IPv6 implementation in the kernel in Apple iOS before 7 allows remote attackers to cause a denial of service (CPU consumption) via crafted ICMPv6…
Mac Os X
after 12.1
MEDIUM 6.8
CVE-2013-1731
Untrusted search path vulnerability in the GL tracing functionality in Mozilla Firefox before 24.0 on Android allows attackers to execute arbitrary c…
Firefox
after 23.0.1
HIGH 9.3
CVE-2013-1735
Use-after-free vulnerability in the mozilla::layout::ScrollbarActivity function in Mozilla Firefox before 24.0, Firefox ESR 17.x before 17.0.9, Thund…
Firefox
after 23.0.1
MEDIUM 5.4
CVE-2013-5650
Junos Pulse Secure Access Service (IVE) 7.1 before 7.1r5, 7.2 before 7.2r10, 7.3 before 7.3r6, and 7.4 before 7.4r3 and Junos Pulse Access Control Se…
Junos Pulse Secure Access Service
Mitigation only
MEDIUM 5.0
CVE-2013-4123EPSS 80%
client_side_request.cc in Squid 3.2.x before 3.2.13 and 3.3.x before 3.3.8 allows remote attackers to cause a denial of service via a crafted port nu…
Squid
Patch available
MEDIUM 5.0
CVE-2013-4180
The (1) power and (2) ipmi_boot actions in the HostController in Foreman before 1.2.2 allow remote attackers to cause a denial of service (memory con…
Openstack
after 1.2.1
MEDIUM 5.8
CVE-2012-6087
repository/s3/S3.php in the Amazon S3 library in Moodle through 2.2.11, 2.3.x before 2.3.9, 2.4.x before 2.4.6, and 2.5.x before 2.5.2 does not verif…
Moodle
after 2.2.11
MEDIUM 6.3
CVE-2013-5496
Open Network Environment Platform (ONEP) in Cisco NX-OS allows remote authenticated users to cause a denial of service (network-element reload) via a…
Nx Os
Mitigation only
MEDIUM 5.8
CVE-2013-1028
The IPSec implementation in Apple Mac OS X before 10.8.5, when Hybrid Auth is used, does not verify X.509 certificates from security gateways, which …
Iphone Os
after 10.8.4
HIGH 10.0
CVE-2013-4811EPSS 71%
UpdateDomainControllerServlet in the SNAC registration server in HP ProCurve Manager (PCM) 3.20 and 4.0, PCM+ 3.20 and 4.0, and Identity Driven Manag…
Identity Driven Manager
Mitigation only
HIGH 10.0
CVE-2013-4812EPSS 52%
UpdateCertificatesServlet in the SNAC registration server in HP ProCurve Manager (PCM) 3.20 and 4.0, PCM+ 3.20 and 4.0, and Identity Driven Manager (…
Identity Driven Manager
Mitigation only
MEDIUM 6.2
CVE-2013-2888
Multiple array index errors in drivers/hid/hid-core.c in the Human Interface Device (HID) subsystem in the Linux kernel through 3.11 allow physically…
Linux Kernel
after 3.11
MEDIUM 6.8
CVE-2013-5493
The diagnostic module in the firmware on Cisco Virtualization Experience Client 6000 devices allows local users to bypass intended access restriction…
Virtualization Experience Client 6000
Mitigation only
HIGH 7.5
CVE-2013-4339EPSS 7%
WordPress before 3.6.1 does not properly validate URLs before use in an HTTP redirect, which allows remote attackers to bypass intended redirection r…
WordPress
after 3.6
MEDIUM 5.8
CVE-2013-3446
Open redirect vulnerability in the login page in Cisco Digital Media Manager (DMM) allows remote attackers to redirect users to arbitrary web sites a…
Digital Media Manager
Mitigation only
MEDIUM 5.0
CVE-2013-5488
Cisco Common Services, as used in Cisco Prime LAN Management Solution (LMS), Cisco Security Manager, Cisco Unified Service Monitor, and Cisco Unified…
Prime Lan Management Solution
Mitigation only
HIGH 10.0
CVE-2013-1330EPSS 27%
The default configuration of Microsoft SharePoint Portal Server 2003 SP3, SharePoint Server 2007 SP3 and 2010 SP1 and SP2, and Office Web Apps 2010 d…
Sharepoint Foundation
Mitigation only
MEDIUM 5.0
CVE-2013-3868EPSS 37%
Microsoft Active Directory Lightweight Directory Service (AD LDS) on Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, and Window…
Active Directory Lightweight Directory Service
Mitigation only
MEDIUM 5.0
CVE-2013-0081EPSS 77%
Microsoft SharePoint Portal Server 2003 SP3 and SharePoint Server 2007 SP3, 2010 SP1 and SP2, and 2013 do not properly process unassigned workflows, …
Sharepoint Foundation
Mitigation only
MEDIUM 5.0
CVE-2013-4283
ns-slapd in 389 Directory Server before 1.3.0.8 allows remote attackers to cause a denial of service (server crash) via a crafted Distinguished Name …
389 Directory Server
after 1.3.0.7
MEDIUM 5.0
CVE-2013-5642EPSS 12%
The SIP channel driver (channels/chan_sip.c) in Asterisk Open Source 1.8.x before 1.8.23.1, 10.x before 10.12.3, and 11.x before 11.5.1; Certified As…
Asterisk
Patch available
HIGH 10.0
CVE-2013-3608EPSS 6%
The web interface in the Intelligent Platform Management Interface (IPMI) implementation on Supermicro H8DC*, H8DG*, H8SCM-F, H8SGL-F, H8SM*, X7SP*, …
H8dcl 6f
Mitigation only
HIGH 10.0
CVE-2013-3609EPSS 5%
The web interface in the Intelligent Platform Management Interface (IPMI) implementation on Supermicro H8DC*, H8DG*, H8SCM-F, H8SGL-F, H8SM*, X7SP*, …
H8dcl 6f
Mitigation only
HIGH 9.3
CVE-2013-3599
userlogin.jsp in Coursemill Learning Management System (LMS) 6.6 and 6.8 allows remote attackers to gain privileges via a modified user-role value to…
Coursemill Learning Management System
Mitigation only
HIGH 8.5
CVE-2013-3600
Coursemill Learning Management System (LMS) 6.6 allows remote authenticated users to gain privileges via a modified userid value to unspecified funct…
Coursemill Learning Management System
Mitigation only
MEDIUM 5.8
CVE-2013-3277
Open redirect vulnerability in EMC RSA Archer GRC 5.x before 5.4 allows remote attackers to redirect users to arbitrary web sites and conduct phishin…
Rsa Archer Egrc
Mitigation only
MEDIUM 5.0
CVE-2013-5470
Cisco Secure Access Control System (ACS) does not properly handle requests to read from the TACACS+ socket, which allows remote attackers to cause a …
Secure Access Control System
Mitigation only