Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper Input ValidationCWE-20 × clear
MEDIUM 6.5 CVE-2024-45537 Apache Druid allows users with certain permissions to read data from other database systems using JDBC. This functionality allows trusted users to se… Druid 30.0.1+ Fix from $1,6002024-09-17 MEDIUM 5.3 CVE-2024-45612 Contao is an Open Source CMS. In affected versions an untrusted user can inject insert tags into the canonical tag, which are then replaced on the we… Contao 4.13.49 / 5.3.15+ Fix from $1,6002024-09-17 CRITICAL 9.9 CVE-2024-45798 arduino-esp32 is an Arduino core for the ESP32, ESP32-S2, ESP32-S3, ESP32-C3, ESP32-C6 and ESP32-H2 microcontrollers. The `arduino-esp32` CI is vulne… Mitigation only Fix from $2,3002024-09-17 MEDIUM 5.7 CVE-2024-34545 Improper input validation in some Intel(R) RAID Web Console software all versions may allow an authenticated user to potentially enable information d… Raid Web Console Mitigation only Fix from $1,6002024-09-16 HIGH 7.5 CVE-2024-21829 Improper input validation in UEFI firmware error handler for some Intel(R) Processors may allow a privileged user to potentially enable escalation of… Mitigation only Fix from $1,9502024-09-16 HIGH 7.5 CVE-2024-21871 Improper input validation in UEFI firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via… Mitigation only Fix from $1,9502024-09-16 HIGH 7.2 CVE-2024-21781 Improper input validation in UEFI firmware for some Intel(R) Processors may allow a privileged user to enable information disclosure or denial of ser… Mitigation only Fix from $1,9502024-09-16 HIGH 7.8 CVE-2024-44094 In ppmp_protect_mfcfw_buf of code/drm_fw.c, there is a possible memory corruption due to improper input validation. This could lead to local escalati… Android Mitigation only Fix from $1,9502024-09-13 HIGH 7.5 CVE-2024-6077 A denial-of-service vulnerability exists in the Rockwell Automation affected products when specially crafted packets are sent to the CIP Security Obj… Compactlogix 5380 Firmware Mitigation only Fix from $1,9502024-09-12 MEDIUM 6.8 CVE-2024-6658 Improper Input Validation vulnerability of Authenticated User in Progress LoadMaster allows OS Command Injection.This issue affects:  Product … Multi Tenant Loadmaster 7.1.35.12 / 7.2.54.12+ Fix from $1,6002024-09-12 HIGH 7.5 CVE-2024-45825 CVE-2024-45825 IMPACT A denial-of-service vulnerability exists in the affected products. The vulnerability occurs when a malformed CIP packet is sent… 5015 U8ihft Firmware Mitigation only Fix from $1,9502024-09-12 HIGH 7.4 CVE-2024-20406 A vulnerability in the segment routing feature for the Intermediate System-to-Intermediate System (IS-IS) protocol of Cisco IOS XR Software could all… Ios Xr 7.0.0 / 7.11.2+ Fix from $1,9502024-09-11 CRITICAL 9.8 CVE-2024-43455 Windows Remote Desktop Licensing Service Spoofing Vulnerability Windows Server 2008 10.0.14393.7336 / 10.0.17763.6293+ Fix from $2,3002024-09-10 HIGH 7.8 CVE-2024-38245 Kernel Streaming Service Driver Elevation of Privilege Vulnerability Windows 10 1507 10.0.10240.20766 / 10.0.14393.7336+ Fix from $1,9502024-09-10 HIGH 7.8 CVE-2024-38241EPSS 6% Kernel Streaming Service Driver Elevation of Privilege Vulnerability Windows 10 1507 10.0.10240.20766 / 10.0.14393.7336+ Fix from $1,9502024-09-10 HIGH 7.8 CVE-2024-38243 Kernel Streaming Service Driver Elevation of Privilege Vulnerability Windows 10 1507 10.0.10240.20766 / 10.0.14393.7336+ Fix from $1,9502024-09-10 HIGH 7.8 CVE-2024-38244EPSS 6% Kernel Streaming Service Driver Elevation of Privilege Vulnerability Windows 10 1507 10.0.10240.20766 / 10.0.14393.7336+ Fix from $1,9502024-09-10 MEDIUM 6.5 CVE-2024-38234 Windows Networking Denial of Service Vulnerability Windows 10 1507 10.0.10240.20766 / 10.0.14393.7336+ Fix from $1,6002024-09-10 HIGH 7.5 CVE-2024-38230 Windows Standards-Based Storage Management Service Denial of Service Vulnerability Windows Server 2012 10.0.14393.7336 / 10.0.17763.6293+ Fix from $1,9502024-09-10 CRITICAL 9.9 CVE-2024-38194 An authenticated attacker can exploit an improper authorization vulnerability in Azure Web Apps to elevate privileges over a network. Azure Web Apps Patch available Fix from $2,3002024-09-10 CRITICAL 9.0 CVE-2024-38216 Azure Stack Hub Elevation of Privilege Vulnerability Azure Stack Hub 1.2311.1.22+ Fix from $2,3002024-09-10 HIGH 7.8 CVE-2024-38046 PowerShell Elevation of Privilege Vulnerability Windows 10 1507 10.0.10240.20766 / 10.0.14393.7336+ Fix from $1,9502024-09-10 HIGH 8.8 CVE-2024-37965 Microsoft SQL Server Elevation of Privilege Vulnerability Sql Server 2016 13.0.6445.1 / 13.0.7040.1+ Fix from $1,9502024-09-10 MEDIUM 6.0 CVE-2024-42424 Dell Precision Rack, 14G Intel BIOS versions prior to 2.22.2, contains an Improper Input Validation vulnerability. A high privileged attacker with lo… Precision 7920 Rack Firmware 2.22.1+ Fix from $1,6002024-09-10 MEDIUM 5.5 CVE-2024-27366 An issue was discovered in Samsung Mobile Processor, Wearable Processor Exynos Exynos 980, Exynos 850, Exynos 1080, Exynos 1280, Exynos 1380, Exynos … Exynos 980 Firmware Mitigation only Fix from $1,6002024-09-09 MEDIUM 5.7 CVE-2024-8445 The fix for CVE-2024-2199 in 389-ds-base was insufficient to cover all scenarios. In certain product versions, an authenticated user may cause a serv… Mitigation only Fix from $1,6002024-09-05 CRITICAL 9.8 CVE-2024-44808 An issue in Vypor Attack API System v.1.0 allows a remote attacker to execute arbitrary code via the user GET parameter. Mitigation only Fix from $2,3002024-09-04 MEDIUM 5.5 CVE-2024-45446 Access permission verification vulnerability in the camera driver module Impact: Successful exploitation of this vulnerability will affect availabili… Emui Mitigation only Fix from $1,6002024-09-04 MEDIUM 5.5 CVE-2024-45444 Access permission verification vulnerability in the WMS module Impact: Successful exploitation of this vulnerability may affect service confidentiali… Emui No fix yet Fix from $1,6002024-09-04 HIGH 7.5 CVE-2024-45441 Input verification vulnerability in the system service module Impact: Successful exploitation of this vulnerability will affect availability. Emui No fix yet Fix from $1,9502024-09-04