Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper Input ValidationCWE-20 × clear
MEDIUM 5.5 CVE-2024-25116 RedisBloom adds a set of probabilistic data structures to Redis. Starting in version 2.0.0 and prior to version 2.4.7 and 2.6.10, authenticated users… Patch available Fix from $1,6002024-04-09 MEDIUM 6.5 CVE-2024-31867 Improper Input Validation vulnerability in Apache Zeppelin. The attackers can execute malicious queries by setting improper configuration properties… Zeppelin 0.11.1+ Fix from $1,6002024-04-09 MEDIUM 6.8 CVE-2024-28897 Secure Boot Security Feature Bypass Vulnerability Windows 10 1507 10.0.10240.20596 / 10.0.14393.6897+ Fix from $1,6002024-04-09 MEDIUM 6.8 CVE-2024-26253 Windows rndismp6.sys Remote Code Execution Vulnerability Windows 10 1507 10.0.10240.20596 / 10.0.14393.6897+ Fix from $1,6002024-04-09 HIGH 8.0 CVE-2024-26240 Secure Boot Security Feature Bypass Vulnerability Windows 10 1507 10.0.10240.20596 / 10.0.14393.6897+ Fix from $1,9502024-04-09 HIGH 8.0 CVE-2024-26189 Secure Boot Security Feature Bypass Vulnerability Windows 10 1507 10.0.10240.20596 / 10.0.14393.6897+ Fix from $1,9502024-04-09 HIGH 8.1 CVE-2024-20670 Outlook for Windows Spoofing Vulnerability Outlook 1.2023.0322.0100+ Fix from $1,9502024-04-09 MEDIUM 6.5 CVE-2024-31865 Improper Input Validation vulnerability in Apache Zeppelin. The attackers can call updating cron API with invalid or improper privileges so that the… Zeppelin 0.11.1+ Fix from $1,6002024-04-09 MEDIUM 5.3 CVE-2022-47894 Improper Input Validation vulnerability in Apache Zeppelin SAP.This issue affects Apache Zeppelin SAP: from 0.8.0 before 0.11.0. As this project is … Zeppelin 0.11.0+ Fix from $1,6002024-04-09 MEDIUM 5.3 CVE-2024-31862 Improper Input Validation vulnerability in Apache Zeppelin when creating a new note from Zeppelin's UI.This issue affects Apache Zeppelin: from 0.10.… Zeppelin 0.11.0+ Fix from $1,6002024-04-09 MEDIUM 6.2 CVE-2023-52385 Out-of-bounds write vulnerability in the RSMC module. Impact: Successful exploitation of this vulnerability will affect availability. Emui No fix yet Fix from $1,6002024-04-08 HIGH 7.5 CVE-2024-27896 Input verification vulnerability in the log module. Impact: Successful exploitation of this vulnerability can affect integrity. Emui No fix yet Fix from $1,9502024-04-08 HIGH 7.5 CVE-2023-52552 Input verification vulnerability in the power module. Impact: Successful exploitation of this vulnerability will affect availability. Emui No fix yet Fix from $1,9502024-04-08 HIGH 7.5 CVE-2024-27912 A denial of service vulnerability was reported in some Lenovo Printers that could allow an attacker to cause the device to crash by sending crafted L… Mitigation only Fix from $1,9502024-04-05 HIGH 7.2 CVE-2024-31212 InstantCMS is a free and open source content management system. A SQL injection vulnerability affects instantcms v2.16.2 in which an attacker with ad… Instantcms No fix yet Fix from $1,9502024-04-04 MEDIUM 6.4 CVE-2024-29008 A problem has been identified in the CloudStack additional VM configuration (extraconfig) feature which can be misused by anyone who has privilege to… Cloudstack 4.18.1.1+ Fix from $1,6002024-04-04 MEDIUM 5.4 CVE-2024-20334 A vulnerability in the web-based management interface of Cisco TelePresence Management Suite (TMS) could allow a low-privileged, remote attacker to c… Telepresence Management Suite 15.13.7+ Fix from $1,6002024-04-03 MEDIUM 6.5 CVE-2024-27254 IBM Db2 for Linux, UNIX and Windows (includes DB2 Connect Server) 10.5, 11.1, and 11.5 federated server is vulnerable to denial of service with a spe… Db2 Mitigation only Fix from $1,6002024-04-03 MEDIUM 6.5 CVE-2024-22360 IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.5 is vulnerable to a denial of service with a specially crafted query on certain… Db2 Mitigation only Fix from $1,6002024-04-03 MEDIUM 6.5 CVE-2024-25046 IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.1 and 11.5 is vulnerable to a denial of service by an authenticated user using a… Db2 Mitigation only Fix from $1,6002024-04-03 MEDIUM 5.3 CVE-2023-52296 IBM DB2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.5 is vulnerable to denial of service when querying a specific UDF built-in funct… Db2 Mitigation only Fix from $1,6002024-04-03 HIGH 8.8 CVE-2024-29074 in OpenHarmony v3.2.4 and prior versions allow a local attacker arbitrary code execution in any apps through improper input. Openharmony after 3.2.4 Fix from $1,9502024-04-02 HIGH 7.5 CVE-2024-28226 in OpenHarmony v4.0.0 and prior versions allow a remote attacker cause DOS through improper input. Openharmony after 4.0 Fix from $1,9502024-04-02 CRITICAL 9.8 CVE-2024-21473 Memory corruption while redirecting log file to any file location with any file name. Ar8035 Firmware No fix yet Fix from $2,3002024-04-01 HIGH 7.5 CVE-2024-21452 Transient DOS while decoding an ASN.1 OER message containing a SEQUENCE of unknown extensions. C V2x 9150 Firmware Mitigation only Fix from $1,9502024-04-01 HIGH 7.5 CVE-2024-21453 Transient DOS while decoding message of size that exceeds the available system memory. C V2x 9150 Firmware No fix yet Fix from $1,9502024-04-01 HIGH 7.5 CVE-2023-33099 Transient DOS while processing SMS container of non-standard size received in DL NAS transport in NR. 315 5g Iot Modem Firmware Mitigation only Fix from $1,9502024-04-01 HIGH 7.5 CVE-2023-33100 Transient DOS while processing DL NAS Transport message when message ID is not defined in the 3GPP specification. Ar8035 Firmware Mitigation only Fix from $1,9502024-04-01 HIGH 8.1 CVE-2024-29946 In Splunk Enterprise versions below 9.2.1, 9.1.4, and 9.0.9, the Dashboard Examples Hub lacks protections for risky SPL commands. This could let atta… Splunk 9.0.9 / 9.1.4+ Fix from $1,9502024-03-27 HIGH 8.6 CVE-2024-20271 A vulnerability in the IP packet processing of Cisco Access Point (AP) Software could allow an unauthenticated, remote attacker to cause a denial of … Ios Xe 8.10.190.0 / 10.6.2.0+ Fix from $1,9502024-03-27