Vulnerability index

Browse CVEs

7,760 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Information ExposureCWE-200 × clear
Aquos Sh M02 Firmware HIGH 7.5
CVE-2020-5571

SHARP AQUOS series (AQUOS SH-M02 build number 01.00.05 and earlier, AQUOS SH-RM02 build number 01.00.04 and earlier, AQUOS mini SH-M03 build number 0…

Fix: after 03.00.04
Fix from $1,950 2020-04-23
Wac505 Firmware MEDIUM 6.5
CVE-2018-21129

Certain NETGEAR devices are affected by disclosure of sensitive information. This affects WAC505 before 5.0.0.17 and WAC510 before 5.0.0.17.

Fix: 5.0.0.17+
Fix from $1,600 2020-04-22
Ex3700 Firmware MEDIUM 6.5
CVE-2017-18752

Certain NETGEAR devices are affected by an attacker's ability to read arbitrary files. This affects EX3700 before 1.0.0.64, EX3800 before 1.0.0.64, E…

Fix: 1.0.0.16 / 1.0.0.32+
Fix from $1,600 2020-04-22
Dst6501 Firmware MEDIUM 6.5
CVE-2017-18766

Certain NETGEAR devices are affected by an attacker's ability to read arbitrary files. This affects DST6501 before 1.1.0.6 and WNR2000v2 before 1.2.0…

Fix: 1.1.0.6 / 1.2.0.8+
Fix from $1,600 2020-04-22
Teamcity HIGH 7.5
CVE-2020-11687

In JetBrains TeamCity before 2019.2.2, password values were shown in an unmasked format on several pages.

Fix: 2019.2.2+
Fix from $1,950 2020-04-22
R6250 Firmware MEDIUM 5.5
CVE-2017-18789

Certain NETGEAR devices are affected by disclosure of sensitive information. This affects R6250 before V1.0.4.8, R6400 before V1.0.1.22, R6400v2 befo…

Fix: 1.0.0.28 / 1.0.0.32+
Fix from $1,600 2020-04-22
Gs810emx Firmware MEDIUM 6.5
CVE-2018-21143

NETGEAR GS810EMX devices before 1.0.0.5 are affected by disclosure of sensitive information.

Fix: 1.0.0.5+
Fix from $1,600 2020-04-21
R6400 Firmware MEDIUM 6.2
CVE-2017-18797

Certain NETGEAR devices are affected by an attacker's ability to read arbitrary files. This affects R6400 before 1.0.1.24, R7900 before 1.0.1.18, R80…

Fix: 1.0.1.18 / 1.0.1.24+
Fix from $1,600 2020-04-21
R6700 Firmware MEDIUM 6.2
CVE-2017-18790

Certain NETGEAR devices are affected by disclosure of sensitive information. This affects R6700 before 1.0.1.26, R7000 before 1.0.9.10, R7100LG befor…

Fix: 1.0.0.32 / 1.0.1.18+
Fix from $1,600 2020-04-21
Ceph Storage HIGH 7.5
CVE-2020-1699

A path traversal flaw was found in the Ceph dashboard implemented in upstream versions v14.2.5, v14.2.6, v15.0.0 of Ceph storage and has been fixed i…

Mitigation only
Fix from $1,950 2020-04-21
Undertow HIGH 8.1
CVE-2020-1757

A flaw was found in all undertow-2.x.x SP1 versions prior to undertow-2.0.30.SP1, all undertow-1.x.x and undertow-2.x.x versions prior to undertow-2.…

Fix: 2.1.0+
Fix from $1,950 2020-04-21
R6400 Firmware MEDIUM 5.5
CVE-2017-18847

Certain NETGEAR devices are affected by an attacker's ability to read arbitrary files. This affects R6400v2 before 1.0.2.32, R7000P/R6900P before 1.0…

Fix: 1.0.0.56 / 1.0.1.18+
Fix from $1,600 2020-04-20
Mq MEDIUM 5.5
CVE-2020-4338

IBM MQ 9.1.4 could allow a local attacker to obtain sensitive information by inclusion of sensitive data within runmqras data. IBM X-Force ID: 177937.

Fix: 9.1.5+
Fix from $1,600 2020-04-16
Apq8009 Firmware MEDIUM 5.5
CVE-2019-10523

Target specific data is being sent to remote server and leads to information exposure in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT…

Mitigation only
Fix from $1,600 2020-04-16
Rax40 Firmware CRITICAL 9.8
CVE-2019-20646

NETGEAR RAX40 devices before 1.0.3.64 are affected by disclosure of administrative credentials.

Fix: 1.0.3.64+
Fix from $2,300 2020-04-15
Mr1100 Firmware MEDIUM 6.5
CVE-2019-20638

NETGEAR MR1100 devices before 12.06.08.00 are affected by disclosure of administrative credentials.

Fix: 12.06.08.00+
Fix from $1,600 2020-04-15
Dynamics 365 Business Central HIGH 7.5
CVE-2020-1018EPSS 6%

An information disclosure vulnerability exists when Microsoft Dynamics Business Central/NAV on-premise does not properly hide the value of a masked f…

Patch available
Fix from $1,950 2020-04-15
Research Javascript Cryptography Library CRITICAL 9.8
CVE-2020-1026

A Security Feature Bypass vulnerability exists in the MSR JavaScript Cryptography Library that is caused by multiple bugs in the library’s Elliptic…

Patch available
Fix from $2,300 2020-04-15
Husky Rtu 6049 E70 Firmware MEDIUM 5.3
CVE-2020-7801

The Synergy Systems & Solutions (SSS) HUSKY RTU 6049-E70, with firmware Versions 5.0 and prior, has an Exposure of Sensitive Information to an Unauth…

Fix: after 5.0
Fix from $1,600 2020-04-14
R1 2210 Firmware HIGH 7.5
CVE-2020-5330EPSS 13%

Dell EMC Networking X-Series firmware versions 3.0.1.2 and older, Dell EMC Networking PC5500 firmware versions 4.1.0.22 and older and Dell EMC PowerE…

Fix: after 4.1.0.22
Fix from $1,950 2020-04-10
Android HIGH 7.5
CVE-2015-9547

An issue was discovered on Samsung mobile devices with JBP(4.3) and KK(4.4.2) software. Because the READ_LOGS permission is mishandled, sensitive inf…

Mitigation only
Fix from $1,950 2020-04-10
Extplorer CRITICAL 9.8
CVE-2019-7305

Information Exposure vulnerability in eXtplorer makes the /usr/ and /etc/extplorer/ system directories world-accessible over HTTP. Introduced in the …

Fix: after 2.1.0
Fix from $2,300 2020-04-10
Ubuntu Linux MEDIUM 5.5
CVE-2020-8832

The fix for the Linux kernel in Ubuntu 18.04 LTS for CVE-2019-14615 ("The Linux kernel did not properly clear data structures on context switches for…

Mitigation only
Fix from $1,600 2020-04-10
Argo Cd MEDIUM 6.5
CVE-2018-21034

In Argo versions prior to v1.5.0-rc1, it was possible for authenticated Argo users to submit API calls to retrieve secrets and other manifests which …

Fix: after 1.4.2
Fix from $1,600 2020-04-09
Enterprise Linux MEDIUM 6.8
CVE-2020-2732

A flaw was discovered in the way that the KVM hypervisor handled instruction emulation for an L2 guest when nested virtualisation is enabled. Under s…

Patch available
Fix from $1,600 2020-04-08
Junos MEDIUM 5.3
CVE-2020-1628

Juniper Networks Junos OS uses the 128.0.0.0/2 subnet for internal communications between the RE and PFEs. It was discovered that packets utilizing t…

Mitigation only
Fix from $1,600 2020-04-08
GitLab HIGH 7.5
CVE-2020-10976

GitLab EE/CE 8.17 to 12.9 is vulnerable to information leakage when querying a merge request widget.

Fix: after 12.9
Fix from $1,950 2020-04-08
Android MEDIUM 5.3
CVE-2018-21067

An issue was discovered on Samsung mobile devices with M(6.0) software. There is an information disclosure in a Trustlet because an address is logged…

Mitigation only
Fix from $1,600 2020-04-08
Android HIGH 7.5
CVE-2018-21069

An issue was discovered on Samsung mobile devices with N(7.x) (MediaTek chipsets) software. There is information disclosure (of kernel stack memory) …

Mitigation only
Fix from $1,950 2020-04-08
Android HIGH 7.3
CVE-2018-21071

An issue was discovered on Samsung mobile devices with M(6.0) software. Because of an unprotected intent, an attacker can read arbitrary files and em…

Mitigation only
Fix from $1,950 2020-04-08