Vulnerability index

Browse CVEs

7,760 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Information ExposureCWE-200 × clear
Goodnex Premium Responsive HIGH 7.5
CVE-2015-9489

The ThemeMakers Goodnex Premium Responsive theme through 2015-05-15 for WordPress allows remote attackers to obtain sensitive information (such as us…

Fix: after 2015-05-15
Fix from $1,950 2019-10-11
Gamestheme Premium HIGH 7.5
CVE-2015-9490

The ThemeMakers GamesTheme Premium theme through 2015-05-15 for WordPress allows remote attackers to obtain sensitive information (such as user_login…

Fix: after 2015-05-15
Fix from $1,950 2019-10-11
Blessing Premium Responsive HIGH 7.5
CVE-2015-9491

The ThemeMakers Blessing Premium Responsive theme through 2015-05-15 for WordPress allows remote attackers to obtain sensitive information (such as u…

Fix: after 2015-05-15
Fix from $1,950 2019-10-11
Smartit Premium Responsive HIGH 7.5
CVE-2015-9492

The ThemeMakers SmartIT Premium Responsive theme through 2015-05-15 for WordPress allows remote attackers to obtain sensitive information (such as us…

Fix: after 2015-05-15
Fix from $1,950 2019-10-11
Diplomat \| Political HIGH 7.5
CVE-2015-9481

The ThemeMakers Diplomat | Political theme through 2015-05-15 for WordPress allows remote attackers to obtain sensitive information (such as user_log…

Fix: after 2015-05-15
Fix from $1,950 2019-10-11
Car Dealer \/ Auto Dealer Responsive HIGH 7.5
CVE-2015-9482

The ThemeMakers Car Dealer / Auto Dealer Responsive theme through 2015-05-15 for WordPress allows remote attackers to obtain sensitive information (s…

Fix: after 2015-05-15
Fix from $1,950 2019-10-11
Invento \/ Architecture Building Agency Template HIGH 7.5
CVE-2015-9483

The ThemeMakers Invento Responsive Gallery/Architecture Template component through 2015-05-15 for WordPress allows remote attackers to obtain sensiti…

Fix: after 2015-05-15
Fix from $1,950 2019-10-11
Accio One Page Parallax Responsive Theme HIGH 7.5
CVE-2015-9484

The ThemeMakers Accio One Page Parallax Responsive theme through 2015-05-15 for WordPress allows remote attackers to obtain sensitive information (su…

Fix: after 2015-05-15
Fix from $1,950 2019-10-11
Accio Responsive Onepage Parallax Site Template HIGH 7.5
CVE-2015-9485

The ThemeMakers Accio Responsive Parallax One Page Site Template component through 2015-05-15 for WordPress allows remote attackers to obtain sensiti…

Fix: after 2015-05-15
Fix from $1,950 2019-10-11
Open Enclave Software Development Kit MEDIUM 5.5
CVE-2019-1369

An information disclosure vulnerability exists when affected Open Enclave SDK versions improperly handle objects in memory, aka 'Open Enclave SDK Inf…

Fix: after 0.6.0
Fix from $1,600 2019-10-10
Windows 10 MEDIUM 5.5
CVE-2019-1337

An information disclosure vulnerability exists when Windows Update Client fails to properly handle objects in memory, aka 'Windows Update Client Info…

Patch available
Fix from $1,600 2019-10-10
Edge MEDIUM 6.5
CVE-2019-1356EPSS 6%

An information disclosure vulnerability exists when Microsoft Edge based on Edge HTML improperly handles objects in memory, aka 'Microsoft Edge based…

Patch available
Fix from $1,600 2019-10-10
Windows 10 MEDIUM 5.5
CVE-2019-1334

An information disclosure vulnerability exists when the Windows kernel improperly handles objects in memory, aka 'Windows Kernel Information Disclosu…

Patch available
Fix from $1,600 2019-10-10
Diris A 40 Firmware CRITICAL 9.8
CVE-2019-15859EPSS 31%

Password disclosure in the web interface on socomec DIRIS A-40 devices before 48250501 allows a remote attacker to get full access to a device via th…

Fix: 48250501+
Fix from $2,300 2019-10-09
Security Key Lifecycle Manager MEDIUM 5.3
CVE-2019-4514

IBM Security Key Lifecycle Manager 2.6, 2.7, 3.0, and 3.0.1 discloses sensitive information to unauthorized users. The information can be used to mou…

Fix: after 3.0.1.1
Fix from $1,600 2019-10-04
Android HIGH 7.5
CVE-2019-9424

In the Screen Lock, there is a possible information disclosure due to an unusual root cause. In certain circumstances, the setting to hide the unlock…

Mitigation only
Fix from $1,950 2019-09-27
Ckfinder MEDIUM 5.3
CVE-2019-15891

An issue was discovered in CKFinder through 2.6.2.1 and 3.x through 3.5.0. The documentation has misleading information that could lead to a conclusi…

Fix: after 3.5.0
Fix from $1,600 2019-09-26
Hbd3pr2 Firmware MEDIUM 5.3
CVE-2019-13523

In Honeywell Performance IP Cameras and Performance NVRs, the integrated web server of the affected devices could allow remote attackers to obtain we…

Mitigation only
Fix from $1,600 2019-09-26
Ios Xe HIGH 7.5
CVE-2019-12664

A vulnerability in the Dialer interface feature for ISDN connections in Cisco IOS XE Software for Cisco 4000 Series Integrated Services Routers (ISRs…

Mitigation only
Fix from $1,950 2019-09-25
Glpi HIGH 8.8
CVE-2019-14666

GLPI through 9.4.3 is prone to account takeover by abusing the ajax/autocompletion.php autocompletion feature. The lack of correct validation leads t…

Fix: after 9.4.3
Fix from $1,950 2019-09-25
Project Inheritance MEDIUM 6.5
CVE-2019-10407

Jenkins Project Inheritance Plugin 2.0.0 and earlier displayed a list of environment variables passed to a build without masking sensitive variables …

Fix: after 2.0.0
Fix from $1,600 2019-09-25
Home Assistant HIGH 7.5
CVE-2018-21019

Home Assistant before 0.67.0 was vulnerable to an information disclosure that allowed an unauthenticated attacker to read the application's error log…

Fix: 0.67.0+
Fix from $1,950 2019-09-23
Adas HIGH 7.5
CVE-2019-15085

An issue was discovered in PRiSE adAS 1.7.0. The current database password is embedded in the change password form.

Mitigation only
Fix from $1,950 2019-09-20
Archer MEDIUM 6.5
CVE-2019-3756

RSA Archer, versions prior to 6.6 P3 (6.6.0.3), contain an information disclosure vulnerability. Information relating to the backend database gets di…

Fix: 6.6.0.3+
Fix from $1,600 2019-09-18
Vcenter Server HIGH 7.7
CVE-2019-5534

VMware vCenter Server (6.7.x prior to 6.7 U3, 6.5 prior to 6.5 U3 and 6.0 prior to 6.0 U3j) contains an information disclosure vulnerability where Vi…

No fix yet
Fix from $1,950 2019-09-18
GitLab MEDIUM 5.3
CVE-2019-15738

An issue was discovered in GitLab Community and Enterprise Edition 12.0 through 12.2.1. Under certain conditions, merge request IDs were being disclo…

Fix: 12.0.8 / 12.1.8+
Fix from $1,600 2019-09-16
GitLab MEDIUM 5.3
CVE-2019-15740

An issue was discovered in GitLab Community and Enterprise Edition 7.9 through 12.2.1. EXIF Geolocation data was not being removed from certain image…

Fix: 12.0.8 / 12.1.8+
Fix from $1,600 2019-09-16
GitLab MEDIUM 5.3
CVE-2019-15727

An issue was discovered in GitLab Community and Enterprise Edition 11.2 through 12.2.1. Insufficient permission checks were being applied when displa…

Fix: 12.0.8 / 12.1.8+
Fix from $1,600 2019-09-16
Sea Tel Coastal 18 Firmware MEDIUM 5.3
CVE-2019-16320

Cobham Sea Tel v170 224521 through v194 225444 devices allow attackers to obtain potentially sensitive information, such as a vessel's latitude and l…

Fix: after 194_225444
Fix from $1,600 2019-09-15
Windows 10 MEDIUM 6.5
CVE-2019-1286EPSS 6%

An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its memory, aka 'Windows GDI Infor…

Patch available
Fix from $1,600 2019-09-11