Vulnerability index

Browse CVEs

7,760 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Information ExposureCWE-200 × clear
Opendaylight MEDIUM 5.3
CVE-2015-1857

The odl-mdsal-apidocs feature in OpenDaylight Helium allow remote attackers to obtain sensitive information by leveraging missing AAA restrictions.

Fix: 0.2.4+
Fix from $1,600 2018-04-27
Debian Linux MEDIUM 5.6
CVE-2018-10472

An issue was discovered in Xen through 4.10.x allowing x86 HVM guest OS users (in certain configurations) to read arbitrary dom0 files via QMP live i…

Fix: after 4.10.1
Fix from $1,600 2018-04-27
Openstack MEDIUM 6.5
CVE-2016-9590

puppet-swift before versions 8.2.1, 9.4.4 is vulnerable to an information-disclosure in Red Hat OpenStack Platform director's installation of Object …

Fix: 8.2.1 / 9.4.4+
Fix from $1,600 2018-04-26
Enterprise Virtualization HIGH 7.2
CVE-2018-1074

ovirt-engine API and administration web portal before versions 4.2.2.5, 4.1.11.2 is vulnerable to an exposure of Power Management credentials, includ…

Fix: after 4.1.11.1
Fix from $1,950 2018-04-26
Identity Manager HIGH 7.5
CVE-2017-9284

IDM 4.6 Identity Applications prior to 4.6.2.1 may expose sensitive information.

Fix: 4.6.2.1+
Fix from $1,950 2018-04-26
Integrated Management Module Firmware MEDIUM 6.5
CVE-2014-0882

Integrated Management Module II (IMM2) on IBM Flex System, NeXtScale, System x3xxx, and System x iDataPlex systems might allow remote authenticated u…

Mitigation only
Fix from $1,600 2018-04-25
Ubuntu Linux MEDIUM 6.1
CVE-2018-1059

The DPDK vhost-user interface does not check to verify that all the requested guest physical range is mapped and contiguous when performing Guest Phy…

Mitigation only
Fix from $1,600 2018-04-24
Quantum Bacnet Integration Firmware HIGH 7.5
CVE-2018-8880EPSS 14%

Lutron Quantum BACnet Integration 2.0 (firmware 3.2.243) doesn't check for correct user authentication before showing the /deviceIP information, whic…

No fix yet
Fix from $1,950 2018-04-23
Sterling B2b Integrator MEDIUM 5.3
CVE-2014-0912

IBM Sterling B2B Integrator 5.1 and 5.2 and Sterling File Gateway 2.1 and 2.2 allow remote attackers to obtain sensitive product information via vect…

Patch available
Fix from $1,600 2018-04-20
Infosphere Biginsights MEDIUM 6.5
CVE-2014-4782

IBM InfoSphere BigInsights 2.1.2 allows remote authenticated users to discover SMTP server credentials via vectors related to the Alert management se…

Patch available
Fix from $1,600 2018-04-20
Security Identity Manager MEDIUM 5.9
CVE-2014-6108

IBM Tivoli Identity Manager 5.1.x before 5.1.0.15-ISS-TIM-IF0057 and Security Identity Manager 6.0.x before 6.0.0.4-ISS-SIM-IF0001 and 7.0.x before 7…

Patch available
Fix from $1,600 2018-04-20
Security Identity Manager MEDIUM 5.3
CVE-2014-6109

IBM Tivoli Identity Manager 5.1.x before 5.1.0.15-ISS-TIM-IF0057 and Security Identity Manager 6.0.x before 6.0.0.4-ISS-SIM-IF0001 and 7.0.x before 7…

Patch available
Fix from $1,600 2018-04-20
Security Identity Manager MEDIUM 5.9
CVE-2014-6112

IBM Tivoli Identity Manager 5.1.x before 5.1.0.15-ISS-TIM-IF0057 and Security Identity Manager 6.0.x before 6.0.0.4-ISS-SIM-IF0001 and 7.0.x before 7…

Patch available
Fix from $1,600 2018-04-20
Awstats MEDIUM 5.3
CVE-2018-10245

A Full Path Disclosure vulnerability in AWStats through 7.6 allows remote attackers to know where the config file is allocated, obtaining the full pa…

Fix: after 7.6
Fix from $1,600 2018-04-20
Unified Communications Manager MEDIUM 6.5
CVE-2018-0267

A vulnerability in the web framework of Cisco Unified Communications Manager could allow an authenticated, local attacker to view sensitive data that…

Mitigation only
Fix from $1,600 2018-04-19
Lenovo Help HIGH 7.5
CVE-2017-3776

Lenovo Help Android mobile app versions earlier than 6.1.2.0327 allowed information to be transmitted over an HTTP channel, permitting others observi…

Fix: 6.1.2.0327+
Fix from $1,950 2018-04-19
Baijiacms MEDIUM 5.3
CVE-2018-10219

baijiacms V3 has physical path leakage via an index.php?mod=mobile&name=member&do=index request.

Mitigation only
Fix from $1,600 2018-04-19
66074 Mge Network Management Card Transverse MEDIUM 5.3
CVE-2018-7244

An information disclosure vulnerability exists In Schneider Electric's 66074 MGE Network Management Card Transverse installed in MGE UPS and MGE STS.…

Mitigation only
Fix from $1,600 2018-04-18
Gemfire HIGH 7.5
CVE-2016-8220

Pivotal Gemfire for PCF, versions 1.6.x prior to 1.6.5.0 and 1.7.x prior to 1.7.1.0, contain an information disclosure vulnerability. The application…

Fix: 1.6.5.0 / 1.7.1.0+
Fix from $1,950 2018-04-18
Vipr Controller HIGH 8.0
CVE-2018-1240

Dell EMC ViPR Controller, versions after 3.0.0.38, contain an information exposure vulnerability in the VRRP. VRRP defaults to an insecure configurat…

Fix: 3.6.1.4+
Fix from $1,950 2018-04-18
Mdm9206 Firmware HIGH 7.5
CVE-2016-10437

In Android before 2018-04-05 or earlier security patch level on Qualcomm Small Cell SoC, Snapdragon Mobile, and Snapdragon Wear FSM9055, MDM9206, MDM…

Mitigation only
Fix from $1,950 2018-04-18
Mdm9206 Firmware HIGH 7.5
CVE-2016-10438

In Android before 2018-04-05 or earlier security patch level on Qualcomm Small Cell SoC, Snapdragon Mobile, and Snapdragon Wear FSM9055, IPQ4019, IPQ…

Mitigation only
Fix from $1,950 2018-04-18
Sd 425 Firmware HIGH 7.5
CVE-2016-10423

In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Automobile and Snapdragon Mobile SD 425, SD 430, SD 450, SD 625, …

Mitigation only
Fix from $1,950 2018-04-18
Sd 425 Firmware HIGH 7.5
CVE-2016-10428

In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Automobile and Snapdragon Mobile SD 425, SD 430, SD 450, SD 625, …

Mitigation only
Fix from $1,950 2018-04-18
Sd 425 Firmware CRITICAL 9.8
CVE-2016-10430

In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Automobile and Snapdragon Mobile SD 425, SD 430, SD 450, SD 625, …

Mitigation only
Fix from $2,300 2018-04-18
Mdm9650 Firmware HIGH 7.5
CVE-2016-10406

In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile MDM9650, SD 210/SD 212/SD 205, SD 410/12, SD 430, SD 450, …

Mitigation only
Fix from $1,950 2018-04-18
Mdm9206 Firmware HIGH 7.5
CVE-2015-9189

In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile and Snapdragon Wear IPQ4019, MDM9206, MDM9607, MDM9615, MD…

Mitigation only
Fix from $1,950 2018-04-18
Sd 427 Firmware HIGH 7.5
CVE-2015-9194

In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile SD 210/SD 212/SD 205, SD 400, SD 425, SD 427, SD 430, SD 4…

Mitigation only
Fix from $1,950 2018-04-18
Mdm9206 Firmware HIGH 7.5
CVE-2015-9176

In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Automobile, Snapdragon Mobile, and Snapdragon Wear MDM9206, MDM96…

Mitigation only
Fix from $1,950 2018-04-18
Mdm9206 Firmware HIGH 7.5
CVE-2015-9163

In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Automobile, Snapdragon Mobile, and Snapdragon Wear MDM9206, MDM96…

Mitigation only
Fix from $1,950 2018-04-18