Vulnerability index

Browse CVEs

7,760 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Information ExposureCWE-200 × clear
Remote Expert Manager MEDIUM 5.3
CVE-2017-6643

A vulnerability in the web interface of Cisco Remote Expert Manager Software 11.0.0 could allow an unauthenticated, remote attacker to access sensiti…

Mitigation only
Fix from $1,600 2017-05-22
Remote Expert Manager MEDIUM 5.3
CVE-2017-6644

A vulnerability in the web interface of Cisco Remote Expert Manager Software 11.0.0 could allow an unauthenticated, remote attacker to access sensiti…

Mitigation only
Fix from $1,600 2017-05-22
Remote Expert Manager MEDIUM 5.3
CVE-2017-6645

A vulnerability in the web interface of Cisco Remote Expert Manager Software 11.0.0 could allow an unauthenticated, remote attacker to access sensiti…

Mitigation only
Fix from $1,600 2017-05-22
Remote Expert Manager MEDIUM 5.3
CVE-2017-6646

A vulnerability in the web interface of Cisco Remote Expert Manager Software 11.0.0 could allow an unauthenticated, remote attacker to access sensiti…

Mitigation only
Fix from $1,600 2017-05-22
Remote Expert Manager MEDIUM 5.3
CVE-2017-6647

A vulnerability in the web interface of Cisco Remote Expert Manager Software 11.0.0 could allow an unauthenticated, remote attacker to access sensiti…

Mitigation only
Fix from $1,600 2017-05-22
Backhaul Radios HIGH 7.5
CVE-2017-9134

An information-leakage issue was discovered on Mimosa Client Radios before 2.2.3 and Mimosa Backhaul Radios before 2.2.3. There is a page in the web …

Fix: after 2.2.1
Fix from $1,950 2017-05-21
Jasypt HIGH 7.5
CVE-2014-9970

jasypt before 1.9.2 allows a timing attack against the password hash comparison.

Fix: after 1.9.1
Fix from $1,950 2017-05-21
Prime Collaboration Provisioning HIGH 7.5
CVE-2017-6621EPSS 6%

A vulnerability in the web interface of Cisco Prime Collaboration Provisioning could allow an unauthenticated, remote attacker to access sensitive da…

Mitigation only
Fix from $1,950 2017-05-18
Network Data Loss Prevention MEDIUM 5.3
CVE-2017-4013

Banner Disclosure in the server in McAfee Network Data Loss Prevention (NDLP) 9.3.x allows remote attackers to obtain product information via HTTP re…

Fix: after 9.3.0
Fix from $1,600 2017-05-17
Network Data Loss Prevention MEDIUM 5.3
CVE-2017-4016

Web Server method disclosure in the server in McAfee Network Data Loss Prevention (NDLP) 9.3.x allows remote attackers to exploit and find another ho…

Fix: after 9.3.0
Fix from $1,600 2017-05-17
Network Data Loss Prevention MEDIUM 5.3
CVE-2017-4017

User Name Disclosure in the server in McAfee Network Data Loss Prevention (NDLP) 9.3.x allows remote attackers to view user information via the appli…

Fix: after 9.3.0
Fix from $1,600 2017-05-17
Webex Meetings Server HIGH 7.5
CVE-2017-6651

A vulnerability in Cisco WebEx Meetings Server could allow unauthenticated, remote attackers to gain information that could allow them to access sche…

Mitigation only
Fix from $1,950 2017-05-16
Android MEDIUM 5.5
CVE-2015-9001

In TrustZone an information exposure vulnerability can potentially occur in all Android releases from CAF using the Linux kernel.

Patch available
Fix from $1,600 2017-05-16
Linux Kernel MEDIUM 5.5
CVE-2017-7495

fs/ext4/inode.c in the Linux kernel before 4.6.2, when ext4 data=ordered mode is used, mishandles a needs-flushing-before-commit list, which allows l…

Fix: after 4.6.1
Fix from $1,600 2017-05-15
Qpid Broker J HIGH 7.5
CVE-2016-8741EPSS 6%

The Apache Qpid Broker for Java can be configured to use different so called AuthenticationProviders to handle user authentication. Among the choices…

Mitigation only
Fix from $1,950 2017-05-15
Ambari MEDIUM 6.5
CVE-2017-5655

In Ambari 2.2.2 through 2.4.2 and Ambari 2.5.0, sensitive data may be stored on disk in temporary files on the Ambari Server host. The temporary file…

Mitigation only
Fix from $1,600 2017-05-15
PostgreSQL HIGH 7.5
CVE-2017-7484

It was found that some selectivity estimation functions in PostgreSQL before 9.2.21, 9.3.x before 9.3.17, 9.4.x before 9.4.12, 9.5.x before 9.5.7, an…

Fix: after 9.2.20
Fix from $1,950 2017-05-12
PostgreSQL HIGH 7.5
CVE-2017-7486EPSS 6%

PostgreSQL versions 8.4 - 9.6 are vulnerable to information leak in pg_user_mappings view which discloses foreign server passwords to any user having…

Mitigation only
Fix from $1,950 2017-05-12
Money Forward For Apppass MEDIUM 5.5
CVE-2016-4839

The Android Apps Money Forward (prior to v7.18.0), Money Forward for The Gunma Bank (prior to v1.2.0), Money Forward for SHIGA BANK (prior to v1.2.0)…

Fix: 1.2.0 / 1.3.0+
Fix from $1,600 2017-05-12
Linux Kernel MEDIUM 5.5
CVE-2017-0624

An information disclosure vulnerability in the Qualcomm Wi-Fi driver could enable a local malicious application to access data outside of its permiss…

Patch available
Fix from $1,600 2017-05-12
Android MEDIUM 5.5
CVE-2017-0625

An information disclosure vulnerability in the MediaTek command queue driver could enable a local malicious application to access data outside of its…

Fix: after 7.1.2
Fix from $1,600 2017-05-12
Linux Kernel MEDIUM 5.5
CVE-2017-0626

An information disclosure vulnerability in the Qualcomm crypto engine driver could enable a local malicious application to access data outside of its…

Patch available
Fix from $1,600 2017-05-12
Android MEDIUM 5.5
CVE-2017-0598

An information disclosure vulnerability in the Framework APIs could enable a local malicious application to bypass operating system protections that …

Patch available
Fix from $1,600 2017-05-12
Android MEDIUM 5.5
CVE-2017-0602

An information disclosure vulnerability in Bluetooth could allow a local malicious application to bypass operating system protections that isolate ap…

Patch available
Fix from $1,600 2017-05-12
Windows 10 MEDIUM 5.9
CVE-2017-0274EPSS 7%

Microsoft Server Message Block 1.0 (SMBv1) allows an information disclosure vulnerability in the way that Microsoft Windows Server 2008 SP2 and R2 SP…

Patch available
Fix from $1,600 2017-05-12
Windows 10 MEDIUM 5.9
CVE-2017-0275EPSS 8%

Microsoft Server Message Block 1.0 (SMBv1) allows an information disclosure vulnerability in the way that Microsoft Windows Server 2008 SP2 and R2 SP…

Patch available
Fix from $1,600 2017-05-12
Windows 10 MEDIUM 5.9
CVE-2017-0276EPSS 7%

Microsoft Server Message Block 1.0 (SMBv1) allows an information disclosure vulnerability in the way that Microsoft Windows Server 2008 SP2 and R2 SP…

Patch available
Fix from $1,600 2017-05-12
Windows 10 MEDIUM 5.9
CVE-2017-0267EPSS 13%

Microsoft Server Message Block 1.0 (SMBv1) allows an information disclosure vulnerability in the way that Microsoft Windows Server 2008 SP2 and R2 SP…

Patch available
Fix from $1,600 2017-05-12
Windows 10 MEDIUM 5.9
CVE-2017-0268EPSS 7%

Microsoft Server Message Block 1.0 (SMBv1) allows an information disclosure vulnerability in the way that Microsoft Windows Server 2008 SP2 and R2 SP…

Patch available
Fix from $1,600 2017-05-12
Windows 10 MEDIUM 5.9
CVE-2017-0270EPSS 7%

Microsoft Server Message Block 1.0 (SMBv1) allows an information disclosure vulnerability in the way that Microsoft Windows Server 2008 SP2 and R2 SP…

Patch available
Fix from $1,600 2017-05-12