Vulnerability index

Browse CVEs

7,760 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Information ExposureCWE-200 × clear
MEDIUM 5.5 CVE-2017-8666 Microsoft Win32k in Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold,… Windows 10 Patch available Fix from $1,6002017-08-08 MEDIUM 5.5 CVE-2017-8668 The Volume Manager Extension Driver in Microsoft Windows 7 SP1, Windows Server 2008 SP2 and R2 SP1, Windows 8.1 and Windows RT 8.1, Windows Server 20… Windows 7 Patch available Fix from $1,6002017-08-08 CRITICAL 9.8 CVE-2010-3845 libapache-authenhook-perl 2.00-04 stores usernames and passwords in plaintext in the vhost error log. Apache Authenhook Patch available Fix from $2,3002017-08-08 HIGH 7.5 CVE-2011-4343EPSS 5% Information disclosure vulnerability in Apache MyFaces Core 2.0.1 through 2.0.10 and 2.1.0 through 2.1.4 allows remote attackers to inject EL express… Myfaces Patch available Fix from $1,9502017-08-08 HIGH 7.5 CVE-2017-8516EPSS 8% Microsoft SQL Server Analysis Services in Microsoft SQL Server 2012, Microsoft SQL Server 2014, and Microsoft SQL Server 2016 allows an information d… Sql Server Patch available Fix from $1,9502017-08-08 HIGH 7.5 CVE-2017-11155EPSS 47% An information exposure vulnerability in index.php in Synology Photo Station before 6.7.3-3432 and 6.3-2967 allows remote attackers to obtain sensiti… Photo Station after 6.7.2-3429 Fix from $1,9502017-08-08 MEDIUM 6.5 CVE-2017-10084 Vulnerability in the Oracle FLEXCUBE Universal Banking component of Oracle Financial Services Applications (subcomponent: Report Generator). Supporte… Flexcube Universal Banking Patch available Fix from $1,6002017-08-08 MEDIUM 5.3 CVE-2017-10093 Vulnerability in the Oracle Agile PLM component of Oracle Supply Chain Products Suite (subcomponent: Security). Supported versions that are affected … Agile Product Lifecycle Management Patch available Fix from $1,6002017-08-08 HIGH 7.5 CVE-2016-6220 Information Disclosure vulnerability in the Dashboard and Error Pages in Trend Micro Control Manager SP3 6.0. Control Manager Patch available Fix from $1,9502017-08-07 HIGH 7.5 CVE-2014-3462 The ".encfs6.xml" configuration file in encfs before 1.7.5 allows remote attackers to access sensitive data by setting "blockMACBytes" to 0 and addin… Leap 1.7.5+ Fix from $1,9502017-08-07 HIGH 7.5 CVE-2017-6752 A vulnerability in the web interface of the Cisco Adaptive Security Appliance (ASA) 9.3(3) and 9.6(2) could allow an unauthenticated, remote attacker… Adaptive Security Appliance Software Mitigation only Fix from $1,9502017-08-07 HIGH 7.5 CVE-2017-9858 An issue was discovered in SMA Solar Technology products. By sending crafted packets to an inverter and observing the response, active and inactive u… Sunny Boy 3600 Firmware Mitigation only Fix from $1,9502017-08-05 HIGH 7.5 CVE-2017-9862 An issue was discovered in SMA Solar Technology products. When signed into Sunny Explorer with a wrong password, it is possible to create a debug rep… Sunny Explorer Mitigation only Fix from $1,9502017-08-05 HIGH 7.5 CVE-2017-11387EPSS 15% Authentication Bypass in Trend Micro Control Manager 6.0 causes Information Disclosure when authentication validation is not done for functionality t… Control Manager Patch available Fix from $1,9502017-08-02 MEDIUM 5.9 CVE-2015-3642 The TLS and DTLS processing functionality in Citrix NetScaler Application Delivery Controller (ADC) and NetScaler Gateway devices with firmware 9.x b… Netscaler Application Delivery Controller Mitigation only Fix from $1,6002017-08-02 MEDIUM 6.5 CVE-2017-11356 The application distribution export functionality in PEGA Platform 7.2 ML0 and earlier allows remote authenticated users with certain privileges to o… Pega Platform after 7.2_ml0 Fix from $1,6002017-08-02 MEDIUM 6.5 CVE-2017-7890 The GIF decoding function gdImageCreateFromGifCtx in gd_gif_in.c in the GD Graphics Library (aka libgd), as used in PHP before 5.6.31 and 7.x before … PHP after 5.6.30 Fix from $1,6002017-08-02 MEDIUM 5.5 CVE-2017-8572EPSS 13% Microsoft Outlook 2007 SP3, Outlook 2010 SP2, Outlook 2013 SP1, Outlook 2013 RT SP1, and Outlook 2016 as packaged in Microsoft Office allows an infor… Outlook Patch available Fix from $1,6002017-08-01 MEDIUM 6.5 CVE-2017-4922 VMware vCenter Server (6.5 prior to 6.5 U1) contains an information disclosure issue due to the service startup script using world writable directori… Vcenter Server Patch available Fix from $1,6002017-08-01 CRITICAL 9.8 CVE-2017-4923 VMware vCenter Server (6.5 prior to 6.5 U1) contains an information disclosure vulnerability. This issue may allow plaintext credentials to be obtain… Vcenter Server Patch available Fix from $2,3002017-08-01 MEDIUM 5.3 CVE-2015-5059 The "Project Documentation" feature in MantisBT 1.2.19 and earlier, when the threshold to access files ($g_view_proj_doc_threshold) is set to ANYBODY… Mantisbt after 1.2.19 Fix from $1,6002017-08-01 MEDIUM 6.5 CVE-2017-9476 The Comcast firmware on Cisco DPC3939 (firmware version dpc3939-P20-18-v303r20421733-160420a-CMCST); Cisco DPC3939 (firmware version dpc3939-P20-18-v… Dpc3939 Firmware No fix yet Fix from $1,6002017-07-31 MEDIUM 6.5 CVE-2017-9477 The Comcast firmware on Cisco DPC3939 (firmware version dpc3939-P20-18-v303r20421733-160420a-CMCST) and DPC3939 (firmware version dpc3939-P20-18-v303… Dpc3939 Firmware No fix yet Fix from $1,6002017-07-31 HIGH 7.5 CVE-2017-9478 The Comcast firmware on Cisco DPC3939 (firmware version dpc3939-P20-18-v303r20421733-160420a-CMCST) and DPC3939 (firmware version dpc3939-P20-18-v303… Dpc3939 Firmware No fix yet Fix from $1,9502017-07-31 MEDIUM 5.5 CVE-2017-9480 The Comcast firmware on Cisco DPC3939 (firmware version dpc3939-P20-18-v303r20421746-170221a-CMCST) devices allows local users (e.g., users who have … Dpc3939 Firmware No fix yet Fix from $1,6002017-07-31 HIGH 7.5 CVE-2017-9484 The Comcast firmware on Cisco DPC3939 (firmware version dpc3939-P20-18-v303r20421733-160420a-CMCST) and DPC3939 (firmware version dpc3939-P20-18-v303… Dpc3939 Firmware No fix yet Fix from $1,9502017-07-31 HIGH 7.5 CVE-2017-9486 The Comcast firmware on Cisco DPC3939 (firmware version dpc3939-P20-18-v303r20421746-170221a-CMCST) devices allows remote attackers to compute passwo… Dpc3939 Firmware No fix yet Fix from $1,9502017-07-31 MEDIUM 5.9 CVE-2017-9487 The Comcast firmware on Cisco DPC3939 (firmware version dpc3939-P20-18-v303r20421746-170221a-CMCST) and DPC3941T (firmware version DPC3941_2.5s3_PROD… Dpc3939 Firmware No fix yet Fix from $1,6002017-07-31 MEDIUM 5.3 CVE-2017-9491 The Comcast firmware on Cisco DPC3939 (firmware version dpc3939-P20-18-v303r20421733-160420a-CMCST); Cisco DPC3939 (firmware version dpc3939-P20-18-v… Dpc3939 Firmware Mitigation only Fix from $1,6002017-07-31 HIGH 7.5 CVE-2017-9492 The Comcast firmware on Cisco DPC3939 (firmware version dpc3939-P20-18-v303r20421733-160420a-CMCST); Cisco DPC3939 (firmware version dpc3939-P20-18-v… Dpc3939 Firmware Mitigation only Fix from $1,9502017-07-31