Vulnerability index

Browse CVEs

4,008 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Permissions, Privileges & Access ControlsCWE-264 × clear
Suricata CRITICAL 9.8
CVE-2015-8954

The MemcmpLowercase function in Suricata before 2.0.6 improperly excludes the first byte from comparisons, which might allow remote attackers to bypa…

Fix: after 2.0.5
Fix from $2,300 2017-03-20
Android HIGH 7.8
CVE-2016-5857

The Qualcomm SPCom driver in Android before 7.0 allows local users to execute arbitrary code within the context of the kernel via a crafted applicati…

Mitigation only
Fix from $1,950 2017-03-20
Pluck CRITICAL 9.8
CVE-2014-8708

Pluck CMS 4.7.2 allows remote attackers to execute arbitrary code via the blog form feature.

No fix yet
Fix from $2,300 2017-03-17
Calibre MEDIUM 5.5
CVE-2016-10187

The E-book viewer in calibre before 2.75 allows remote attackers to read arbitrary files via a crafted epub file with JavaScript.

Fix: after 2.74.0
Fix from $1,600 2017-03-16
Asr 5000 Series Software HIGH 8.8
CVE-2017-3819

A privilege escalation vulnerability in the Secure Shell (SSH) subsystem in the StarOS operating system for Cisco ASR 5000 Series, ASR 5500 Series, A…

Mitigation only
Fix from $1,950 2017-03-15
Aironet Access Point Software CRITICAL 9.8
CVE-2017-3831EPSS 5%

A vulnerability in the web-based GUI of Cisco Mobility Express 1800 Series Access Points could allow an unauthenticated, remote attacker to bypass au…

Mitigation only
Fix from $2,300 2017-03-15
Ossim CRITICAL 9.8
CVE-2016-7955EPSS 6%

The logcheck function in session.inc in AlienVault OSSIM before 5.3.1, when an action has been created, and USM before 5.3.1 allows remote attackers …

Fix: after 5.3
Fix from $2,300 2017-03-15
Security Scan Plus HIGH 7.8
CVE-2016-8026

Arbitrary command execution vulnerability in Intel Security McAfee Security Scan Plus (SSP) 3.11.469 and earlier allows authenticated users to gain e…

Fix: after 3.11.469
Fix from $1,950 2017-03-14
Cloud Analysis And Deconstructive Services CRITICAL 9.8
CVE-2014-9921

Information disclosure vulnerability in McAfee (now Intel Security) Cloud Analysis and Deconstructive Services (CADS) 1.0.0.3x, 1.0.0.4d and earlier …

Fix: after 1.0.0.4d
Fix from $2,300 2017-03-14
Security Webadvisor HIGH 7.0
CVE-2015-8991

Malicious file execution vulnerability in Intel Security McAfee Security Scan+ (MSS+) before 3.11.266.3 allows attackers to make the product momentar…

Mitigation only
Fix from $1,950 2017-03-14
Security Webadvisor HIGH 7.0
CVE-2015-8992

Malicious file execution vulnerability in Intel Security WebAdvisor before 4.0.2, 4.0.1 and 3.7.2 allows attackers to make the product momentarily vu…

Mitigation only
Fix from $1,950 2017-03-14
Security Webadvisor HIGH 7.0
CVE-2015-8993

Malicious file execution vulnerability in Intel Security CloudAV (Beta) before 0.5.0.151.3 allows attackers to make the product momentarily vulnerabl…

Mitigation only
Fix from $1,950 2017-03-14
Email Gateway MEDIUM 6.5
CVE-2016-8005

File extension filtering vulnerability in Intel Security McAfee Email Gateway (MEG) before 7.6.404h1128596 allows attackers to fail to identify the f…

Fix: after 7.6.401
Fix from $1,600 2017-03-14
Security Scan Plus HIGH 8.8
CVE-2016-8008

Privilege escalation vulnerability in Windows 7 and Windows 10 in McAfee Security Scan Plus (SSP) 3.11.376 allows attackers to load a replacement of …

Fix: after 3.11.376
Fix from $1,950 2017-03-14
Application Control HIGH 7.8
CVE-2016-8009

Privilege escalation vulnerability in Intel Security McAfee Application Control (MAC) 7.0 and 6.x versions allows attackers to cause DoS, unexpected …

No fix yet
Fix from $1,950 2017-03-14
Data Loss Prevention Endpoint HIGH 7.8
CVE-2016-8012

Access control vulnerability in Intel Security Data Loss Prevention Endpoint (DLPe) 9.4.200 and 9.3.600 allows authenticated users with Read-Write-Ex…

Fix: after 9.4.200
Fix from $1,950 2017-03-14
Linux Kernel HIGH 7.0
CVE-2016-8417

An elevation of privilege vulnerability in the Qualcomm camera driver could enable a local malicious application to execute arbitrary code within the…

Patch available
Fix from $1,950 2017-03-08
Linux Kernel HIGH 7.8
CVE-2016-8479

An elevation of privilege vulnerability in the Qualcomm GPU driver could enable a local malicious application to execute arbitrary code within the co…

Patch available
Fix from $1,950 2017-03-08
Linux Kernel HIGH 7.0
CVE-2016-10200

Race condition in the L2TPv3 IP Encapsulation feature in the Linux kernel before 4.8.14 allows local users to gain privileges or cause a denial of se…

Fix: 3.2 / 3.2.88+
Fix from $1,950 2017-03-07
PHP HIGH 7.5
CVE-2015-8994

An issue was discovered in PHP 5.x and 7.x, when the configuration uses apache2handler/mod_php or php-fpm with OpCache enabled. With 5.x after 5.6.28…

Fix: 7.0.14+
Fix from $1,950 2017-03-02
Hesiod HIGH 7.0
CVE-2016-10151

The hesiod_init function in lib/hesiod.c in Hesiod 3.2.1 compares EUID with UID to determine whether to use configurations from environment variables…

Patch available
Fix from $1,950 2017-03-01
Data Ontap HIGH 8.8
CVE-2016-5374

NetApp Data ONTAP 9.0 and 9.1 before 9.1P1 allows remote authenticated users that own SMB-hosted data to bypass intended sharing restrictions by leve…

Patch available
Fix from $1,950 2017-03-01
Plone HIGH 7.3
CVE-2016-4041

Plone 4.0 through 5.1a1 does not have security declarations for Dexterity content-related WebDAV requests, which allows remote attackers to gain webd…

Mitigation only
Fix from $1,950 2017-02-24
Interscan Web Security Virtual Appliance CRITICAL 9.9
CVE-2016-9269EPSS 13%

Remote Command Execution in com.trend.iwss.gui.servlet.ManagePatches in Trend Micro Interscan Web Security Virtual Appliance (IWSVA) version 6.5-SP2_…

Fix: after 6.5
Fix from $2,300 2017-02-21
Interscan Web Security Virtual Appliance HIGH 8.8
CVE-2016-9315EPSS 9%

Privilege Escalation Vulnerability in com.trend.iwss.gui.servlet.updateaccountadministration in Trend Micro InterScan Web Security Virtual Appliance …

Fix: after 6.5
Fix from $1,950 2017-02-21
Iphone Os HIGH 7.8
CVE-2016-7660

An issue was discovered in certain Apple products. iOS before 10.2 is affected. macOS before 10.12.2 is affected. watchOS before 3.1.3 is affected. T…

Fix: after 10.12.1
Fix from $1,950 2017-02-20
Iphone Os HIGH 7.8
CVE-2016-7661

An issue was discovered in certain Apple products. iOS before 10.2 is affected. macOS before 10.12.2 is affected. The issue involves the "Power Manag…

Fix: after 10.12.1
Fix from $1,950 2017-02-20
Mac Os X MEDIUM 5.5
CVE-2016-7628

An issue was discovered in certain Apple products. macOS before 10.12.2 is affected. The issue involves the "Assets" component, which allows local us…

Fix: after 10.12.1
Fix from $1,600 2017-02-20
Safari HIGH 7.8
CVE-2016-7613

An issue was discovered in certain Apple products. iOS before 10.1 is affected. macOS before 10.12.1 is affected. tvOS before 10.0.1 is affected. wat…

Fix: after 10.12.0
Fix from $1,950 2017-02-20
Mac Os X HIGH 8.8
CVE-2016-7582

An issue was discovered in certain Apple products. macOS before 10.12 is affected. The issue involves the "Intel Graphics Driver" component. It allow…

Fix: after 10.11.6
Fix from $1,950 2017-02-20