Vulnerability index

Browse CVEs

4,008 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Permissions, Privileges & Access ControlsCWE-264 × clear
HIGH 7.8 CVE-2014-9867 drivers/media/platform/msm/camera_v2/isp/msm_isp_axi_util.c in the Qualcomm components in Android before 2016-08-05 on Nexus 5 and 7 (2013) devices d… Android after 6.0.1 Fix from $1,9502016-08-06 HIGH 7.8 CVE-2016-3857 The kernel in Android before 2016-08-05 on Nexus 7 (2013) devices allows attackers to gain privileges via a crafted application, aka internal bug 285… Android after 6.0.1 Fix from $1,9502016-08-05 MEDIUM 5.5 CVE-2016-3853 Google Play services in Android before 2016-08-05 on Nexus devices allow local users to bypass the Factory Reset Protection protection mechanism and … Android after 6.0.1 Fix from $1,6002016-08-05 HIGH 8.1 CVE-2016-3851 The LG Electronics bootloader Android before 2016-08-05 on Nexus 5X devices allows attackers to gain privileges by leveraging access to a privileged … Android after 6.0.1 Fix from $1,9502016-08-05 HIGH 7.3 CVE-2016-3850 Integer overflow in app/aboot/aboot.c in the Qualcomm bootloader in Android before 2016-08-05 on Nexus 5, 5X, 6P, and 7 (2013) devices allows attacke… Android after 6.0.1 Fix from $1,9502016-08-05 HIGH 7.8 CVE-2016-3849 The ION driver in Android before 2016-08-05 on Pixel C devices allows attackers to gain privileges via a crafted application, aka internal bug 289397… Android after 6.0.1 Fix from $1,9502016-08-05 HIGH 7.0 CVE-2016-3848 The NVIDIA media driver in Android before 2016-08-05 on Nexus 9 devices allows attackers to gain privileges via a crafted application, aka internal b… Android after 6.0.1 Fix from $1,9502016-08-05 HIGH 7.8 CVE-2016-3847 The NVIDIA media driver in Android before 2016-08-05 on Nexus 9 devices allows attackers to gain privileges via a crafted application, aka internal b… Android after 6.0.1 Fix from $1,9502016-08-05 HIGH 7.0 CVE-2016-3846 The Serial Peripheral Interface driver in Android before 2016-08-05 on Nexus 5X and 6P devices allows attackers to gain privileges via a crafted appl… Android after 6.0.1 Fix from $1,9502016-08-05 HIGH 7.8 CVE-2016-3845 The video driver in the kernel in Android before 2016-08-05 on Nexus 5 devices allows attackers to gain privileges via a crafted application, aka int… Android after 6.0.1 Fix from $1,9502016-08-05 HIGH 7.8 CVE-2016-3843 Android before 2016-08-05 does not properly restrict code execution in a kernel context, which allows attackers to gain privileges via a crafted appl… Android after 6.0.1 Fix from $1,9502016-08-05 HIGH 7.8 CVE-2016-3844 mediaserver in Android before 2016-08-05 on Nexus 9 and Pixel C devices allows attackers to gain privileges via a crafted application, aka internal b… Android after 6.0.1 Fix from $1,9502016-08-05 HIGH 7.8 CVE-2016-3842 The Qualcomm GPU driver in Android before 2016-08-05 on Nexus 5X, 6, and 6P devices allows attackers to gain privileges via a crafted application, ak… Android after 6.0.1 Fix from $1,9502016-08-05 CRITICAL 9.8 CVE-2016-3840 Conscrypt in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-08-05 does not properly identify session reuse, wh… Android Patch available Fix from $2,3002016-08-05 HIGH 7.8 CVE-2016-3833 The Shell component in Android 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-08-01 does not properly manage the MANAGE_USERS and CREATE… Android Patch available Fix from $1,9502016-08-05 HIGH 7.8 CVE-2016-3832 The framework APIs in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-08-01 do not ensure that package data ori… Android Patch available Fix from $1,9502016-08-05 HIGH 7.8 CVE-2016-2504 The Qualcomm GPU driver in Android before 2016-08-05 on Nexus 5, 5X, 6, 6P, and 7 (2013) devices allows attackers to gain privileges via a crafted ap… Android after 6.0.1 Fix from $1,9502016-08-05 HIGH 8.1 CVE-2016-5266 Mozilla Firefox before 48.0 does not properly restrict drag-and-drop (aka dataTransfer) actions for file: URIs, which allows user-assisted remote att… Firefox after 47.0.1 Fix from $1,9502016-08-05 HIGH 7.8 CVE-2016-6193 Buffer overflow in the Wi-Fi driver in Huawei P8 smartphones with software before GRA-CL00C92B363 allows attackers to cause a denial of service (syst… P8 Smartphone Firmware Mitigation only Fix from $1,9502016-08-02 HIGH 7.3 CVE-2016-6192 Buffer overflow in the Wi-Fi driver in Huawei P8 smartphones with software before GRA-CL00C92B363 allows attackers to cause a denial of service (syst… P8 Smartphone Firmware Mitigation only Fix from $1,9502016-08-02 HIGH 7.8 CVE-2016-2408 Pulse Secure Desktop before 5.2R2 and Pulse Secure Installer Service before 8.2R2 and below for Windows allow restricted users to gain privileges via… Odyssey Access Client after 5.6r16.0 Fix from $1,9502016-08-02 HIGH 7.8 CVE-2016-1712 Palo Alto Networks PAN-OS before 5.0.19, 5.1.x before 5.1.12, 6.0.x before 6.0.14, 6.1.x before 6.1.12, and 7.0.x before 7.0.8 might allow local user… Pan Os 5.0.19 / 5.1.12+ Fix from $1,9502016-08-02 HIGH 7.8 CVE-2016-1238 (1) cpan/Archive-Tar/bin/ptar, (2) cpan/Archive-Tar/bin/ptardiff, (3) cpan/Archive-Tar/bin/ptargrep, (4) cpan/CPAN/scripts/cpan, (5) cpan/Digest-SHA/… Debian Linux 3.4.2+ Fix from $1,9502016-08-02 HIGH 8.1 CVE-2016-4834 modules/Users/actions/Save.php in Vtiger CRM 6.4.0 and earlier does not properly restrict user-save actions, which allows remote authenticated users … Vtiger Crm after 6.4.0 Fix from $1,9502016-08-01 HIGH 7.8 CVE-2016-1611 Novell Filr 1.2 before Hot Patch 6 and 2.0 before Hot Patch 2 uses world-writable permissions for /etc/profile.d/vainit.sh, which allows local users … Filr after 2.0 Fix from $1,9502016-08-01 MEDIUM 6.3 CVE-2016-4652 CoreGraphics in Apple OS X before 10.11.6 allows local users to obtain sensitive information from kernel memory and consequently gain privileges, or … Mac Os X after 10.11.5 Fix from $1,6002016-07-22 HIGH 7.8 CVE-2016-4638 Login Window in Apple OS X before 10.11.6 allows attackers to gain privileges via a crafted app that leverages a "type confusion." Mac Os X after 10.11.5 Fix from $1,9502016-07-22 HIGH 7.8 CVE-2016-4633 Intel Graphics Driver in Apple OS X before 10.11.6 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (m… Mac Os X after 10.11.5 Fix from $1,9502016-07-22 HIGH 7.5 CVE-2016-5654 Misys FusionCapital Opics Plus allows remote authenticated users to gain privileges via a man-in-the-middle attack that modifies the xmlMessageOut pa… Fusioncapital Opics Plus No fix yet Fix from $1,9502016-07-19 HIGH 7.8 CVE-2016-1456 The CLI in Cisco IOS XR 6.x through 6.0.1 allows local users to execute arbitrary OS commands in a privileged context by leveraging unspecified conta… Ios Xr Mitigation only Fix from $1,9502016-07-15