Vulnerability index

Browse CVEs

3,016 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper Privilege ManagementCWE-269 × clear
Karotz Smart Rabbit Firmware MEDIUM 6.3
CVE-2013-4867

Electronic Arts Karotz Smart Rabbit 12.07.19.00 allows Python module hijacking

No fix yet
Fix from $1,600 2019-12-27
Ds 2cd7153 E Firmware HIGH 8.8
CVE-2013-4975EPSS 12%

Hikvision DS-2CD7153-E IP Camera has Privilege Escalation

No fix yet
Fix from $1,950 2019-12-27
Big Iq Centralized Management MEDIUM 5.5
CVE-2019-19151

On BIG-IP versions 15.0.0-15.1.0, 14.0.0-14.1.2.3, 13.1.0-13.1.3.2, 12.1.0-12.1.5, and 11.5.2-11.6.5.1, BIG-IQ versions 7.0.0, 6.0.0-6.1.0, and 5.0.0…

Fix: after 15.1.0
Fix from $1,600 2019-12-23
Big Ip Access Policy Manager HIGH 7.8
CVE-2019-6685

On BIG-IP versions 15.0.0-15.0.1.1, 14.1.0-14.1.2.2, 14.0.0-14.0.1, 13.1.0-13.1.3.1, 12.1.0-12.1.5, and 11.5.2-11.6.5.1, users with access to edit iR…

Fix: 13.1.3.2 / 14.0.1.1+
Fix from $1,950 2019-12-23
Jboss Application Server HIGH 7.8
CVE-2012-2312

An Elevated Privileges issue exists in JBoss AS 7 Community Release due to the improper implementation in the security context propagation, A threat …

Mitigation only
Fix from $1,950 2019-12-18
Ar120 S Firmware MEDIUM 6.5
CVE-2019-5259

There is an information leakage vulnerability on some Huawei products(AR120-S;AR1200;AR1200-S;AR150;AR150-S;AR160;AR200;AR200-S;AR2200;AR2200-S;AR320…

Mitigation only
Fix from $1,600 2019-12-16
Debian Linux MEDIUM 6.5
CVE-2019-19783

An issue was discovered in Cyrus IMAP before 2.5.15, 3.0.x before 3.0.13, and 3.1.x through 3.1.8. If sieve script uploading is allowed (3.x) or cert…

Fix: 2.5.15 / 3.0.13+
Fix from $1,600 2019-12-16
Mate 20 Pro Firmware HIGH 7.8
CVE-2019-5250

Mate 20 Pro smartphones with versions earlier than 9.1.0.135(C00E133R3P1) have an improper authorization vulnerability. The software does not properl…

Fix: 9.1.0.135+
Fix from $1,950 2019-12-13
Fedora MEDIUM 6.5
CVE-2019-16777

Versions of the npm CLI prior to 6.13.4 are vulnerable to an Arbitrary File Overwrite. It fails to prevent existing globally-installed binaries to be…

Fix: 6.13.4+
Fix from $1,600 2019-12-13
OpenBSD HIGH 7.8
CVE-2019-19726

OpenBSD through 6.6 allows local users to escalate to root because a check for LD_LIBRARY_PATH in setuid programs can be defeated by setting a very s…

Fix: after 6.6
Fix from $1,950 2019-12-12
Chrome MEDIUM 6.5
CVE-2019-13738

Insufficient policy enforcement in navigation in Google Chrome prior to 79.0.3945.79 allowed a remote attacker to bypass site isolation via a crafted…

Fix: 79.0.3945.79+
Fix from $1,600 2019-12-10
Node HIGH 7.8
CVE-2013-0293

oVirt Node: Lock screen accepts F2 to drop to shell causing privilege escalation

Mitigation only
Fix from $1,950 2019-12-10
Android HIGH 8.8
CVE-2019-2225

When pairing with a Bluetooth device, it may be possible to pair a malicious device without any confirmation from the user, and that device may be ab…

Patch available
Fix from $1,950 2019-12-06
Fedora HIGH 7.8
CVE-2012-1615

A Privilege Escalation vulnerability exits in Fedoraproject Sectool due to an incorrect DBus file.

Patch available
Fix from $1,950 2019-12-06
Debian Linux MEDIUM 5.3
CVE-2012-1104

A Security Bypass vulnerability exists in the phpCAS 1.2.2 library from the jasig project due to the way proxying of services are managed.

No fix yet
Fix from $1,600 2019-12-05
Helpdesk HIGH 7.5
CVE-2018-0728

This improper access control vulnerability in Helpdesk allows attackers to access the system logs. To fix the vulnerability, QNAP recommend updating …

Fix: 3.0.0+
Fix from $1,950 2019-12-04
Fedora HIGH 7.8
CVE-2012-4480

mom creates world-writable pid files in /var/run

Fix: 0.3.0-1+
Fix from $1,950 2019-12-02
Webtitan HIGH 7.8
CVE-2019-19014

An issue was discovered in TitanHQ WebTitan before 5.18. It has a sudoers file that enables low-privilege users to execute a vast number of commands …

Fix: 5.18+
Fix from $1,950 2019-12-02
Big Ip Access Policy Manager MEDIUM 5.5
CVE-2019-6668

The BIG-IP APM Edge Client for macOS bundled with BIG-IP APM 15.0.0-15.0.1, 14.1.0-14.1.0.5, 14.0.0-14.0.0.4, 13.1.0-13.1.1.5, 12.1.0-12.1.5, and 11.…

Fix: after 15.0.1
Fix from $1,600 2019-11-27
Debian Linux MEDIUM 6.5
CVE-2013-2625

An Access Bypass issue exists in OTRS Help Desk before 3.2.4, 3.1.14, and 3.0.19, OTRS ITSM before 3.2.3, 3.1.8, and 3.0.7, and FAQ before 2.2.3, 2.1…

Fix: 2.0.8 / 2.1.4+
Fix from $1,600 2019-11-27
Cdh HIGH 8.3
CVE-2019-7319

An issue was discovered in Cloudera Hue 6.0.0 through 6.1.0. When using one of following authentication backends: LdapBackend, PamBackend, SpnegoDjan…

Mitigation only
Fix from $1,950 2019-11-26
Cloudera Manager HIGH 8.8
CVE-2017-7399

Cloudera Manager 5.8.x before 5.8.5, 5.9.x before 5.9.2, and 5.10.x before 5.10.1 allows a read-only Cloudera Manager user to discover the usernames …

Fix: after 5.9.1
Fix from $1,950 2019-11-26
Cdh HIGH 8.8
CVE-2015-7831

In Cloudera Hue, there is privilege escalation by a read-only user when CDH 5.x brefore 5.4.9 is used.

Fix: 5.4.9+
Fix from $1,950 2019-11-26
Cloud Init HIGH 8.8
CVE-2012-6639

An privilege elevation vulnerability exists in Cloud-init before 0.7.0 when requests to an untrusted system are submitted for EC2 instance data.

Fix: 0.7.0+
Fix from $1,950 2019-11-25
Chrome HIGH 7.8
CVE-2019-13702

Inappropriate implementation in installer in Google Chrome on Windows prior to 78.0.3904.70 allowed a local attacker to perform privilege escalation …

Fix: 78.0.3904.70+
Fix from $1,950 2019-11-25
Fedora HIGH 7.8
CVE-2012-5617

gksu-polkit: permissive PolicyKit policy configuration file allows privilege escalation

Mitigation only
Fix from $1,950 2019-11-25
Postgresql Common HIGH 7.8
CVE-2019-3466

The pg_ctlcluster script in postgresql-common in versions prior to 210 didn't drop privileges when creating socket/statistics temporary directories, …

Fix: 210+
Fix from $1,950 2019-11-20
Lightdm HIGH 7.8
CVE-2011-3349

lightdm before 0.9.6 writes in .dmrc and Xauthority files using root permissions while the files are in user controlled folders. A local user can ove…

Fix: 0.9.6+
Fix from $1,950 2019-11-19
Cobbler HIGH 7.8
CVE-2011-4954

cobbler has local privilege escalation via the use of insecure location for PYTHON_EGG_CACHE

Mitigation only
Fix from $1,950 2019-11-19
Endpoint Protection Manager HIGH 7.8
CVE-2018-18368

Symantec Endpoint Protection Manager (SEPM), prior to 14.2 RU1, may be susceptible to a privilege escalation vulnerability, which is a type of issue …

Fix: after 14.2
Fix from $1,950 2019-11-15