Vulnerability index

Browse CVEs

5,953 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper Access ControlCWE-284 × clear
Sd 410 Firmware CRITICAL 9.8
CVE-2016-10462

In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Automobile and Snapdragon Mobile SD 410/12, SD 425, SD 427, SD 43…

Mitigation only
Fix from $2,300 2018-04-18
Mdm9206 Firmware CRITICAL 9.8
CVE-2016-10472

In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile and Snapdragon Wear MDM9206, MDM9607, MDM9650, MSM8909W, S…

Mitigation only
Fix from $2,300 2018-04-18
Sd 425 Firmware CRITICAL 9.8
CVE-2016-10440

In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile SD 425, SD 430, SD 450, SD 625, and SD 650/52, there is im…

Mitigation only
Fix from $2,300 2018-04-18
Mdm9640 Firmware CRITICAL 9.8
CVE-2016-10442

In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile MDM9640, SDM630, MSM8976, MSM8937, SDM845, MSM8976, and MS…

Mitigation only
Fix from $2,300 2018-04-18
Mdm9206 Firmware CRITICAL 9.8
CVE-2016-10444

In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Automobile, Snapdragon Mobile, and Snapdragon Wear MDM9206, SD 21…

Mitigation only
Fix from $2,300 2018-04-18
Mdm9206 Firmware HIGH 8.1
CVE-2016-10417

In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Automobile, Snapdragon Mobile, and Snapdragon Wear IPQ4019, MDM92…

Mitigation only
Fix from $1,950 2018-04-18
Mdm9206 Firmware HIGH 7.5
CVE-2016-10418

In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Automobile, Snapdragon Mobile, and Snapdragon Wear MDM9206, MDM96…

Mitigation only
Fix from $1,950 2018-04-18
Mdm9206 Firmware CRITICAL 9.8
CVE-2016-10422

In Android before 2018-04-05 or earlier security patch level on Qualcomm Small Cell SoC, Snapdragon Automobile, Snapdragon Mobile, and Snapdragon Wea…

Mitigation only
Fix from $2,300 2018-04-18
Mdm9206 Firmware CRITICAL 9.8
CVE-2015-9209

In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile and Snapdragon Wear MDM9206, MDM9607, MDM9615, MDM9625, MD…

Mitigation only
Fix from $2,300 2018-04-18
Ipq4019 Firmware CRITICAL 9.8
CVE-2015-9152

In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Automobile and Snapdragon Mobile IPQ4019, SD 210/SD 212/SD 205, S…

Mitigation only
Fix from $2,300 2018-04-18
Mdm9206 Firmware HIGH 7.5
CVE-2015-9140

In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile, Snapdragon Wear, and Small Cell SoC FSM9055, MDM9206, MDM…

Mitigation only
Fix from $1,950 2018-04-18
Mdm9615 Firmware CRITICAL 9.8
CVE-2014-10059

In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile MDM9615, MDM9625, SD 210/SD 212/SD 205, SD 400, and SD 800…

Mitigation only
Fix from $2,300 2018-04-18
Msm8996 Firmware CRITICAL 9.8
CVE-2014-10050

In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile MSM8996, MSM8939, MSM8976, MSM8917, SDM845, and SDM660, ac…

Mitigation only
Fix from $2,300 2018-04-18
Mdm9206 Firmware CRITICAL 9.8
CVE-2014-10053

In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Automobile, Snapdragon Mobile, and Snapdragon Wear MDM9206, MDM96…

Mitigation only
Fix from $2,300 2018-04-18
Dir 815 Firmware CRITICAL 9.8
CVE-2015-0150

The remote administration UI in D-Link DIR-815 devices with firmware before 2.07.B01 allows remote attackers to bypass intended access restrictions v…

Fix: 2.07.b01+
Fix from $2,300 2018-04-12
Ikiwiki MEDIUM 6.5
CVE-2016-9645

The fix for ikiwiki for CVE-2016-10026 was incomplete resulting in editing restriction bypass for git revert when using git versions older than 2.8.0…

Fix: 2.8+
Fix from $1,600 2018-04-10
Entity Api MEDIUM 6.5
CVE-2014-1398

The entity wrapper access API in the Entity API module 7.x-1.x before 7.x-1.3 for Drupal might allow remote authenticated users to bypass intended ac…

Patch available
Fix from $1,600 2018-04-10
Entity Api MEDIUM 6.5
CVE-2014-1399

The entity wrapper access API in the Entity API module 7.x-1.x before 7.x-1.3 for Drupal might allow remote authenticated users to bypass intended ac…

Patch available
Fix from $1,600 2018-04-10
Entity Api MEDIUM 6.5
CVE-2014-1400

The entity_access API in the Entity API module 7.x-1.x before 7.x-1.3 for Drupal might allow remote authenticated users to bypass intended access res…

Patch available
Fix from $1,600 2018-04-10
Jira MEDIUM 6.5
CVE-2017-18101

Various administrative external system import resources in Atlassian JIRA Server (including JIRA Core) before version 7.6.5, from version 7.7.0 befor…

Fix: 7.6.5 / 7.7.3+
Fix from $1,600 2018-04-10
Pi Af Client MEDIUM 5.5
CVE-2016-8365

OSIsoft PI System software (Applications using PI Asset Framework (AF) Client versions prior to PI AF Client 2016, Version 2.8.0; Applications using …

Fix: 1.4.6 / 2.8.0+
Fix from $1,600 2018-04-03
Owncloud CRITICAL 9.8
CVE-2014-2048

The user_openid app in ownCloud Server before 5.0.15 allows remote attackers to obtain access by leveraging an insecure OpenID implementation.

Fix: 5.0.15+
Fix from $2,300 2018-03-26
G Cam\/efd 2250 Firmware CRITICAL 9.8
CVE-2018-7520

An improper access control vulnerability has been identified in Geutebruck G-Cam/EFD-2250 Version 1.12.0.4 and Topline TopFD-2125 Version 3.15.1 IP c…

Mitigation only
Fix from $2,300 2018-03-22
Simatic Wincc Oa Ui MEDIUM 6.7
CVE-2018-4844

A vulnerability has been identified in SIMATIC WinCC OA UI for Android (All versions < V3.15.10), SIMATIC WinCC OA UI for iOS (All versions < V3.15.1…

Fix: 3.15.10+
Fix from $1,600 2018-03-20
Garden HIGH 7.5
CVE-2015-5350

In Garden versions 0.22.0-0.329.0, a vulnerability has been discovered in the garden-linux nstar executable that allows access to files on the host s…

Fix: 0.330.0+
Fix from $1,950 2018-03-19
Keycloak MEDIUM 6.5
CVE-2016-8629

Red Hat Keycloak before version 2.4.0 did not correctly check permissions when handling service account user deletion requests sent to the rest serve…

Fix: 2.4.0+
Fix from $1,600 2018-03-12
Openshift HIGH 7.1
CVE-2018-1069

Red Hat OpenShift Enterprise version 3.7 is vulnerable to access control override for container network filesystems. An attacker could override the U…

Mitigation only
Fix from $1,950 2018-03-09
Edirectory CRITICAL 9.8
CVE-2017-9285

NetIQ eDirectory before 9.0 SP4 did not enforce login restrictions when "ebaclient" was used, allowing unpermitted access to eDirectory services.

Fix: after 9.0
Fix from $2,300 2018-03-02
Cloudforms HIGH 7.4
CVE-2017-12191

A flaw was found in the CloudForms account configuration when using VMware. By default, a shared account is used that has privileged access to VMRC (…

Patch available
Fix from $1,950 2018-02-28
Sys600 Firmware HIGH 7.8
CVE-2018-1168

This vulnerability allows local attackers to escalate privileges on vulnerable installations of ABB MicroSCADA 9.3 with FP 1-2-3. An attacker must fi…

Mitigation only
Fix from $1,950 2018-02-21