Vulnerability index

Browse CVEs

5,953 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper Access ControlCWE-284 × clear
Knox MEDIUM 5.5
CVE-2016-1920

Samsung KNOX 1.0.0 uses the shared certificate on Android, which allows local users to conduct man-in-the-middle attacks as demonstrated by installin…

Mitigation only
Fix from $1,600 2017-01-27
Transition HIGH 7.8
CVE-2016-8227

Privilege escalation vulnerability in Lenovo Transition application used in Lenovo Yoga, Flex and Miix systems running Windows allows local users to …

Mitigation only
Fix from $1,950 2017-01-26
Unifi Ap Ac Lite Firmware HIGH 8.8
CVE-2016-7792

Ubiquiti Networks UniFi 5.2.7 does not restrict access to the database, which allows remote attackers to modify the database by directly connecting t…

Fix: after 5.2.7
Fix from $1,950 2017-01-23
Sky Control Panel Firmware CRITICAL 9.8
CVE-2014-8362

Vivint Sky Control Panel 1.1.1.9926 allows remote attackers to enable and disable the alarm system and modify other security settings via the Web-ena…

No fix yet
Fix from $2,300 2017-01-23
Moodle MEDIUM 5.3
CVE-2016-8642

In Moodle 2.x and 3.x, the question engine allows access to files that should not be available.

Fix: after 2.7.16
Fix from $1,600 2017-01-20
Fedora HIGH 8.8
CVE-2016-7545

SELinux policycoreutils allows local users to execute arbitrary commands outside of the sandbox via a crafted TIOCSTI ioctl call.

Patch available
Fix from $1,950 2017-01-19
Git Hub HIGH 8.8
CVE-2016-7793

sociomantic-tsunami git-hub before 0.10.3 allows remote attackers to execute arbitrary code via a crafted repository URL.

Fix: after 0.10.2
Fix from $1,950 2017-01-19
Git Hub CRITICAL 9.8
CVE-2016-7794

sociomantic-tsunami git-hub before 0.10.3 allows remote attackers to execute arbitrary code via a crafted repository name.

Fix: after 0.10.2
Fix from $2,300 2017-01-19
Firejail HIGH 8.8
CVE-2016-9016

Firejail 0.9.38.4 allows local users to execute arbitrary commands outside of the sandbox via a crafted TIOCSTI ioctl call.

Patch available
Fix from $1,950 2017-01-19
Chrome HIGH 8.8
CVE-2016-5206

The PDF plugin in Google Chrome prior to 55.0.2883.75 for Mac, Windows and Linux, and 55.0.2883.84 for Android incorrectly followed redirects, which …

Fix: after 54.0.2840.99
Fix from $1,950 2017-01-19
Chrome MEDIUM 6.5
CVE-2016-5217

The extensions API in Google Chrome prior to 55.0.2883.75 for Mac, Windows and Linux, and 55.0.2883.84 for Android incorrectly permitted access to pr…

Fix: after 54.0.2840.99
Fix from $1,600 2017-01-19
Fedora CRITICAL 9.8
CVE-2016-8606

The REPL server (--listen) in GNU Guile 2.0.12 allows an attacker to execute arbitrary code via an HTTP inter-protocol attack.

Patch available
Fix from $2,300 2017-01-12
Linux Kernel HIGH 7.0
CVE-2016-8412

An elevation of privilege vulnerability in the Qualcomm camera could enable a local malicious application to execute arbitrary code within the contex…

Mitigation only
Fix from $1,950 2017-01-12
Linux Kernel HIGH 7.0
CVE-2016-8415

An elevation of privilege vulnerability in the Qualcomm Wi-Fi driver could enable a local malicious application to execute arbitrary code within the …

Mitigation only
Fix from $1,950 2017-01-12
Linux Kernel HIGH 7.0
CVE-2016-8434

An elevation of privilege vulnerability in the Qualcomm GPU driver could enable a local malicious application to execute arbitrary code within the co…

Mitigation only
Fix from $1,950 2017-01-12
Linux Kernel HIGH 7.0
CVE-2016-8435

An elevation of privilege vulnerability in the NVIDIA GPU driver could enable a local malicious application to execute arbitrary code within the cont…

Mitigation only
Fix from $1,950 2017-01-12
Linux Kernel HIGH 7.0
CVE-2016-8444

An elevation of privilege vulnerability in the Qualcomm camera could enable a local malicious application to execute arbitrary code within the contex…

Mitigation only
Fix from $1,950 2017-01-12
Linux Kernel HIGH 7.0
CVE-2016-6782

An elevation of privilege vulnerability in the MediaTek driver could enable a local malicious application to execute arbitrary code within the contex…

Mitigation only
Fix from $1,950 2017-01-12
Android HIGH 7.0
CVE-2016-6783

An elevation of privilege vulnerability in the MediaTek driver could enable a local malicious application to execute arbitrary code within the contex…

Fix: after 7.1.0
Fix from $1,950 2017-01-12
Android HIGH 7.0
CVE-2016-6784

An elevation of privilege vulnerability in the MediaTek driver could enable a local malicious application to execute arbitrary code within the contex…

Mitigation only
Fix from $1,950 2017-01-12
Linux Kernel HIGH 7.0
CVE-2016-6785

An elevation of privilege vulnerability in the MediaTek driver could enable a local malicious application to execute arbitrary code within the contex…

Mitigation only
Fix from $1,950 2017-01-12
Linux Kernel HIGH 7.8
CVE-2016-6789

An elevation of privilege vulnerability in the NVIDIA libomx library (libnvomx) could enable a local malicious application to execute arbitrary code …

Mitigation only
Fix from $1,950 2017-01-12
Linux Kernel HIGH 7.8
CVE-2016-6790

An elevation of privilege vulnerability in the NVIDIA libomx library (libnvomx) could enable a local malicious application to execute arbitrary code …

Mitigation only
Fix from $1,950 2017-01-12
Linux Kernel HIGH 7.0
CVE-2016-6791

An elevation of privilege vulnerability in the Qualcomm sound driver could enable a local malicious application to execute arbitrary code within the …

Mitigation only
Fix from $1,950 2017-01-12
Linux Kernel HIGH 7.0
CVE-2016-8391

An elevation of privilege vulnerability in the Qualcomm sound driver could enable a local malicious application to execute arbitrary code within the …

Mitigation only
Fix from $1,950 2017-01-12
Linux Kernel HIGH 7.0
CVE-2016-8392

An elevation of privilege vulnerability in the Qualcomm sound driver could enable a local malicious application to execute arbitrary code within the …

Mitigation only
Fix from $1,950 2017-01-12
Linux Kernel HIGH 7.0
CVE-2016-8393

An elevation of privilege vulnerability in the Synaptics touchscreen driver could enable a local malicious application to execute arbitrary code with…

Mitigation only
Fix from $1,950 2017-01-12
Linux Kernel HIGH 7.0
CVE-2016-8394

An elevation of privilege vulnerability in the Synaptics touchscreen driver could enable a local malicious application to execute arbitrary code with…

Mitigation only
Fix from $1,950 2017-01-12
Linux Kernel HIGH 7.0
CVE-2016-8399

An elevation of privilege vulnerability in the kernel networking subsystem could enable a local malicious application to execute arbitrary code withi…

Fix: 4.1.37 / 4.4.38+
Fix from $1,950 2017-01-12
Linux Kernel HIGH 7.0
CVE-2016-6755

An elevation of privilege vulnerability in the Qualcomm camera driver could enable a local malicious application to execute arbitrary code within the…

Mitigation only
Fix from $1,950 2017-01-12