Vulnerability index

Browse CVEs

5,953 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper Access ControlCWE-284 × clear
Linux Kernel HIGH 7.8
CVE-2016-6758

An elevation of privilege vulnerability in Qualcomm media codecs could enable a local malicious application to execute arbitrary code within the cont…

Mitigation only
Fix from $1,950 2017-01-12
Linux Kernel HIGH 7.8
CVE-2016-6759

An elevation of privilege vulnerability in Qualcomm media codecs could enable a local malicious application to execute arbitrary code within the cont…

Mitigation only
Fix from $1,950 2017-01-12
Linux Kernel HIGH 7.8
CVE-2016-6760

An elevation of privilege vulnerability in Qualcomm media codecs could enable a local malicious application to execute arbitrary code within the cont…

Mitigation only
Fix from $1,950 2017-01-12
Linux Kernel HIGH 7.8
CVE-2016-6761

An elevation of privilege vulnerability in Qualcomm media codecs could enable a local malicious application to execute arbitrary code within the cont…

Mitigation only
Fix from $1,950 2017-01-12
Android MEDIUM 5.5
CVE-2016-6763

A denial of service vulnerability in Telephony could enable a local malicious application to use a specially crafted file to cause a device hang or r…

Mitigation only
Fix from $1,600 2017-01-12
Android HIGH 7.8
CVE-2016-6768

A remote code execution vulnerability in the Framesequence library could enable an attacker using a specially crafted file to execute arbitrary code …

Mitigation only
Fix from $1,950 2017-01-12
Android MEDIUM 5.3
CVE-2016-6771

An elevation of privilege vulnerability in Telephony could enable a local malicious application to access system functions beyond its access level. T…

Mitigation only
Fix from $1,600 2017-01-12
Linux Kernel HIGH 7.8
CVE-2016-6775

An elevation of privilege vulnerability in the NVIDIA GPU driver could enable a local malicious application to execute arbitrary code within the cont…

Mitigation only
Fix from $1,950 2017-01-12
Linux Kernel HIGH 7.8
CVE-2016-6776

An elevation of privilege vulnerability in the NVIDIA GPU driver could enable a local malicious application to execute arbitrary code within the cont…

Mitigation only
Fix from $1,950 2017-01-12
Linux Kernel HIGH 7.8
CVE-2016-6777

An elevation of privilege vulnerability in the NVIDIA GPU driver could enable a local malicious application to execute arbitrary code within the cont…

Mitigation only
Fix from $1,950 2017-01-12
Linux Kernel HIGH 7.0
CVE-2016-6778

An elevation of privilege vulnerability in the HTC sound codec driver could enable a local malicious application to execute arbitrary code within the…

Mitigation only
Fix from $1,950 2017-01-12
Linux Kernel HIGH 7.0
CVE-2016-6779

An elevation of privilege vulnerability in the HTC sound codec driver could enable a local malicious application to execute arbitrary code within the…

Mitigation only
Fix from $1,950 2017-01-12
Linux Kernel HIGH 7.0
CVE-2016-6780

An elevation of privilege vulnerability in the HTC sound codec driver could enable a local malicious application to execute arbitrary code within the…

Mitigation only
Fix from $1,950 2017-01-12
Linux Kernel HIGH 7.0
CVE-2016-6781

An elevation of privilege vulnerability in the MediaTek driver could enable a local malicious application to execute arbitrary code within the contex…

Mitigation only
Fix from $1,950 2017-01-12
Population Health CRITICAL 9.8
CVE-2015-4594EPSS 6%

eClinicalWorks Population Health (CCMR) suffers from a session fixation vulnerability. When authenticating a user, the application does not assign a …

No fix yet
Fix from $2,300 2017-01-10
Lxc HIGH 8.6
CVE-2016-10124

An issue was discovered in Linux Containers (LXC) before 2016-02-22. When executing a program via lxc-attach, the nonpriv session can escape to the p…

Fix: after 2.0.0
Fix from $1,950 2017-01-09
Internet Security MEDIUM 5.5
CVE-2016-4304

A denial of service vulnerability exists in the syscall filtering functionality of the Kaspersky Internet Security KLIF driver. A specially crafted n…

No fix yet
Fix from $1,600 2017-01-06
Internet Security MEDIUM 5.5
CVE-2016-4305

A denial of service vulnerability exists in the syscall filtering functionality of Kaspersky Internet Security KLIF driver. A specially crafted nativ…

No fix yet
Fix from $1,600 2017-01-06
Internet Security MEDIUM 5.5
CVE-2016-4307

A denial of service vulnerability exists in the IOCTL handling functionality of Kaspersky Internet Security KL1 driver. A specially crafted IOCTL sig…

No fix yet
Fix from $1,600 2017-01-06
Slurm HIGH 8.1
CVE-2016-10030

The _prolog_error function in slurmd/req.c in Slurm before 15.08.13, 16.x before 16.05.7, and 17.x before 17.02.0-pre4 has a vulnerability in how the…

Fix: after 15.08.12
Fix from $1,950 2017-01-05
Piwigo CRITICAL 9.8
CVE-2016-10105

admin/plugin.php in Piwigo through 2.8.3 doesn't validate the sections variable while using it to include files. This can cause information disclosur…

Fix: after 2.8.3
Fix from $2,300 2017-01-03
Serendipity CRITICAL 9.8
CVE-2016-10082

include/functions_installer.inc.php in Serendipity through 2.0.5 is vulnerable to File Inclusion and a possible Code Execution attack during a first-…

Fix: after 2.0.5
Fix from $2,300 2016-12-30
Piwigo HIGH 7.2
CVE-2016-10084

admin/batch_manager.php in Piwigo through 2.8.3 allows remote authenticated administrators to conduct File Inclusion attacks via the $page['tab'] var…

Fix: after 2.8.3
Fix from $1,950 2016-12-30
Piwigo HIGH 7.2
CVE-2016-10085

admin/languages.php in Piwigo through 2.8.3 allows remote authenticated administrators to conduct File Inclusion attacks via the tab parameter.

Fix: after 2.8.3
Fix from $1,950 2016-12-30
Rabbitmq Server CRITICAL 9.8
CVE-2016-9877

An issue was discovered in Pivotal RabbitMQ 3.x before 3.5.8 and 3.6.x before 3.6.6 and RabbitMQ for PCF 1.5.x before 1.5.20, 1.6.x before 1.6.12, an…

Mitigation only
Fix from $2,300 2016-12-29
Kmail HIGH 8.1
CVE-2016-7967

KMail since version 5.3.0 used a QWebEngine based viewer that had JavaScript enabled. Since the generated html is executed in the local file security…

Fix: after 5.3.0
Fix from $1,950 2016-12-23
Chrome MEDIUM 6.5
CVE-2016-5189

Google Chrome prior to 54.0.2840.59 for Windows, Mac, and Linux; 54.0.2840.85 for Android permitted navigation to blob URLs with non-canonical origin…

Fix: after 53.0.2785.143
Fix from $1,600 2016-12-18
Chrome MEDIUM 6.5
CVE-2016-5192

Blink in Google Chrome prior to 54.0.2840.59 for Windows missed a CORS check on redirect in TextTrackLoader, which allowed a remote attacker to bypas…

Fix: after 53.0.2785.143
Fix from $1,600 2016-12-18
Apport MEDIUM 6.5
CVE-2016-9951EPSS 7%

An issue was discovered in Apport before 2.20.4. A malicious Apport crash file can contain a restart command in `RespawnCommand` or `ProcCmdline` fie…

Fix: after 2.20.3
Fix from $1,600 2016-12-17
Gpu Driver HIGH 7.8
CVE-2016-8821

All versions of NVIDIA Windows GPU Display Driver contain a vulnerability in the kernel mode layer handler for DxgDdiEscape where improper access con…

Patch available
Fix from $1,950 2016-12-16