Vulnerability index

Browse CVEs

5,953 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper Access ControlCWE-284 × clear
Ethernet\/ip Firmware HIGH 7.5
CVE-2012-6442EPSS 36%

When an affected product receives a valid CIP message from an unauthorized or unintended source to Port 2222/TCP, Port 2222/UDP, Port 44818/TCP, or P…

Mitigation only
Fix from $1,950 2013-01-24
Codesys Runtime System CRITICAL 9.8
CVE-2012-6068EPSS 5%

The Runtime Toolkit in CODESYS Runtime System 2.3.x and 2.4.x does not require authentication, which allows remote attackers to execute commands via …

Mitigation only
Fix from $2,300 2013-01-21
Ubuntu Linux CRITICAL 9.8
CVE-2013-0422 KEVEPSS 98%

Multiple vulnerabilities in Oracle Java 7 before Update 11 allow remote attackers to execute arbitrary code by (1) using the public getMBeanInstantia…

Mitigation only
Fix from $2,300 2013-01-10
Jre CRITICAL 9.8
CVE-2012-5076 KEVEPSS 91%

Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 7 and earlier allows remote attackers to affect …

Patch available
Fix from $2,300 2012-10-16
Enterprise Linux Desktop CRITICAL 9.8
CVE-2012-4681 KEVEPSS 99%

Multiple vulnerabilities in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 6 and earlier allow remote attackers to execute a…

Mitigation only
Fix from $2,300 2012-08-28
Debian Linux MEDIUM 5.0
CVE-2012-2351

The default configuration of the auth/saml plugin in Mahara before 1.4.2 sets the "Match username attribute to Remote username" option to false, whic…

Fix: after 1.4.1
Fix from $1,600 2012-07-12
Icedtea6 CRITICAL 9.8
CVE-2012-1723 KEVEPSS 94%

Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 update 4 and earlier, 6 update 32 and earlier, 5 update…

Fix: 1.10.8 / 1.11.3+
Fix from $2,300 2012-06-16
iOS MEDIUM 6.1
CVE-2012-1327

dot11t/t_if_dot11_hal_ath.c in Cisco IOS 12.3, 12.4, 15.0, and 15.1 allows remote attackers to cause a denial of service (assertion failure and reboo…

Mitigation only
Fix from $1,600 2012-05-03
iOS MEDIUM 5.4
CVE-2011-4016

The PPP implementation in Cisco IOS 12.2 and 15.0 through 15.2, when Point-to-Point Termination and Aggregation (PTA) and L2TP are used, allows remot…

Mitigation only
Fix from $1,600 2012-05-02
Ubuntu Linux CRITICAL 9.8
CVE-2011-3544 KEVEPSS 97%

Unspecified vulnerability in the Java Runtime Environment component in Oracle Java SE JDK and JRE 7 and 6 Update 27 and earlier allows remote untrust…

Fix: 1.6.0+
Fix from $2,300 2011-10-19
Adaptive Security Appliance MEDIUM 6.8
CVE-2009-2631

Multiple clientless SSL VPN products that run in web browsers, including Stonesoft StoneGate; Cisco ASA; SonicWALL E-Class SSL VPN and SonicWALL SSL …

Mitigation only
Fix from $1,600 2009-12-04
Websphere Application Server HIGH 7.5
CVE-2009-2092

IBM WebSphere Application Server (WAS) 7.0 before 7.0.0.5 does not properly read the portletServingEnabled parameter in ibm-portlet-ext.xmi, which al…

Patch available
Fix from $1,950 2009-08-13
Spoonftp HIGH 7.5
CVE-2001-0781

Buffer overflow in SpoonFTP 1.0.0.12 allows remote attackers to execute arbitrary code via a long argument to the commands (1) CWD or (2) LIST.

Mitigation only
Fix from $1,950 2001-05-30