Vulnerability index

Browse CVEs

1,961 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Resource Management ErrorsCWE-399 × clear
Swift HIGH 7.5
CVE-2016-0738

OpenStack Object Storage (Swift) before 2.3.1 (Kilo), 2.4.x, and 2.5.x before 2.5.1 (Liberty) do not properly close server connections, which allows …

Fix: after 2.3.0
Fix from $1,950 2016-01-29
Swift HIGH 7.5
CVE-2016-0737

OpenStack Object Storage (Swift) before 2.4.0 does not properly close client connections, which allows remote attackers to cause a denial of service …

Fix: after 2.3.0
Fix from $1,950 2016-01-29
300 Series Managed Switch Firmware MEDIUM 5.3
CVE-2016-1299

The web-management GUI implementation on Cisco Small Business SG300 devices 1.4.1.x allows remote attackers to cause a denial of service (HTTPS outag…

Mitigation only
Fix from $1,600 2016-01-27
Wide Area Application Services HIGH 7.5
CVE-2015-6421

cifs-ao in the CIFS optimization functionality on Cisco Wide Area Application Service (WAAS) and Virtual WAAS (vWAAS) devices 5.x before 5.3.5d and 5…

Mitigation only
Fix from $1,950 2016-01-27
Wolfssl HIGH 7.5
CVE-2015-6925

wolfSSL (formerly CyaSSL) before 3.6.8 allows remote attackers to cause a denial of service (resource consumption or traffic amplification) via a cra…

Fix: after 3.6.6
Fix from $1,950 2016-01-22
Big Iq Application Delivery Controller HIGH 7.5
CVE-2015-5516

Memory leak in the last hop kernel module in F5 BIG-IP LTM, GTM, and Link Controller 10.1.x, 10.2.x before 10.2.4 HF13, 11.x before 11.2.1 HF15, 11.3…

Mitigation only
Fix from $1,950 2016-01-20
Websphere Mq Light MEDIUM 5.3
CVE-2015-4942

IBM WebSphere MQ Light 1.x before 1.0.2 allows remote attackers to cause a denial of service (MQXR service crash) via a series of connect and disconn…

Mitigation only
Fix from $1,600 2016-01-18
Junos MEDIUM 5.3
CVE-2016-1260

Juniper Junos OS before 13.2X51-D36, 14.1X53 before 14.1X53-D25, and 15.2 before 15.2R1 on EX4300 series switches allow remote attackers to cause a d…

Mitigation only
Fix from $1,600 2016-01-15
Junos MEDIUM 5.3
CVE-2016-1256

Juniper Junos OS before 12.1X44-D55, 12.1X46 before 12.1X46-D40, 12.1X47 before 12.1X47-D25, 12.3 before 12.3R10, 12.3X48 before 12.3X48-D20, 13.2 be…

Mitigation only
Fix from $1,600 2016-01-15
Aironet Access Point Software HIGH 7.5
CVE-2015-6320

The IP ingress packet handler on Cisco Aironet 1800 devices with software 8.1(112.3) and 8.1(112.4) allows remote attackers to cause a denial of serv…

Mitigation only
Fix from $1,950 2016-01-15
Espace 7950 HIGH 7.5
CVE-2015-8231

Huawei eSpace 7910 and 7950 IP phones with software before V200R002C00SPC800 allow remote attackers with established sessions to cause a denial of se…

Mitigation only
Fix from $1,950 2016-01-11
Espace 8950 HIGH 7.5
CVE-2015-8230

Memory leak in Huawei eSpace 8950 IP phones with software before V200R003C00SPC300 allows remote attackers to cause a denial of service (memory consu…

Mitigation only
Fix from $1,950 2016-01-11
Owncloud HIGH 8.5
CVE-2016-1499

ownCloud Server before 8.0.10, 8.1.x before 8.1.5, and 8.2.x before 8.2.2 allow remote authenticated users to obtain sensitive information from a dir…

Fix: after 8.0.9
Fix from $1,950 2016-01-08
Android MEDIUM 6.2
CVE-2015-6646

The System V IPC implementation in the kernel in Android before 6.0 2016-01-01 allows attackers to cause a denial of service (global kernel resource …

Mitigation only
Fix from $1,600 2016-01-06
Ios Xr HIGH 7.5
CVE-2015-6432

Cisco IOS XR 4.2.0, 4.3.0, 5.0.0, 5.1.0, 5.2.0, 5.2.2, 5.2.4, 5.3.0, and 5.3.2 does not properly restrict the number of Path Computation Elements (PC…

Mitigation only
Fix from $1,950 2016-01-05
Mashups Center HIGH 7.7
CVE-2015-7400

The Lotus Mashups component in IBM Mashup Center 3.0.0.1 allows remote authenticated users to cause a denial of service (CPU consumption) via an XML …

Mitigation only
Fix from $1,950 2016-01-02
Ubuntu Linux HIGH 7.5
CVE-2015-7540EPSS 7%

The LDAP server in the AD domain controller in Samba 4.x before 4.1.22 does not check return values to ensure successful ASN.1 memory allocation, whi…

Fix: 4.1.22+
Fix from $1,950 2015-12-29
Samba MEDIUM 5.3
CVE-2015-3223EPSS 7%

The ldb_wildcard_compare function in ldb_match.c in ldb before 1.1.24, as used in the AD LDAP server in Samba 4.x before 4.1.22, 4.2.x before 4.2.7, …

Mitigation only
Fix from $1,600 2015-12-29
Ios Xe MEDIUM 6.5
CVE-2015-6431

Cisco IOS XE 16.1.1 allows remote attackers to cause a denial of service (device reload) via a packet with the 00-00-00-00-00-00 source MAC address, …

Mitigation only
Fix from $1,600 2015-12-23
Xen HIGH 7.8
CVE-2015-8341

The libxl toolstack library in Xen 4.1.x through 4.6.x does not properly release mappings of files used as kernels and initial ramdisks when managing…

Mitigation only
Fix from $1,950 2015-12-17
Unified Communications Manager MEDIUM 5.0
CVE-2015-6425

The WebApplications Identity Management subsystem in Cisco Unified Communications Manager 10.5(0.98000.88) allows remote attackers to cause a denial …

Mitigation only
Fix from $1,600 2015-12-16
Ubuntu Linux HIGH 7.1
CVE-2015-5312

The xmlStringLenDecodeEntities function in parser.c in libxml2 before 2.9.3 does not properly prevent entity expansion, which allows context-dependen…

Fix: after 10.11.3
Fix from $1,950 2015-12-15
Integrated Management Controller Supervisor MEDIUM 6.8
CVE-2015-6399

The Supervisor 1.0.0.0 and 1.0.0.1 in Cisco Integrated Management Controller (IMC) before 2.0(9) allows remote authenticated users to cause a denial …

Mitigation only
Fix from $1,600 2015-12-15
Unified Computing System HIGH 7.1
CVE-2015-6415

Cisco Unified Computing System (UCS) 2.2(3f)A on Fabric Interconnect 6200 devices allows remote attackers to cause a denial of service (CPU consumpti…

Mitigation only
Fix from $1,950 2015-12-12
Unified Sip Phone 3900 Firmware HIGH 7.8
CVE-2015-6391

Cisco Unified SIP 3905 phones allow remote attackers to cause a denial of service (resource consumption and functionality loss) via a large amount of…

Mitigation only
Fix from $1,950 2015-12-05
Web Security Appliance MEDIUM 5.0
CVE-2015-6386

The passthrough FTP feature on Cisco Web Security Appliance (WSA) devices with software 8.0.7-142 and 8.5.1-021 allows remote attackers to cause a de…

Mitigation only
Fix from $1,600 2015-12-01
Asr 5000 Series Software MEDIUM 5.0
CVE-2015-6382

Cisco ASR 5000 devices with software 16.0(900) allow remote attackers to cause a denial of service (telnetd process restart) via a TELNET connection,…

Mitigation only
Fix from $1,600 2015-11-26
Adaptive Security Appliance Software MEDIUM 6.8
CVE-2015-6379

The XML parser in the management interface in Cisco Adaptive Security Appliance (ASA) Software 8.4 allows remote authenticated users to cause a denia…

Mitigation only
Fix from $1,600 2015-11-25
Virtual Topology System HIGH 7.8
CVE-2015-6377

Cisco Virtual Topology System (VTS) 2.0(0) and 2.0(1) allows remote attackers to cause a denial of service (CPU and memory consumption, and TCP port …

Mitigation only
Fix from $1,950 2015-11-24
Ne Router Software MEDIUM 5.0
CVE-2015-8087

Huawei NE20E-S, NE40E-M, and NE40E-M2 routers with software before V800R007C10SPC100 and NE40E and NE80E routers with software before V800R007C00SPC1…

Mitigation only
Fix from $1,600 2015-11-19