Vulnerability index

Browse CVEs

1,961 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Resource Management ErrorsCWE-399 × clear
Linux Kernel CRITICAL 10.0
CVE-2015-8104

The KVM subsystem in the Linux kernel through 4.2.6, and Xen 4.3.x through 4.6.x, allows guest OS users to cause a denial of service (host OS panic o…

Fix: after 5.0.13
Fix from $2,300 2015-11-16
Websphere Portal HIGH 7.8
CVE-2015-7419

IBM WebSphere Portal 8.0.0.1 before CF19 and 8.5.0 before CF09 allows remote attackers to cause a denial of service (memory consumption) via crafted …

Mitigation only
Fix from $1,950 2015-11-14
Aironet Access Point Software HIGH 7.8
CVE-2015-6367

Cisco Aironet 1800 devices with software 8.1(131.0) allow remote attackers to cause a denial of service (CPU consumption) by improperly establishing …

Mitigation only
Fix from $1,950 2015-11-14
Windows 10 MEDIUM 6.8
CVE-2015-6111EPSS 8%

IPSec in Microsoft Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT Gold and 8.1, and Windows 10 Gold and 1511 mishandles encrypti…

Patch available
Fix from $1,600 2015-11-11
Mediawiki MEDIUM 6.8
CVE-2015-8003

MediaWiki before 1.23.11, 1.24.x before 1.24.4, and 1.25.x before 1.25.3 does not throttle file uploads, which allows remote authenticated users to h…

Fix: after 1.23.10
Fix from $1,600 2015-11-09
Mediawiki MEDIUM 6.8
CVE-2015-8002

The chunked upload API (ApiUpload) in MediaWiki before 1.23.11, 1.24.x before 1.24.4, and 1.25.x before 1.25.3 allows remote authenticated users to c…

Fix: after 1.23.10
Fix from $1,600 2015-11-09
Web Security Appliance HIGH 7.8
CVE-2015-6292

The proxy-cache implementation in Cisco AsyncOS 8.0.x before 8.0.7-151, 8.1.x and 8.5.x before 8.5.2-004, 8.6.x and 8.7.x before 8.7.0-171-LD, and 8.…

Mitigation only
Fix from $1,950 2015-11-06
Web Security Appliance HIGH 7.8
CVE-2015-6321

Cisco AsyncOS before 8.5.7-042, 9.x before 9.1.0-032, 9.1.x before 9.1.1-023, and 9.5.x and 9.6.x before 9.6.0-042 on Email Security Appliance (ESA) …

Mitigation only
Fix from $1,950 2015-11-06
Web Security Appliance HIGH 7.8
CVE-2015-6293

Cisco AsyncOS 8.x before 8.0.8-113, 8.1.x and 8.5.x before 8.5.3-051, 8.6.x and 8.7.x before 8.7.0-171-LD, and 8.8.x before 8.8.0-085 on Web Security…

Mitigation only
Fix from $1,950 2015-11-06
Authoritative HIGH 7.8
CVE-2015-5470EPSS 11%

The label decompression functionality in PowerDNS Recursor before 3.6.4 and 3.7.x before 3.7.3 and Authoritative (Auth) Server before 3.3.3 and 3.4.x…

Fix: after 3.6.3
Fix from $1,950 2015-11-02
iOS MEDIUM 5.0
CVE-2015-6343

The SIP implementation in Cisco IOS 15.5(3)M on Cisco Unified Border Element (CUBE) devices allows remote attackers to cause a denial of service via …

Mitigation only
Fix from $1,600 2015-10-31
Sssd MEDIUM 6.8
CVE-2015-5292

Memory leak in the Privilege Attribute Certificate (PAC) responder plugin (sssd_pac_plugin.so) in System Security Services Daemon (SSSD) 1.10 before …

Patch available
Fix from $1,600 2015-10-29
Nova MEDIUM 6.8
CVE-2015-3280

OpenStack Compute (nova) before 2014.2.4 (juno) and 2015.1.x before 2015.1.2 (kilo) does not properly delete instances from compute nodes, which allo…

Fix: 2014.2.4 / 2015.1.2+
Fix from $1,600 2015-10-26
Owncloud Server HIGH 7.5
CVE-2015-6500

Directory traversal vulnerability in ownCloud Server before 8.0.6 and 8.1.x before 8.1.1 allows remote authenticated users to list directory contents…

Mitigation only
Fix from $1,950 2015-10-26
Adaptive Security Appliance Software HIGH 7.8
CVE-2015-6327

The IKEv1 implementation in Cisco Adaptive Security Appliance (ASA) software 7.2 and 8.2 before 8.2(5.58), 8.3 and 8.4 before 8.4(7.29), 8.5 through …

Mitigation only
Fix from $1,950 2015-10-25
Adaptive Security Appliance Software HIGH 7.8
CVE-2015-6326

Cisco Adaptive Security Appliance (ASA) software 7.2 and 8.2 before 8.2(5.58), 8.3 and 8.4 before 8.4(7.29), 8.5 through 8.7 before 8.7(1.17), 9.0 be…

Mitigation only
Fix from $1,950 2015-10-25
Adaptive Security Appliance Software HIGH 7.1
CVE-2015-6325

Cisco Adaptive Security Appliance (ASA) software 7.2 and 8.2 before 8.2(5.58), 8.3 and 8.4 before 8.4(7.29), 8.5 through 8.7 before 8.7(1.17), 9.0 be…

Mitigation only
Fix from $1,950 2015-10-25
Adaptive Security Appliance Software HIGH 7.1
CVE-2015-6324

The DHCPv6 relay implementation in Cisco Adaptive Security Appliance (ASA) software 9.0 before 9.0(4.37), 9.1 before 9.1(6.6), 9.2 before 9.2(4), 9.3…

Mitigation only
Fix from $1,950 2015-10-25
Mac Os X HIGH 7.1
CVE-2015-6994

The kernel in Apple iOS before 9.1 and OS X before 10.11.1 mishandles reuse of virtual memory, which allows attackers to cause a denial of service vi…

Fix: after 10.11.0
Fix from $1,950 2015-10-23
Owncloud HIGH 7.8
CVE-2015-4717

The filename sanitization component in ownCloud Server before 6.0.8, 7.0.x before 7.0.6, and 8.0.x before 8.0.4 does not properly handle $_GET parame…

Fix: after 6.0.7
Fix from $1,950 2015-10-21
Junos HIGH 7.8
CVE-2015-7752

The SSH server in Juniper Junos OS before 12.1X44-D50, 12.1X46 before 12.1X46-D35, 12.1X47 before 12.1X47-D25, 12.3 before 12.3R10, 12.3X48 before 12…

Mitigation only
Fix from $1,950 2015-10-19
Junos MEDIUM 5.0
CVE-2014-6449

Juniper Junos OS before 12.1X44-D50, 12.1X46 before 12.1X46-D35, 12.1X47 before 12.1X47-D25, 12.3 before 12.3R10, 12.3X48 before 12.3X48-D15, 13.2 be…

Mitigation only
Fix from $1,600 2015-10-16
Linux Kernel HIGH 7.8
CVE-2013-7445

The Direct Rendering Manager (DRM) subsystem in the Linux kernel through 4.x mishandles requests for Graphics Execution Manager (GEM) objects, which …

Fix: after 4.0.0
Fix from $1,950 2015-10-16
Revive Adserver MEDIUM 5.0
CVE-2015-7371

Revive Adserver before 3.2.2 does not restrict access to run-mpe.php, which allows remote attackers to run the Maintenance Priority Engine and possib…

Fix: after 3.2.1
Fix from $1,600 2015-10-14
Prime Infrastructure MEDIUM 5.0
CVE-2015-6332

Cisco Prime Infrastructure 2.2 allows remote attackers to cause a denial of service (daemon hang) by sending many SSL renegotiation requests, aka Bug…

Mitigation only
Fix from $1,600 2015-10-13
iOS MEDIUM 6.3
CVE-2015-6263

The RADIUS client implementation in Cisco IOS 15.4(3)M2.2, when a shared RADIUS secret is configured, allows remote RADIUS servers to cause a denial …

Mitigation only
Fix from $1,600 2015-10-12
Mac Os X MEDIUM 5.0
CVE-2015-7760

libxpc in launchd in Apple OS X before 10.11 does not restrict the creation of processes for network connections, which allows remote attackers to ca…

Fix: after 10.10.5
Fix from $1,600 2015-10-09
Wireless Lan Controller MEDIUM 6.1
CVE-2015-6311

Cisco Wireless LAN Controller (WLC) devices with software 7.0(240.0), 7.3(101.0), and 7.4(1.19) allow remote attackers to cause a denial of service (…

Mitigation only
Fix from $1,600 2015-10-08
Unified Communications Manager Im And Presence Service MEDIUM 5.0
CVE-2015-6310

The REST interface in Cisco Unified Communications Manager IM and Presence Service 11.5(1) allows remote attackers to cause a denial of service (SIP …

Mitigation only
Fix from $1,600 2015-10-08
Email Address HIGH 7.8
CVE-2015-7686

Algorithmic complexity vulnerability in Address.pm in the Email-Address module 1.908 and earlier for Perl allows remote attackers to cause a denial o…

Fix: after 1.908
Fix from $1,950 2015-10-06