Vulnerability index

Browse CVEs

1,961 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Resource Management ErrorsCWE-399 × clear
Melsec Fx3g HIGH 7.8
CVE-2015-3938

The HTTP application on Mitsubishi Electric MELSEC FX3G PLC devices before April 2015 allows remote attackers to cause a denial of service (device ou…

Mitigation only
Fix from $1,950 2015-10-06
Email Security Appliance MEDIUM 6.8
CVE-2015-6309

Cisco Email Security Appliance (ESA) 8.5.6-106 and 9.6.0-042 allows remote authenticated users to cause a denial of service (file-descriptor consumpt…

Mitigation only
Fix from $1,600 2015-10-02
Firepower MEDIUM 6.1
CVE-2015-6307

Cisco FirePOWER (formerly Sourcefire) 7000 and 8000 devices with software 5.4.0.1 allow remote attackers to cause a denial of service (inspection-eng…

Mitigation only
Fix from $1,600 2015-09-28
Wireless Lan Controller Software MEDIUM 5.0
CVE-2015-6302

The RADIUS functionality on Cisco Wireless LAN Controller (WLC) devices with software 7.0(250.0) and 7.0(252.0) allows remote attackers to disconnect…

Mitigation only
Fix from $1,600 2015-09-26
Ios Xe HIGH 7.8
CVE-2015-6282

Cisco IOS XE 2.x and 3.x before 3.10.6S, 3.11.xS through 3.13.xS before 3.13.3S, and 3.14.xS through 3.15.xS before 3.15.1S allows remote attackers t…

Mitigation only
Fix from $1,950 2015-09-26
Ios Xr MEDIUM 5.0
CVE-2015-6301

The DHCPv6 server in Cisco IOS on ASR 9000 devices with software 5.2.0 Base allows remote attackers to cause a denial of service (process reset) via …

Mitigation only
Fix from $1,600 2015-09-20
Ios Xr MEDIUM 5.0
CVE-2015-6297

The DHCPv6 server in Cisco IOS on ASR 9000 devices with software 5.2.0 Base allows remote attackers to cause a denial of service (process reset) via …

Mitigation only
Fix from $1,600 2015-09-18
iOS MEDIUM 6.1
CVE-2015-6294

Cisco IOS 15.2(3)E and earlier and IOS XE 3.6(2)E and earlier allow remote attackers to cause a denial of service (functionality loss) via crafted Ci…

Mitigation only
Fix from $1,600 2015-09-18
Websphere Portal HIGH 7.8
CVE-2015-1943

IBM WebSphere Portal 6.1.0.x through 6.1.0.6 CF27, 6.1.5.x through 6.1.5.3 CF27, 7.0.x through 7.0.0.2 CF29, 8.0.x before 8.0.0.1 CF17, and 8.5.0 bef…

Patch available
Fix from $1,950 2015-09-14
Debian Linux MEDIUM 5.0
CVE-2014-9745

The parse_encoding function in type1/t1load.c in FreeType before 2.5.3 allows remote attackers to cause a denial of service (infinite loop) via a "br…

Fix: after 2.5.2
Fix from $1,600 2015-09-14
Content Security Management Appliance MEDIUM 5.0
CVE-2015-6288

Cisco Content Security Management Appliance (SMA) 7.8.0-000 does not properly validate credentials, which allows remote attackers to cause a denial o…

Mitigation only
Fix from $1,600 2015-09-14
Web Security Virtual Appliance MEDIUM 5.0
CVE-2015-6287

Cisco Web Security Appliance (WSA) 8.0.6-078 and 8.0.6-115 allows remote attackers to cause a denial of service (service outage) via a flood of TCP t…

Mitigation only
Fix from $1,600 2015-09-14
Application Visibility And Control MEDIUM 5.7
CVE-2015-6286

Cisco Application Visibility and Control (AVC) 15.3(3)JA, when FlexConnect is enabled, allows remote attackers to cause a denial of service (access-p…

Mitigation only
Fix from $1,600 2015-09-14
Websphere Mq MEDIUM 5.0
CVE-2015-2013

IBM WebSphere MQ 7.0.1 before 7.0.1.13 allows remote attackers to cause a denial of service (channel-agent abend and process outage) via a crafted se…

Patch available
Fix from $1,600 2015-09-14
Nova MEDIUM 6.8
CVE-2015-3241

OpenStack Compute (nova) 2015.1 through 2015.1.1, 2014.2.3, and earlier does not stop the migration process when the instance is deleted, which allow…

Fix: after 2015.1.1
Fix from $1,600 2015-09-08
Invision Power Board HIGH 7.8
CVE-2015-6812

Invision Power Services IPS Community Suite (aka Invision Power Board, IPB, or Power Board) before 4.0.12.1 allows remote attackers to cause a denial…

Fix: after 4.0.11
Fix from $1,950 2015-09-04
Nx Os MEDIUM 6.1
CVE-2015-6277

The ARP implementation in Cisco NX-OS on Nexus 1000V devices for VMware vSphere 5.2(1)SV3(1.4), Nexus 3000 devices 7.3(0)ZD(0.47), Nexus 4000 devices…

Mitigation only
Fix from $1,600 2015-09-02
Mediawiki MEDIUM 5.0
CVE-2015-6733

GeSHi, as used in the SyntaxHighlight_GeSHi extension and MediaWiki before 1.23.10, 1.24.x before 1.24.3, and 1.25.x before 1.25.2, allows remote att…

Fix: after 1.23.9
Fix from $1,600 2015-09-01
Ios Xe HIGH 7.8
CVE-2015-6272

Cisco IOS XE 2.1.0 through 2.2.3 and 2.3.0 on ASR 1000 devices, when NAT Application Layer Gateway is used, allows remote attackers to cause a denial…

Mitigation only
Fix from $1,950 2015-08-31
Ios Xe HIGH 7.8
CVE-2015-6271

Cisco IOS XE 2.1.0 through 2.4.3 and 2.5.0 on ASR 1000 devices, when NAT Application Layer Gateway is used, allows remote attackers to cause a denial…

Mitigation only
Fix from $1,950 2015-08-31
Ios Xe HIGH 7.8
CVE-2015-6270

Cisco IOS XE before 2.2.3 on ASR 1000 devices allows remote attackers to cause a denial of service (Embedded Services Processor crash) via a crafted …

Mitigation only
Fix from $1,950 2015-08-31
Ios Xe HIGH 7.8
CVE-2015-6269

Cisco IOS XE before 2.2.3 on ASR 1000 devices allows remote attackers to cause a denial of service (Embedded Services Processor crash) via a crafted …

Mitigation only
Fix from $1,950 2015-08-31
Linux Kernel MEDIUM 5.0
CVE-2015-5366EPSS 6%

The (1) udp_recvmsg and (2) udpv6_recvmsg functions in the Linux kernel before 4.0.6 provide inappropriate -EAGAIN return values, which allows remote…

Fix: after 4.0.5
Fix from $1,600 2015-08-31
Linux Kernel HIGH 7.8
CVE-2015-5364EPSS 6%

The (1) udp_recvmsg and (2) udpv6_recvmsg functions in the Linux kernel before 4.0.6 do not properly consider yielding a processor, which allows remo…

Fix: 3.2.70 / 3.4.109+
Fix from $1,950 2015-08-31
Ios Xe HIGH 7.8
CVE-2015-6273

Cisco IOS XE before 3.1.2S on ASR 1000 devices mishandles the automatic setup of Virtual Fragment Reassembly (VFR) by certain firewall and NAT compon…

Mitigation only
Fix from $1,950 2015-08-29
Ios Xe HIGH 7.8
CVE-2015-6268

Cisco IOS XE before 2.2.3 on ASR 1000 devices allows remote attackers to cause a denial of service (Embedded Services Processor crash) via a crafted …

Mitigation only
Fix from $1,950 2015-08-29
Ios Xe HIGH 7.8
CVE-2015-6267

Cisco IOS XE before 2.2.3 on ASR 1000 devices allows remote attackers to cause a denial of service (Embedded Services Processor crash) via a crafted …

Mitigation only
Fix from $1,950 2015-08-29
Opensuse HIGH 7.8
CVE-2014-9744

Memory leak in PolarSSL before 1.3.9 allows remote attackers to cause a denial of service (memory consumption) via a large number of ClientHello mess…

Fix: after 1.3.8
Fix from $1,950 2015-08-24
Polarssl HIGH 7.8
CVE-2014-8628

Memory leak in PolarSSL before 1.2.12 and 1.3.x before 1.3.9 allows remote attackers to cause a denial of service (memory consumption) via a large nu…

Fix: after 1.2.11
Fix from $1,950 2015-08-24
Django MEDIUM 5.0
CVE-2015-5964

The (1) contrib.sessions.backends.base.SessionBase.flush and (2) cache_db.SessionStore.flush functions in Django 1.7.x before 1.7.10, 1.4.x before 1.…

Patch available
Fix from $1,600 2015-08-24