Vulnerability index

Browse CVEs

1,961 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Resource Management ErrorsCWE-399 × clear
Unified Communications Manager HIGH 7.8
CVE-2015-0751

Cisco IP Phone 7861, when firmware from Cisco Unified Communications Manager 10.3(1) is used, allows remote attackers to cause a denial of service vi…

Mitigation only
Fix from $1,950 2015-05-29
Nbd HIGH 7.8
CVE-2013-7441

The modern style negotiation in Network Block Device (nbd-server) 2.9.22 through 3.3 allows remote attackers to cause a denial of service (root proce…

Patch available
Fix from $1,950 2015-05-29
Wireshark MEDIUM 5.0
CVE-2015-3813

The fragment_add_work function in epan/reassemble.c in the packet-reassembly feature in Wireshark 1.12.x before 1.12.5 does not properly determine th…

Mitigation only
Fix from $1,600 2015-05-26
Linux HIGH 7.8
CVE-2015-3812

Multiple memory leaks in the x11_init_protocol function in epan/dissectors/packet-x11.c in the X11 dissector in Wireshark 1.10.x before 1.10.14 and 1…

Patch available
Fix from $1,950 2015-05-26
Wireshark HIGH 7.8
CVE-2015-3810

epan/dissectors/packet-websocket.c in the WebSocket dissector in Wireshark 1.12.x before 1.12.5 uses a recursive algorithm, which allows remote attac…

Mitigation only
Fix from $1,950 2015-05-26
Sdn Van Controller HIGH 7.8
CVE-2015-2122

The REST layer on HP SDN VAN Controller devices 2.5 and earlier allows remote attackers to cause a denial of service via network traffic to the REST …

Fix: after 2.5
Fix from $1,950 2015-05-25
Endpoint Manager Family MEDIUM 5.0
CVE-2014-8927

Common Inventory Technology (CIT) before 2.7.0.2050 in IBM License Metric Tool 7.2.2, 7.5, and 9; Endpoint Manger for Software Use Analysis 9; and Ti…

Patch available
Fix from $1,600 2015-05-25
Endpoint Manager Family MEDIUM 5.0
CVE-2014-8926

Common Inventory Technology (CIT) before 2.7.0.2050 in IBM License Metric Tool 7.2.2, 7.5, and 9; Endpoint Manger for Software Use Analysis 9; and Ti…

Patch available
Fix from $1,600 2015-05-25
Websphere Portal HIGH 7.8
CVE-2015-1899

IBM WebSphere Portal 8.5 through CF05 allows remote attackers to cause a denial of service (CPU consumption) via unspecified vectors.

Patch available
Fix from $1,950 2015-05-25
Telepresence Tc Software HIGH 7.8
CVE-2015-0722

The network drivers in Cisco TelePresence T, Cisco TelePresence TE, and Cisco TelePresence TC before 7.3.2 allow remote attackers to cause a denial o…

Mitigation only
Fix from $1,950 2015-05-25
Adaptive Security Appliance Software MEDIUM 5.0
CVE-2015-0742

The Protocol Independent Multicast (PIM) application in Cisco Adaptive Security Appliance (ASA) Software 9.2(0.0), 9.2(0.104), 9.2(3.1), 9.2(3.4), 9.…

Mitigation only
Fix from $1,600 2015-05-21
Unzoo HIGH 7.8
CVE-2015-1846

unzoo allows remote attackers to cause a denial of service (infinite loop and resource consumption) via unspecified vectors to the (1) ExtrArch or (2…

Mitigation only
Fix from $1,950 2015-05-19
Fedora HIGH 7.8
CVE-2015-1868EPSS 82%

The label decompression functionality in PowerDNS Recursor 3.5.x, 3.6.x before 3.6.3, and 3.7.x before 3.7.2 and Authoritative (Auth) Server 3.2.x, 3…

Mitigation only
Fix from $1,950 2015-05-18
Wireless Lan Controller Software MEDIUM 6.1
CVE-2015-0723

The wireless web-authentication subsystem on Cisco Wireless LAN Controller (WLC) devices 7.5.x and 7.6.x before 7.6.120 allows remote attackers to ca…

Mitigation only
Fix from $1,600 2015-05-16
iOS MEDIUM 6.1
CVE-2015-0731

The ISDN implementation in Cisco IOS 15.3S allows remote attackers to cause a denial of service (device reload) via malformed Q931 SETUP messages, ak…

Mitigation only
Fix from $1,600 2015-05-16
Debian Linux MEDIUM 5.0
CVE-2015-0971

The DER parser in Suricata before 2.0.8 allows remote attackers to cause a denial of service (crash) via vectors related to SSL/TLS certificates.

Fix: after 2.0.7
Fix from $1,600 2015-05-14
Ubuntu Linux MEDIUM 5.0
CVE-2015-2668

ClamAV before 0.98.7 allows remote attackers to cause a denial of service (infinite loop) via a crafted xz archive file.

Fix: after 0.98.6
Fix from $1,600 2015-05-12
Ubuntu Linux MEDIUM 5.0
CVE-2015-2222

ClamAV before 0.98.7 allows remote attackers to cause a denial of service (crash) via a crafted petite packed file.

Fix: after 0.98.6
Fix from $1,600 2015-05-12
Ubuntu Linux MEDIUM 5.0
CVE-2015-2221

ClamAV before 0.98.7 allows remote attackers to cause a denial of service (infinite loop) via a crafted y0da cryptor file.

Fix: after 0.98.6
Fix from $1,600 2015-05-12
Ubuntu Linux MEDIUM 5.0
CVE-2015-2170

The upx decoder in ClamAV before 0.98.7 allows remote attackers to cause a denial of service (crash) via a crafted file.

Fix: after 0.98.6
Fix from $1,600 2015-05-12
Pillow MEDIUM 5.0
CVE-2014-3598

The Jpeg2KImagePlugin plugin in Pillow before 2.5.3 allows remote attackers to cause a denial of service via a crafted image.

Fix: after 2.5.2
Fix from $1,600 2015-05-01
Staros MEDIUM 5.0
CVE-2015-0712

The session-manager service in Cisco StarOS 12.0, 12.2(300), 14.0, and 14.0(600) on ASR 5000 devices allows remote attackers to cause a denial of ser…

Mitigation only
Fix from $1,600 2015-05-01
Staros MEDIUM 5.0
CVE-2015-0711

The hamgr service in the IPv6 Proxy Mobile (PM) implementation in Cisco StarOS 18.1.0.59776 on ASR 5000 devices allows remote attackers to cause a de…

Mitigation only
Fix from $1,600 2015-04-29
Ios Xe MEDIUM 6.1
CVE-2015-0710

The Overlay Transport Virtualization (OTV) implementation in Cisco IOS XE 3.10S allows remote attackers to cause a denial of service (device reload) …

Mitigation only
Fix from $1,600 2015-04-29
Ios Xe MEDIUM 6.8
CVE-2015-0709

Cisco IOS 15.5S and IOS XE allow remote authenticated users to cause a denial of service (device crash) by leveraging knowledge of the RADIUS secret …

Mitigation only
Fix from $1,600 2015-04-29
Ios Xe MEDIUM 6.1
CVE-2015-0708

Cisco IOS 15.4S, 15.4SN, and 15.5S and IOS XE 3.13S and 3.14S allow remote attackers to cause a denial of service (device crash) by including an IA_N…

Mitigation only
Fix from $1,600 2015-04-29
Websphere Portal HIGH 7.8
CVE-2015-1886

The Remote Document Conversion Service (DCS) in IBM WebSphere Portal 6.1.0 through 6.1.0.6 CF27, 6.1.5 through 6.1.5.3 CF27, 7.0.0 through 7.0.0.2 CF…

Patch available
Fix from $1,950 2015-04-27
Ios Xr HIGH 7.8
CVE-2015-0695

Cisco IOS XR 4.3.4 through 5.3.0 on ASR 9000 devices, when uRPF, PBR, QoS, or an ACL is configured, does not properly handle bridge-group virtual int…

Mitigation only
Fix from $1,950 2015-04-17
Mediawiki HIGH 7.1
CVE-2015-2942

MediaWiki before 1.19.24, 1.2x before 1.23.9, and 1.24.x before 1.24.2, when using HHVM, allows remote attackers to cause a denial of service (CPU an…

Fix: after 1.19.23
Fix from $1,950 2015-04-13
Mediawiki HIGH 7.1
CVE-2015-2937

MediaWiki before 1.19.24, 1.2x before 1.23.9, and 1.24.x before 1.24.2, when using HHVM or Zend PHP, allows remote attackers to cause a denial of ser…

Fix: after 1.19.23
Fix from $1,950 2015-04-13