Vulnerability index

Browse CVEs

1,961 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Resource Management ErrorsCWE-399 × clear
Omnifind MEDIUM 5.0
CVE-2010-3899

IBM OmniFind Enterprise Edition 8.x and 9.x performs web crawls with an unlimited recursion depth, which allows remote web servers to cause a denial …

No fix yet
Fix from $1,600 2010-11-12
Tivoli Directory Server MEDIUM 5.0
CVE-2010-4217

Use-after-free vulnerability in the proxy server in IBM Tivoli Directory Server (TDS) 6.0.0.x before 6.0.0.8-TIV-ITDS-IF0007 and 6.1.x before 6.1.0-T…

Mitigation only
Fix from $1,600 2010-11-09
Soliddb MEDIUM 5.0
CVE-2010-4055EPSS 7%

Stack consumption vulnerability in solid.exe in IBM solidDB 6.5.0.3 and earlier allows remote attackers to cause a denial of service (memory consumpt…

Fix: after 6.5.0.3
Fix from $1,600 2010-10-23
Firefox HIGH 9.3
CVE-2010-3180

Use-after-free vulnerability in the nsBarProp function in Mozilla Firefox before 3.5.14 and 3.6.x before 3.6.11, Thunderbird before 3.0.9 and 3.1.x b…

Fix: after 3.5.13
Fix from $1,950 2010-10-21
Openconnect MEDIUM 5.0
CVE-2009-5009

Double free vulnerability in OpenConnect before 1.40 might allow remote AnyConnect SSL VPN servers to cause a denial of service (application crash) o…

Fix: after 1.30
Fix from $1,600 2010-10-14
Word HIGH 9.3
CVE-2010-3217EPSS 40%

Double free vulnerability in Microsoft Word 2002 SP3 allows remote attackers to execute arbitrary code via a Word document with crafted List Format O…

Mitigation only
Fix from $1,950 2010-10-13
Tivoli Storage Manager Fastback MEDIUM 5.0
CVE-2010-3755

The _DAS_ReadBlockReply function in FastBackServer.exe in the Server in IBM Tivoli Storage Manager (TSM) FastBack 5.5.0.0 through 5.5.6.0 and 6.1.0.0…

Mitigation only
Fix from $1,600 2010-10-05
Tivoli Storage Manager Fastback HIGH 7.8
CVE-2010-3760

FastBackMount.exe in the Mount service in IBM Tivoli Storage Manager (TSM) FastBack 5.5.0.0 through 5.5.6.0 and 6.1.0.0 through 6.1.0.1 does not prop…

Mitigation only
Fix from $1,950 2010-10-05
iOS HIGH 7.8
CVE-2010-2836

Memory leak in the SSL VPN feature in Cisco IOS 12.4, 15.0, and 15.1, when HTTP port redirection is enabled, allows remote attackers to cause a denia…

Patch available
Fix from $1,950 2010-09-23
Safari HIGH 9.3
CVE-2010-1806EPSS 5%

Use-after-free vulnerability in Apple Safari 4.x before 4.1.2 and 5.x before 5.0.2 allows remote attackers to execute arbitrary code or cause a denia…

Patch available
Fix from $1,950 2010-09-10
Ubuntu Linux MEDIUM 6.8
CVE-2010-1781

Double free vulnerability in WebKit in Apple iOS before 4.1 on the iPhone and iPod touch allows remote attackers to execute arbitrary code or cause a…

Fix: 4.1+
Fix from $1,600 2010-09-09
Ubuntu Linux MEDIUM 6.8
CVE-2010-1812

Use-after-free vulnerability in WebKit in Apple iOS before 4.1 on the iPhone and iPod touch, and webkitgtk before 1.2.6, allows remote attackers to e…

Fix: 1.2.6 / 4.1+
Fix from $1,600 2010-09-09
Ubuntu Linux MEDIUM 6.8
CVE-2010-1815

Use-after-free vulnerability in WebKit in Apple iOS before 4.1 on the iPhone and iPod touch, and webkitgtk before 1.2.6, allows remote attackers to e…

Fix: 1.2.6 / 4.1+
Fix from $1,600 2010-09-09
Firefox HIGH 9.3
CVE-2010-2760

Use-after-free vulnerability in the nsTreeSelection function in Mozilla Firefox before 3.5.12 and 3.6.x before 3.6.9, Thunderbird before 3.0.7 and 3.…

Fix: after 3.5.11
Fix from $1,950 2010-09-09
Firefox HIGH 9.3
CVE-2010-2767

The navigator.plugins implementation in Mozilla Firefox before 3.5.12 and 3.6.x before 3.6.9, Thunderbird before 3.0.7 and 3.1.x before 3.1.3, and Se…

Fix: after 3.5.11
Fix from $1,950 2010-09-09
Firefox HIGH 9.3
CVE-2010-3167EPSS 7%

The nsTreeContentView function in Mozilla Firefox before 3.5.12 and 3.6.x before 3.6.9, Thunderbird before 3.0.7 and 3.1.x before 3.1.3, and SeaMonke…

Fix: after 3.5.11
Fix from $1,950 2010-09-09
Unified Presence Server HIGH 7.8
CVE-2010-2839

SIPD in Cisco Unified Presence 6.x before 6.0(7) and 7.x before 7.0(8) allows remote attackers to cause a denial of service (stack memory corruption …

Patch available
Fix from $1,950 2010-08-26
Tivoli Storage Manager Fastback HIGH 7.5
CVE-2010-3058

The Mount service in IBM Tivoli Storage Manager (TSM) FastBack 5.x.x before 5.5.7, and 6.1.0.0, establishes an open UDP port, which might allow remot…

Mitigation only
Fix from $1,950 2010-08-20
Squirrelmail MEDIUM 5.0
CVE-2010-2813

functions/imap_general.php in SquirrelMail before 1.4.21 does not properly handle 8-bit characters in passwords, which allows remote attackers to cau…

Fix: after 1.4.20
Fix from $1,600 2010-08-19
Flash Media Server MEDIUM 5.0
CVE-2010-2219

Unspecified vulnerability in Adobe Flash Media Server (FMS) before 3.0.6, and 3.5.x before 3.5.4, allows attackers to cause a denial of service (memo…

Fix: after 3.0.5
Fix from $1,600 2010-08-11
Safari HIGH 9.3
CVE-2010-1786EPSS 6%

Use-after-free vulnerability in WebKit in Apple Safari before 5.0.1 on Mac OS X 10.5 through 10.6 and Windows, and before 4.1.1 on Mac OS X 10.4; and…

Fix: after 5.0
Fix from $1,950 2010-07-30
Safari HIGH 9.3
CVE-2010-1793EPSS 7%

Multiple use-after-free vulnerabilities in WebKit in Apple Safari before 5.0.1 on Mac OS X 10.5 through 10.6 and Windows, and before 4.1.1 on Mac OS …

Fix: after 5.0
Fix from $1,950 2010-07-30
Firefox HIGH 9.3
CVE-2010-1209EPSS 5%

Use-after-free vulnerability in the NodeIterator implementation in Mozilla Firefox 3.5.x before 3.5.11 and 3.6.x before 3.6.7, and SeaMonkey before 2…

Fix: after 2.0.5
Fix from $1,950 2010-07-30
Safari HIGH 9.3
CVE-2010-1780EPSS 6%

Use-after-free vulnerability in WebKit in Apple Safari before 5.0.1 on Mac OS X 10.5 through 10.6 and Windows, and before 4.1.1 on Mac OS X 10.4; and…

Fix: after 5.0
Fix from $1,950 2010-07-30
Firefox HIGH 10.0
CVE-2010-2755

layout/generic/nsObjectFrame.cpp in Mozilla Firefox 3.6.7 does not properly free memory in the parameter array of a plugin instance, which allows rem…

Mitigation only
Fix from $1,950 2010-07-30
Openttd MEDIUM 5.0
CVE-2010-2534

The NetworkSyncCommandQueue function in network/network_command.cpp in OpenTTD before 1.0.3 does not properly clear a pointer in a linked list, which…

Patch available
Fix from $1,600 2010-07-28
Acrobat HIGH 9.3
CVE-2010-1285

Adobe Reader and Acrobat 9.x before 9.3.3, and 8.x before 8.2.3 on Windows and Mac OS X, allow attackers to execute arbitrary code via unspecified ma…

Patch available
Fix from $1,950 2010-06-30
Acrobat HIGH 9.3
CVE-2010-2168EPSS 14%

Adobe Reader and Acrobat 9.x before 9.3.3, and 8.x before 8.2.3 on Windows and Mac OS X, allow attackers to execute arbitrary code via a PDF file wit…

Patch available
Fix from $1,950 2010-06-30
Acrobat HIGH 9.3
CVE-2010-2201EPSS 14%

Adobe Reader and Acrobat 9.x before 9.3.3, and 8.x before 8.2.3 on Windows and Mac OS X, allow attackers to execute arbitrary code via a PDF file wit…

Patch available
Fix from $1,950 2010-06-30
Asa 5580 HIGH 7.8
CVE-2009-4914

Memory leak on Cisco Adaptive Security Appliances (ASA) 5580 series devices with software before 8.1(2) allows remote attackers to cause a denial of …

Fix: after 8.1
Fix from $1,950 2010-06-29