Vulnerability index

Browse CVEs

1,961 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Resource Management ErrorsCWE-399 × clear
Ruby HIGH 7.5
CVE-2014-6438

The URI.decode_www_form_component method in Ruby before 1.9.2-p330 allows remote attackers to cause a denial of service (catastrophic regular express…

Fix: after 1.9.2
Fix from $1,950 2017-09-06
Fedora MEDIUM 5.5
CVE-2014-9637

GNU patch 2.7.2 and earlier allows remote attackers to cause a denial of service (memory consumption and segmentation fault) via a crafted diff file.

Fix: after 2.7.2
Fix from $1,600 2017-08-25
Android CRITICAL 9.8
CVE-2016-10390

In all Qualcomm products with Android releases from CAF using the Linux kernel, when downloading a file, an excessive amount of memory may be consume…

No fix yet
Fix from $2,300 2017-08-18
Ganeti HIGH 7.5
CVE-2015-7944EPSS 14%

The RESTful control interface (aka RAPI or ganeti-rapi) in Ganeti before 2.9.7, 2.10.x before 2.10.8, 2.11.x before 2.11.8, 2.12.x before 2.12.6, 2.1…

Fix: after 2.9.6
Fix from $1,950 2017-08-18
Xerces C\+\+ HIGH 7.5
CVE-2012-0880

Apache Xerces-C++ allows remote attackers to cause a denial of service (CPU consumption) via a crafted message sent to an XML service that causes has…

Mitigation only
Fix from $1,950 2017-08-08
Data Center Network Manager HIGH 7.5
CVE-2011-4650

Cisco Data Center Network Manager is affected by Excessive Logging During a TCP Flood on Java Ports. If the size of server.log becomes very big becau…

Mitigation only
Fix from $1,950 2017-08-07
iOS MEDIUM 6.5
CVE-2012-5030

Cisco IOS before 15.2(4)S6 does not initialize an unspecified variable, which might allow remote authenticated users to cause a denial of service (CP…

Fix: after 15.2
Fix from $1,600 2017-08-02
Candlepin MEDIUM 6.5
CVE-2015-5187

Candlepin allows remote attackers to obtain sensitive information by obtaining Java exception statements as a result of excessive web traffic.

Mitigation only
Fix from $1,600 2017-07-25
Imagemagick HIGH 7.5
CVE-2016-7539

Memory leak in AcquireVirtualMemory in ImageMagick before 7 allows remote attackers to cause a denial of service (memory consumption) via unspecified…

Fix: after 6.9.9-3
Fix from $1,950 2017-07-25
Virtualized Packet Core HIGH 7.5
CVE-2017-6678

A vulnerability in the ingress UDP packet processing functionality of Cisco Virtualized Packet Core-Distributed Instance (VPC-DI) Software 19.2 throu…

Mitigation only
Fix from $1,950 2017-06-26
Telepresence Ce Software HIGH 7.5
CVE-2017-6648

A vulnerability in the Session Initiation Protocol (SIP) of the Cisco TelePresence Codec (TC) and Collaboration Endpoint (CE) Software could allow an…

Mitigation only
Fix from $1,950 2017-06-08
Cf Release HIGH 7.5
CVE-2016-0780

It was discovered that cf-release v231 and lower, Pivotal Cloud Foundry Elastic Runtime 1.5.x versions prior to 1.5.17 and Pivotal Cloud Foundry Elas…

Mitigation only
Fix from $1,950 2017-05-25
Ip Phone 8800 Series Firmware MEDIUM 5.3
CVE-2017-6630

A vulnerability in the Session Initiation Protocol (SIP) implementation of Cisco IP Phone 8851 11.0(0.1) could allow an unauthenticated, remote attac…

Mitigation only
Fix from $1,600 2017-05-22
Firepower Threat Defense HIGH 7.5
CVE-2017-6632

A vulnerability in the logging configuration of Secure Sockets Layer (SSL) policies for Cisco FirePOWER System Software 5.3.0 through 6.2.2 could all…

Mitigation only
Fix from $1,950 2017-05-22
Remote Expert Manager HIGH 7.5
CVE-2017-6641

A vulnerability in the TCP connection handling functionality of Cisco Remote Expert Manager Software 11.0.0 could allow an unauthenticated, remote at…

Mitigation only
Fix from $1,950 2017-05-22
Identity Services Engine HIGH 7.5
CVE-2017-6653

A vulnerability in the TCP throttling process for the GUI of the Cisco Identity Services Engine (ISE) 2.1(0.474) could allow an unauthenticated, remo…

Mitigation only
Fix from $1,950 2017-05-22
Ios Xr HIGH 7.5
CVE-2017-3876

A vulnerability in the Event Management Service daemon (emsd) of Cisco IOS XR routers could allow an unauthenticated, remote attacker to cause a deni…

Mitigation only
Fix from $1,950 2017-05-16
Linux Kernel MEDIUM 5.5
CVE-2016-10292

A denial of service vulnerability in the Qualcomm Wi-Fi driver could enable a proximate attacker to cause a denial of service in the Wi-Fi subsystem.…

Patch available
Fix from $1,600 2017-05-12
Secure Firewall Threat Defense HIGH 7.1
CVE-2017-6625

A "Cisco Firepower Threat Defense 6.0.0 through 6.2.2 and Cisco ASA with FirePOWER Module Denial of Service" vulnerability in the access control poli…

Mitigation only
Fix from $1,950 2017-05-03
Wide Area Application Services MEDIUM 6.8
CVE-2017-6628

A vulnerability in SMART-SSL Accelerator functionality for Cisco Wide Area Application Services (WAAS) 6.2.1, 6.2.1a, and 6.2.3a could allow an unaut…

Mitigation only
Fix from $1,600 2017-05-03
Linux Kernel MEDIUM 5.5
CVE-2010-5329

The video_usercopy function in drivers/media/video/v4l2-ioctl.c in the Linux kernel before 2.6.39 relies on the count value of a v4l2_ext_controls da…

Fix: after 2.6.38.8
Fix from $1,600 2017-04-24
Irregex HIGH 7.5
CVE-2016-9954

The backtrack compilation code in the Irregex package (aka IrRegular Expressions) before 0.9.6 for Scheme allows remote attackers to cause a denial o…

Fix: after 0.9.5
Fix from $1,950 2017-04-21
Garoon MEDIUM 6.5
CVE-2016-1194

Cybozu Garoon before 4.2.1 allows remote attackers to cause a denial of service.

No fix yet
Fix from $1,600 2017-04-21
Secure Firewall Management Center HIGH 8.6
CVE-2016-6368

A vulnerability in the detection engine parsing of Pragmatic General Multicast (PGM) protocol packets for Cisco Firepower System Software could allow…

Mitigation only
Fix from $1,950 2017-04-20
Adaptive Security Appliance Software HIGH 8.7
CVE-2017-6607

A vulnerability in the DNS code of Cisco ASA Software could allow an unauthenticated, remote attacker to cause an affected device to reload or corrup…

Mitigation only
Fix from $1,950 2017-04-20
Adaptive Security Appliance Software HIGH 8.6
CVE-2017-6608

A vulnerability in the Secure Sockets Layer (SSL) and Transport Layer Security (TLS) code of Cisco ASA Software could allow an unauthenticated, remot…

Mitigation only
Fix from $1,950 2017-04-20
Adaptive Security Appliance Software HIGH 7.7
CVE-2017-6609

A vulnerability in the IPsec code of Cisco ASA Software could allow an authenticated, remote attacker to cause a reload of the affected system. The v…

Mitigation only
Fix from $1,950 2017-04-20
Adaptive Security Appliance Software HIGH 7.7
CVE-2017-6610

A vulnerability in the Internet Key Exchange Version 1 (IKEv1) XAUTH code of Cisco ASA Software could allow an authenticated, remote attacker to caus…

Mitigation only
Fix from $1,950 2017-04-20
Prime Network Registrar MEDIUM 5.8
CVE-2017-6613

A vulnerability in the DNS input packet processor for Cisco Prime Network Registrar could allow an unauthenticated, remote attacker to cause the DNS …

Mitigation only
Fix from $1,600 2017-04-20
Ios Xe MEDIUM 6.3
CVE-2017-6615

A vulnerability in the Simple Network Management Protocol (SNMP) subsystem of Cisco IOS XE 3.16 could allow an authenticated, remote attacker to caus…

Mitigation only
Fix from $1,600 2017-04-20