Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6673
Adobe 6383
Ibm 6286
Cisco 5751
Debian 3919
Mozilla 2886
Apache 2864
Redhat 2586
HIGH 7.5
CVE-2012-0454
Use-after-free vulnerability in Mozilla Firefox 4.x through 10.0, Firefox ESR 10.x before 10.0.3, Thunderbird 5.0 through 10.0, Thunderbird ESR 10.x …
Firefox
after 2.7
HIGH 9.3
CVE-2012-0457EPSS 7%
Use-after-free vulnerability in the nsSMILTimeValueSpec::ConvertBetweenTimeContainer function in Mozilla Firefox before 3.6.28 and 4.x through 10.0, …
Firefox
after 10.0
HIGH 7.5
CVE-2012-1663EPSS 5%
Double free vulnerability in libgnutls in GnuTLS before 3.0.14 allows remote attackers to cause a denial of service (application crash) or possibly h…
Gnutls
after 3.0.13
MEDIUM 5.0
CVE-2011-1394
IBM Maximo Asset Management and Asset Management Essentials 6.2, 7.1, and 7.5; IBM Tivoli Asset Management for IT 6.2, 7.1, and 7.2; IBM Tivoli Servi…
Maximo Asset Management
Mitigation only
MEDIUM 5.0
CVE-2012-1558
yaSSL CyaSSL before 2.0.8 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted X.509 c…
Cyassl
after 2.0.6
HIGH 7.6
CVE-2011-3845
Use-after-free vulnerability in Apple Safari 5.1.2, when a plug-in with a blocking function is installed, allows user-assisted remote attackers to ex…
Safari
Mitigation only
HIGH 10.0
CVE-2012-0768EPSS 6%
The Matrix3D component in Adobe Flash Player before 10.3.183.16 and 11.x before 11.1.102.63 on Windows, Mac OS X, Linux, and Solaris; before 11.1.111…
Flash Player
after 11.1.115.6
HIGH 7.8
CVE-2011-1385
IBM AIX 5.3, 6.1, and 7.1, and VIOS 2.1.x and 2.2.x, allows remote attackers to cause a denial of service (system crash) via an ICMP Echo Reply packe…
Vios
Patch available
HIGH 7.5
CVE-2011-3443
Use-after-free vulnerability in WebKit, as used in Apple Safari before 5.0.6, allows remote attackers to execute arbitrary code or cause a denial of …
Safari
after 5.0.5
HIGH 7.8
CVE-2012-0367
Cisco Unity Connection before 7.1.5b(Su5), 8.0 and 8.5 before 8.5.1(Su3), and 8.6 before 8.6.2 allows remote attackers to cause a denial of service (…
Unity Connection
after 7.1
HIGH 7.8
CVE-2012-0368
The administrative management interface on Cisco Wireless LAN Controller (WLC) devices with software 4.x, 5.x, 6.0, and 7.0 before 7.0.220.0, 7.1 bef…
Wireless Lan Controller Software
Mitigation only
HIGH 7.8
CVE-2012-0369
Cisco Wireless LAN Controller (WLC) devices with software 6.0 and 7.0 before 7.0.220.0, 7.1 before 7.1.91.0, and 7.2 before 7.2.103.0 allow remote at…
Wireless Lan Controller Software
Mitigation only
HIGH 7.8
CVE-2012-0370
Cisco Wireless LAN Controller (WLC) devices with software 4.x, 5.x, 6.0, and 7.0 before 7.0.220.0 and 7.1 before 7.1.91.0, when WebAuth is enabled, a…
Wireless Lan Controller Software
Mitigation only
HIGH 7.8
CVE-2011-4486
Cisco Unified Communications Manager (CUCM) with software 6.x and 7.x before 7.1(5b)su5, 8.0 before 8.0(3a)su3, and 8.5 and 8.6 before 8.6(2a)su1 and…
Unified Communications Manager
Mitigation only
HIGH 7.8
CVE-2012-0330
Cisco TelePresence Video Communication Server with software before X7.0.1 allows remote attackers to cause a denial of service (device crash) via a m…
Telepresence System Software
Mitigation only
HIGH 7.5
CVE-2012-0331
Cisco TelePresence Video Communication Server with software before X7.0.1 allows remote attackers to cause a denial of service (device crash) via a c…
Telepresence System Software
Mitigation only
HIGH 7.8
CVE-2012-0359
The Cisco Cius with software before 9.2(1) SR2 allows remote attackers to cause a denial of service (device crash or hang) via malformed network traf…
Cius Software
after 9.2
MEDIUM 5.0
CVE-2012-0206EPSS 5%
common_startup.cc in PowerDNS (aka pdns) Authoritative Server before 2.9.22.5 and 3.x before 3.0.1 allows remote attackers to cause a denial of servi…
Authoritative Server
after 2.9.22
HIGH 7.8
CVE-2012-0352
Cisco NX-OS 4.2.x before 4.2(1)SV1(5.1) on Nexus 1000v series switches; 4.x and 5.0.x before 5.0(2)N1(1) on Nexus 5000 series switches; and 4.2.x bef…
Nx Os
Mitigation only
HIGH 7.5
CVE-2012-0452
Use-after-free vulnerability in Mozilla Firefox 10.x before 10.0.1, Thunderbird 10.x before 10.0.1, and SeaMonkey 2.7 allows remote attackers to caus…
Firefox
Mitigation only
MEDIUM 6.8
CVE-2011-3449
Use-after-free vulnerability in CoreText in Apple Mac OS X before 10.7.3 allows remote attackers to execute arbitrary code or cause a denial of servi…
Mac Os X
after 10.7.2
MEDIUM 6.8
CVE-2011-3450
CoreUI in Apple Mac OS X 10.7.x before 10.7.3 does not properly restrict the allocation of stack memory, which allows remote attackers to execute arb…
Mac Os X
Mitigation only
HIGH 7.8
CVE-2011-2393
The Neighbor Discovery (ND) protocol implementation in the IPv6 stack in FreeBSD, NetBSD, and possibly other BSD-based operating systems allows remot…
FreeBSD
Mitigation only
HIGH 7.5
CVE-2011-3626
Double free vulnerability in the prepare_exec function in src/exec.c in Logsurfer 1.5b and earlier, and Logsurfer+ 1.7 and earlier, allows remote att…
Logsurfer
after 1.7
MEDIUM 6.1
CVE-2011-4868
The logging functionality in dhcpd in ISC DHCP before 4.2.3-P2, when using Dynamic DNS (DDNS) and issuing IPv6 addresses, does not properly handle th…
Dhcp
after 4.2.3
MEDIUM 5.0
CVE-2011-4057EPSS 5%
Wibu-Systems AG CodeMeter Runtime 4.30c, 4.10b, and possibly other versions before 4.40 allows remote attackers to cause a denial of service (CodeMet…
Codemeter Runtime
after 4.30d
MEDIUM 5.0
CVE-2011-4858EPSS 80%
Apache Tomcat before 5.5.35, 6.x before 6.0.35, and 7.x before 7.0.23 computes hash values for form parameters without restricting the ability to tri…
Tomcat
No fix yet
MEDIUM 5.0
CVE-2011-4905EPSS 9%
Apache ActiveMQ before 5.6.0 allows remote attackers to cause a denial of service (file-descriptor exhaustion and broker crash or hang) by sending ma…
Activemq
after 5.5.1
MEDIUM 5.0
CVE-2009-5110
dhttpd allows remote attackers to cause a denial of service (daemon outage) via partial HTTP requests, as demonstrated by Slowloris.
Dhttpd
Mitigation only
MEDIUM 5.0
CVE-2009-5111
GoAhead WebServer allows remote attackers to cause a denial of service (daemon outage) via partial HTTP requests, as demonstrated by Slowloris.
Goahead Webserver
Mitigation only