Vulnerability index

Browse CVEs

1,961 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Resource Management ErrorsCWE-399 × clear
MEDIUM 5.0 CVE-2007-6750EPSS 71% The Apache HTTP Server 1.x and 2.x allows remote attackers to cause a denial of service (daemon outage) via partial HTTP requests, as demonstrated by… HTTP Server after 2.2.14 Fix from $1,6002011-12-27 HIGH 7.5 CVE-2011-3661 YARR, as used in Mozilla Firefox 4.x through 8.0, Thunderbird 5.0 through 8.0, and SeaMonkey before 2.6, allows remote attackers to cause a denial of… Firefox after 2.5 Fix from $1,9502011-12-21 HIGH 7.5 CVE-2011-3665 Mozilla Firefox 4.x through 8.0, Thunderbird 5.0 through 8.0, and SeaMonkey before 2.6 allow remote attackers to cause a denial of service (applicati… Firefox after 2.5 Fix from $1,9502011-12-21 HIGH 7.5 CVE-2011-3658EPSS 70% The SVG implementation in Mozilla Firefox 8.0, Thunderbird 8.0, and SeaMonkey 2.5 does not properly interact with DOMAttrModified event handlers, whi… Firefox Mitigation only Fix from $1,9502011-12-21 HIGH 7.8 CVE-2011-4869 validator/val_nsec3.c in Unbound before 1.4.13p2 does not properly perform proof processing for NSEC3-signed zones, which allows remote DNS servers t… Unbound after 1.4.12 Fix from $1,9502011-12-20 MEDIUM 5.0 CVE-2011-4528 Unbound before 1.4.13p2 attempts to free unallocated memory during processing of duplicate CNAME records in a signed zone, which allows remote DNS se… Unbound after 1.4.13 Fix from $1,6002011-12-20 HIGH 9.3 CVE-2011-1983EPSS 22% Use-after-free vulnerability in Microsoft Office 2007 SP2 and SP3, Office 2010 Gold and SP1, and Office for Mac 2011 allows remote attackers to execu… Office Mitigation only Fix from $1,9502011-12-14 MEDIUM 6.8 CVE-2011-1530 The process_tgs_req function in do_tgs_req.c in the Key Distribution Center (KDC) in MIT Kerberos 5 (aka krb5) 1.9 through 1.9.2 allows remote authen… Mit Kerberos Patch available Fix from $1,6002011-12-08 MEDIUM 5.0 CVE-2011-4687 Opera before 11.60 allows remote attackers to cause a denial of service (CPU and memory consumption) via unspecified content on a web page, as demons… Opera Browser after 11.60 Fix from $1,6002011-12-07 HIGH 9.0 CVE-2011-4130EPSS 13% Use-after-free vulnerability in the Response API in ProFTPD before 1.3.3g allows remote authenticated users to execute arbitrary code via vectors inv… Proftpd after 1.3.3 Fix from $1,9502011-12-06 MEDIUM 5.0 CVE-2011-4096EPSS 37% The idnsGrokReply function in Squid before 3.1.16 does not properly free memory, which allows remote attackers to cause a denial of service (daemon a… Squid after 3.1.15 Fix from $1,6002011-11-17 HIGH 7.2 CVE-2011-3442 The kernel in Apple iOS before 5.0.1 does not ensure the validity of flag combinations for an mmap system call, which allows local users to execute a… Iphone Os Mitigation only Fix from $1,9502011-11-11 MEDIUM 5.0 CVE-2011-3996 The LiveData Service in CSWorks before 2.0.4115.1 allows remote attackers to cause a denial of service (service crash) via crafted TCP packets. Csworks after 2.0.4115.0 Fix from $1,6002011-11-03 MEDIUM 5.0 CVE-2011-4078 include/iniset.php in Roundcube Webmail 0.5.4 and earlier, when PHP 5.3.7 or 5.3.8 is used, allows remote attackers to trigger a GET request for an a… Webmail after 0.5.4 Fix from $1,6002011-11-03 HIGH 9.3 CVE-2011-4218 Investintech.com SlimPDF Reader does not prevent faulting-instruction data from affecting write operations, which allows remote attackers to cause a … Slimpdf Reader Mitigation only Fix from $1,9502011-11-01 HIGH 9.3 CVE-2011-4219 Investintech.com SlimPDF Reader does not prevent faulting-address data from affecting branch selection, which allows remote attackers to cause a deni… Slimpdf Reader Mitigation only Fix from $1,9502011-11-01 HIGH 7.8 CVE-2011-0941 Memory leak in Cisco Unified Communications Manager (CUCM) 6.x before 6.1(5)su2, 7.x before 7.1(5b)su3, 8.x before 8.0(3a)su1, and 8.5 before 8.5(1),… Unified Communications Manager Mitigation only Fix from $1,9502011-11-01 HIGH 7.8 CVE-2011-3318 Cisco Video Surveillance 2421 and 2500 series cameras with software 1.1.x and 2.x before 2.4.0 and Video Surveillance 2600 series cameras with softwa… Video Surveillance 2421 after 4.2.0 Fix from $1,9502011-10-27 MEDIUM 5.0 CVE-2011-4137 The verify_exists functionality in the URLField implementation in Django before 1.2.7 and 1.3.x before 1.3.1 relies on Python libraries that attempt … Django after 1.2.6 Fix from $1,6002011-10-19 MEDIUM 5.0 CVE-2011-3259 The kernel in Apple iOS before 5 and Apple TV before 4.4 does not properly recover memory allocated for incomplete TCP connections, which allows remo… Apple Tv Mitigation only Fix from $1,6002011-10-14 MEDIUM 5.0 CVE-2011-3432 The UIKit Alerts component in Apple iOS before 5 allows remote attackers to cause a denial of service (device hang) via a long tel: URL that triggers… Iphone Os Mitigation only Fix from $1,6002011-10-14 HIGH 7.2 CVE-2011-2011 Use-after-free vulnerability in win32k.sys in the kernel-mode drivers in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP2… Windows 2003 Server Mitigation only Fix from $1,9502011-10-12 MEDIUM 5.0 CVE-2011-3324 The ospf6_lsa_is_changed function in ospf6_lsa.c in the OSPFv3 implementation in ospf6d in Quagga before 0.99.19 allows remote attackers to cause a d… Quagga after 0.99.18 Fix from $1,6002011-10-10 MEDIUM 5.0 CVE-2011-3325 ospf_packet.c in ospfd in Quagga before 0.99.19 allows remote attackers to cause a denial of service (daemon crash) via (1) a 0x0a type field in an I… Quagga after 0.99.18 Fix from $1,6002011-10-10 MEDIUM 5.0 CVE-2011-3326 The ospf_flood function in ospf_flood.c in ospfd in Quagga before 0.99.19 allows remote attackers to cause a denial of service (daemon crash) via an … Quagga after 0.99.18 Fix from $1,6002011-10-10 HIGH 7.8 CVE-2011-3287 Cisco Jabber Extensible Communications Platform (aka Jabber XCP) 2.x through 5.4.x before 5.4.0.27581 and 5.8.x before 5.8.1.27561 does not properly … Jabber Extensible Communications Platform after 5.8 Fix from $1,9502011-10-06 HIGH 7.8 CVE-2011-3296 Cisco Firewall Services Module (aka FWSM) 3.1 before 3.1(21), 3.2 before 3.2(22), 4.0 before 4.0(16), and 4.1 before 4.1(7), when IPv6 is used, allow… Firewall Services Module Software Mitigation only Fix from $1,9502011-10-06 HIGH 7.8 CVE-2011-3299 Cisco Adaptive Security Appliances (ASA) 5500 series devices, and the ASA Services module in Cisco Catalyst 6500 series devices, with software 7.0 be… Adaptive Security Appliance Software Mitigation only Fix from $1,9502011-10-06 HIGH 7.8 CVE-2011-3300 Cisco Adaptive Security Appliances (ASA) 5500 series devices, and the ASA Services module in Cisco Catalyst 6500 series devices, with software 7.0 be… Adaptive Security Appliance Software Mitigation only Fix from $1,9502011-10-06 HIGH 7.8 CVE-2011-3301 Cisco Adaptive Security Appliances (ASA) 5500 series devices, and the ASA Services module in Cisco Catalyst 6500 series devices, with software 7.0 be… Adaptive Security Appliance Software Mitigation only Fix from $1,9502011-10-06