Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6649
Adobe 6383
Ibm 6266
Cisco 5746
Debian 3919
Apache 2864
Mozilla 2857
Redhat 2581
HIGH 7.5
CVE-2014-6438
The URI.decode_www_form_component method in Ruby before 1.9.2-p330 allows remote attackers to cause a denial of service (catastrophic regular express…
Ruby
after 1.9.2
MEDIUM 5.5
CVE-2014-9637
GNU patch 2.7.2 and earlier allows remote attackers to cause a denial of service (memory consumption and segmentation fault) via a crafted diff file.
Fedora
after 2.7.2
CRITICAL 9.8
CVE-2016-10390
In all Qualcomm products with Android releases from CAF using the Linux kernel, when downloading a file, an excessive amount of memory may be consume…
Android
No fix yet
HIGH 7.5
CVE-2015-7944EPSS 14%
The RESTful control interface (aka RAPI or ganeti-rapi) in Ganeti before 2.9.7, 2.10.x before 2.10.8, 2.11.x before 2.11.8, 2.12.x before 2.12.6, 2.1…
Ganeti
after 2.9.6
HIGH 7.5
CVE-2012-0880
Apache Xerces-C++ allows remote attackers to cause a denial of service (CPU consumption) via a crafted message sent to an XML service that causes has…
Xerces C\+\+
Mitigation only
HIGH 7.5
CVE-2011-4650
Cisco Data Center Network Manager is affected by Excessive Logging During a TCP Flood on Java Ports. If the size of server.log becomes very big becau…
Data Center Network Manager
Mitigation only
MEDIUM 6.5
CVE-2012-5030
Cisco IOS before 15.2(4)S6 does not initialize an unspecified variable, which might allow remote authenticated users to cause a denial of service (CP…
iOS
after 15.2
MEDIUM 6.5
CVE-2015-5187
Candlepin allows remote attackers to obtain sensitive information by obtaining Java exception statements as a result of excessive web traffic.
Candlepin
Mitigation only
HIGH 7.5
CVE-2016-7539
Memory leak in AcquireVirtualMemory in ImageMagick before 7 allows remote attackers to cause a denial of service (memory consumption) via unspecified…
Imagemagick
after 6.9.9-3
HIGH 7.5
CVE-2017-6678
A vulnerability in the ingress UDP packet processing functionality of Cisco Virtualized Packet Core-Distributed Instance (VPC-DI) Software 19.2 throu…
Virtualized Packet Core
Mitigation only
HIGH 7.5
CVE-2017-6648
A vulnerability in the Session Initiation Protocol (SIP) of the Cisco TelePresence Codec (TC) and Collaboration Endpoint (CE) Software could allow an…
Telepresence Ce Software
Mitigation only
HIGH 7.5
CVE-2016-0780
It was discovered that cf-release v231 and lower, Pivotal Cloud Foundry Elastic Runtime 1.5.x versions prior to 1.5.17 and Pivotal Cloud Foundry Elas…
Cf Release
Mitigation only
MEDIUM 5.3
CVE-2017-6630
A vulnerability in the Session Initiation Protocol (SIP) implementation of Cisco IP Phone 8851 11.0(0.1) could allow an unauthenticated, remote attac…
Ip Phone 8800 Series Firmware
Mitigation only
HIGH 7.5
CVE-2017-6632
A vulnerability in the logging configuration of Secure Sockets Layer (SSL) policies for Cisco FirePOWER System Software 5.3.0 through 6.2.2 could all…
Firepower Threat Defense
Mitigation only
HIGH 7.5
CVE-2017-6641
A vulnerability in the TCP connection handling functionality of Cisco Remote Expert Manager Software 11.0.0 could allow an unauthenticated, remote at…
Remote Expert Manager
Mitigation only
HIGH 7.5
CVE-2017-6653
A vulnerability in the TCP throttling process for the GUI of the Cisco Identity Services Engine (ISE) 2.1(0.474) could allow an unauthenticated, remo…
Identity Services Engine
Mitigation only
HIGH 7.5
CVE-2017-3876
A vulnerability in the Event Management Service daemon (emsd) of Cisco IOS XR routers could allow an unauthenticated, remote attacker to cause a deni…
Ios Xr
Mitigation only
MEDIUM 5.5
CVE-2016-10292
A denial of service vulnerability in the Qualcomm Wi-Fi driver could enable a proximate attacker to cause a denial of service in the Wi-Fi subsystem.…
Linux Kernel
Patch available
HIGH 7.1
CVE-2017-6625
A "Cisco Firepower Threat Defense 6.0.0 through 6.2.2 and Cisco ASA with FirePOWER Module Denial of Service" vulnerability in the access control poli…
Secure Firewall Threat Defense
Mitigation only
MEDIUM 6.8
CVE-2017-6628
A vulnerability in SMART-SSL Accelerator functionality for Cisco Wide Area Application Services (WAAS) 6.2.1, 6.2.1a, and 6.2.3a could allow an unaut…
Wide Area Application Services
Mitigation only
MEDIUM 5.5
CVE-2010-5329
The video_usercopy function in drivers/media/video/v4l2-ioctl.c in the Linux kernel before 2.6.39 relies on the count value of a v4l2_ext_controls da…
Linux Kernel
after 2.6.38.8
HIGH 7.5
CVE-2016-9954
The backtrack compilation code in the Irregex package (aka IrRegular Expressions) before 0.9.6 for Scheme allows remote attackers to cause a denial o…
Irregex
after 0.9.5
MEDIUM 6.5
CVE-2016-1194
Cybozu Garoon before 4.2.1 allows remote attackers to cause a denial of service.
Garoon
No fix yet
HIGH 8.6
CVE-2016-6368
A vulnerability in the detection engine parsing of Pragmatic General Multicast (PGM) protocol packets for Cisco Firepower System Software could allow…
Secure Firewall Management Center
Mitigation only
HIGH 8.7
CVE-2017-6607
A vulnerability in the DNS code of Cisco ASA Software could allow an unauthenticated, remote attacker to cause an affected device to reload or corrup…
Adaptive Security Appliance Software
Mitigation only
HIGH 8.6
CVE-2017-6608
A vulnerability in the Secure Sockets Layer (SSL) and Transport Layer Security (TLS) code of Cisco ASA Software could allow an unauthenticated, remot…
Adaptive Security Appliance Software
Mitigation only
HIGH 7.7
CVE-2017-6609
A vulnerability in the IPsec code of Cisco ASA Software could allow an authenticated, remote attacker to cause a reload of the affected system. The v…
Adaptive Security Appliance Software
Mitigation only
HIGH 7.7
CVE-2017-6610
A vulnerability in the Internet Key Exchange Version 1 (IKEv1) XAUTH code of Cisco ASA Software could allow an authenticated, remote attacker to caus…
Adaptive Security Appliance Software
Mitigation only
MEDIUM 5.8
CVE-2017-6613
A vulnerability in the DNS input packet processor for Cisco Prime Network Registrar could allow an unauthenticated, remote attacker to cause the DNS …
Prime Network Registrar
Mitigation only
MEDIUM 6.3
CVE-2017-6615
A vulnerability in the Simple Network Management Protocol (SNMP) subsystem of Cisco IOS XE 3.16 could allow an authenticated, remote attacker to caus…
Ios Xe
Mitigation only