Vulnerability index

Browse CVEs

3,124 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Uncontrolled Resource ConsumptionCWE-400 × clear
Commons Compress MEDIUM 5.5
CVE-2023-42503

Improper Input Validation, Uncontrolled Resource Consumption vulnerability in Apache Commons Compress in TAR parsing.This issue affects Apache Common…

Fix: 1.24.0+
Fix from $1,600 2023-09-14
Windows Server 2012 HIGH 7.5
CVE-2023-38162EPSS 10%

DHCP Server Service Denial of Service Vulnerability

Patch available
Fix from $1,950 2023-09-12
Windows 10 1507 HIGH 7.5
CVE-2023-38149

Windows TCP/IP Denial of Service Vulnerability

Fix: 10.0.10240.20162 / 10.0.14393.6252+
Fix from $1,950 2023-09-12
.net MEDIUM 6.5
CVE-2023-36799

.NET Core and Visual Studio Denial of Service Vulnerability

Fix: 17.2.19 / 17.4.11+
Fix from $1,600 2023-09-12
Control De Ciber HIGH 7.5
CVE-2022-48474

Control de Ciber, in its 1.650 version, is affected by a Denial of Service condition through the version function. Sending a malicious request could …

Mitigation only
Fix from $1,950 2023-09-12
Control De Ciber HIGH 8.8
CVE-2022-48475

Buffer Overflow vulnerability in Control de Ciber version 1.650, in the printing function. Sending a modified request by the attacker could cause a B…

Mitigation only
Fix from $1,950 2023-09-12
Control De Ciber HIGH 7.5
CVE-2022-4896

Cyber Control, in its 1.650 version, is affected by a vulnerability in the generation on the server of pop-up windows with the messages "PNTMEDIDAS",…

Mitigation only
Fix from $1,950 2023-09-12
Shenzhen Hichip Vision Technology Firmware HIGH 8.1
CVE-2022-23382

Shenzhen Hichip Vision Technology IP Camera Firmware V11.4.8.1.1-20170926 has a denial of service vulnerability through sending a crafted multicast m…

No fix yet
Fix from $1,950 2023-09-11
Smart Plug 10a Firmware HIGH 7.5
CVE-2023-36161

An issue was discovered in Qubo Smart Plug 10A version HSP02_01_01_14_SYSTEM-10A, allows attackers to cause a denial of service (DoS) via Wi-Fi deaut…

Mitigation only
Fix from $1,950 2023-09-11
Go HIGH 7.5
CVE-2023-39321

Processing an incomplete post-handshake message for a QUIC connection can cause a panic.

Fix: 1.21.1+
Fix from $1,950 2023-09-08
Argo Cd MEDIUM 6.5
CVE-2023-40584

Argo CD is a declarative continuous deployment for Kubernetes. All versions of ArgoCD starting from v2.4 have a bug where the ArgoCD repo-server comp…

Fix: 2.6.15 / 2.7.14+
Fix from $1,600 2023-09-07
Go Ethereum HIGH 7.5
CVE-2023-40591

go-ethereum (geth) is a golang execution layer implementation of the Ethereum protocol. A vulnerable node, can be made to consume unbounded amounts o…

Fix: 1.12.1+
Fix from $1,950 2023-09-06
macOS MEDIUM 6.5
CVE-2023-28188

A denial-of-service issue was addressed with improved input validation. This issue is fixed in macOS Ventura 13.3. A remote user may be able to cause…

Fix: 13.3+
Fix from $1,600 2023-09-06
Splunk HIGH 7.5
CVE-2023-40593

In Splunk Enterprise versions lower than 9.0.6 and 8.2.12, a malicious actor can send a malformed security assertion markup language (SAML) request t…

Fix: 8.2.12 / 9.0.6+
Fix from $1,950 2023-08-30
Splunk HIGH 7.5
CVE-2023-40594

In Splunk Enterprise versions lower than 8.2.12, 9.0.6, and 9.1.1, an attacker can use the `printf` SPL function to perform a denial of service (DoS)…

Fix: 8.2.12 / 9.0.6+
Fix from $1,950 2023-08-30
Arrayos Ag HIGH 7.5
CVE-2023-41121

Array AG OS before 9.4.0.499 allows denial of service: remote attackers can cause system service processes to crash through abnormal HTTP operations.

Fix: 9.4.0.499+
Fix from $1,950 2023-08-25
Libp2p HIGH 7.5
CVE-2023-40583

libp2p is a networking stack and library modularized out of The IPFS Project, and bundled separately for other tools to use. In go-libp2p, by using s…

Fix: 0.27.4+
Fix from $1,950 2023-08-25
Coraza HIGH 7.5
CVE-2023-40586

OWASP Coraza WAF is a golang modsecurity compatible web application firewall library. Due to the misuse of `log.Fatalf`, the application using coraza…

Patch available
Fix from $1,950 2023-08-25
Adguard Dns HIGH 7.5
CVE-2023-41173

AdGuard DNS before 2.2 allows remote attackers to cause a denial of service via malformed UDP packets.

Fix: 2.2+
Fix from $1,950 2023-08-25
Lms531 Firmware HIGH 7.5
CVE-2023-4418

A remote unprivileged attacker can sent multiple packages to the LMS5xx to disrupt its availability through a TCP SYN-based denial-of-service (DDoS) …

Mitigation only
Fix from $1,950 2023-08-24
Snap Pac S1 Firmware HIGH 7.5
CVE-2023-40709

An adversary could crash the entire device by sending a large quantity of ICMP requests if the controller has the built-in web server enabled but doe…

Mitigation only
Fix from $1,950 2023-08-24
Snap Pac S1 Firmware HIGH 7.5
CVE-2023-40710

An adversary could cause a continuous restart loop to the entire device by sending a large quantity of HTTP GET requests if the controller has the bu…

Mitigation only
Fix from $1,950 2023-08-24
Airflow HIGH 8.1
CVE-2023-37379

Apache Airflow, in versions prior to 2.7.0, contains a security vulnerability that can be exploited by an authenticated user possessing Connection ed…

Fix: 2.7.0+
Fix from $1,950 2023-08-23
Memcached HIGH 7.5
CVE-2022-48571

memcached 1.6.7 allows a Denial of Service via multi-packet uploads in UDP.

Patch available
Fix from $1,950 2023-08-22
Python MEDIUM 6.5
CVE-2022-48564

read_ints in plistlib.py in Python through 3.9.1 is vulnerable to a potential DoS attack via CPU and RAM exhaustion when processing malformed Apple P…

Fix: 3.6.13 / 3.7.10+
Fix from $1,600 2023-08-22
Binutils HIGH 7.8
CVE-2022-47695

An issue was discovered Binutils objdump before 2.39.3 allows attackers to cause a denial of service or other unspecified impacts via function bfd_ma…

Fix: 2.39.3+
Fix from $1,950 2023-08-22
Binutils HIGH 7.8
CVE-2022-47696

An issue was discovered Binutils objdump before 2.39.3 allows attackers to cause a denial of service or other unspecified impacts via function compar…

Fix: 2.39.3+
Fix from $1,950 2023-08-22
Binutils MEDIUM 5.5
CVE-2022-48063

GNU Binutils before 2.40 was discovered to contain an excessive memory consumption vulnerability via the function load_separate_debug_files at dwarf2…

Fix: 2.40+
Fix from $1,600 2023-08-22
Debian Linux MEDIUM 6.5
CVE-2022-37050

In Poppler 22.07.0, PDFDoc::savePageAs in PDFDoc.c callows attackers to cause a denial-of-service (application crashes with SIGABRT) by crafting a PD…

Patch available
Fix from $1,600 2023-08-22
Rtl8812au Firmware HIGH 7.5
CVE-2020-26652

An issue was discovered in function nl80211_send_chandef in rtl8812au v5.6.4.2 allows attackers to cause a denial of service.

No fix yet
Fix from $1,950 2023-08-22