Vulnerability index

Browse CVEs

3,124 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Uncontrolled Resource ConsumptionCWE-400 × clear
Application Delivery Controller HIGH 7.5
CVE-2022-27508

Unauthenticated denial of service

No fix yet
Fix from $1,950 2023-01-26
Eos HIGH 7.5
CVE-2021-28510

For certain systems running EOS, a Precision Time Protocol (PTP) packet of a management/signaling message with an invalid Type-Length-Value (TLV) cau…

Fix: 4.23.10 / 4.24.8+
Fix from $1,950 2023-01-26
Cmark Gfm HIGH 7.5
CVE-2023-22483

cmark-gfm is GitHub's fork of cmark, a CommonMark parsing and rendering library and program in C. Versions prior to 0.29.0.gfm.7 are subject to sever…

Fix: 0.29.0.gfm.7+
Fix from $1,950 2023-01-23
Cmark Gfm HIGH 7.5
CVE-2023-22484

cmark-gfm is GitHub's fork of cmark, a CommonMark parsing and rendering library and program in C. Versions prior to 0.29.0.gfm.7 are subject to a pol…

Fix: 0.29.0.gfm.7+
Fix from $1,950 2023-01-23
Safecenter MEDIUM 5.5
CVE-2022-4816

A denial-of-service vulnerability has been identified in Lenovo Safecenter that could allow a local user to crash the application.

Fix: 7.2.01.0315+
Fix from $1,600 2023-01-23
Webex Room Phone Firmware MEDIUM 6.5
CVE-2023-20047

A vulnerability in the Link Layer Discovery Protocol (LLDP) feature of Cisco Webex Room Phone and Cisco Webex Share devices could allow an unauthenti…

Fix: after 1.2.0
Fix from $1,600 2023-01-20
Weblogic Server HIGH 7.5
CVE-2023-21838

Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Core). Supported versions that are affected are 12.2.1.3…

Patch available
Fix from $1,950 2023-01-18
Freeradius MEDIUM 6.5
CVE-2022-41861

A flaw was found in freeradius. A malicious RADIUS client or home server can send a malformed abinary attribute which can cause the server to crash.

Fix: after 3.0.25
Fix from $1,600 2023-01-17
Xentry Retail Data Storage Firmware HIGH 7.5
CVE-2023-23590EPSS 26%

Mercedes-Benz XENTRY Retail Data Storage 7.8.1 allows remote attackers to cause a denial of service (device restart) via an unauthenticated API reque…

Mitigation only
Fix from $1,950 2023-01-15
Deck MEDIUM 6.5
CVE-2023-22470

Nextcloud Deck is a kanban style organization tool aimed at personal planning and project organization for teams integrated with Nextcloud. A databas…

Fix: 1.6.5 / 1.7.3+
Fix from $1,600 2023-01-14
Junos HIGH 7.5
CVE-2023-22396

An Uncontrolled Resource Consumption vulnerability in TCP processing on the Routing Engine (RE) of Juniper Networks Junos OS allows an unauthenticate…

Mitigation only
Fix from $1,950 2023-01-13
Junos Os Evolved HIGH 7.5
CVE-2023-22400

An Uncontrolled Resource Consumption vulnerability in the PFE management daemon (evo-pfemand) of Juniper Networks Junos OS Evolved allows an unauthen…

Mitigation only
Fix from $1,950 2023-01-13
GitLab HIGH 7.5
CVE-2022-3613

An issue has been discovered in GitLab CE/EE affecting all versions before 15.5.7, all versions starting from 15.6 before 15.6.4, all versions starti…

Fix: 15.5.7 / 15.6.4+
Fix from $1,950 2023-01-12
Sterling Partner Engagement Manager MEDIUM 6.5
CVE-2022-34335

IBM Sterling Partner Engagement Manager 6.1.2, 6.2.0, and 6.2.1 could allow an authenticated user to exhaust server resources which could lead to a d…

Patch available
Fix from $1,600 2023-01-11
Windows 10 1607 HIGH 7.5
CVE-2023-21728

Windows Netlogon Denial of Service Vulnerability

No fix yet
Fix from $1,950 2023-01-10
Windows 10 1607 HIGH 8.1
CVE-2023-21543

Windows Layer 2 Tunneling Protocol (L2TP) Remote Code Execution Vulnerability

Mitigation only
Fix from $1,950 2023-01-10
Windows 10 1607 HIGH 7.5
CVE-2023-21547EPSS 89%

Internet Key Exchange (IKE) Protocol Denial of Service Vulnerability

No fix yet
Fix from $1,950 2023-01-10
Windows 10 1607 HIGH 7.5
CVE-2023-21557

Windows Lightweight Directory Access Protocol (LDAP) Denial of Service Vulnerability

Mitigation only
Fix from $1,950 2023-01-10
Mootools HIGH 7.5
CVE-2021-32821

MooTools is a collection of JavaScript utilities for JavaScript developers. All known versions include a CSS selector parser that is vulnerable to Re…

Fix: after 1.6.0
Fix from $1,950 2023-01-03
Ws7100 20 Firmware MEDIUM 6.5
CVE-2022-46740

There is a denial of service vulnerability in the Wi-Fi module of the HUAWEI WS7100-20 Smart WiFi Router.Successful exploit could cause a denial of s…

No fix yet
Fix from $1,600 2022-12-28
Yaml HIGH 7.5
CVE-2022-3064

Parsing malicious or large YAML documents can consume excessive amounts of CPU or memory.

Fix: 2.2.4+
Fix from $1,950 2022-12-27
Tendermint HIGH 7.5
CVE-2019-25072

Due to support of Gzip compression in request bodies, as well as a lack of limiting response body sizes, a malicious server can cause a client to con…

Fix: 0.31.1+
Fix from $1,950 2022-12-27
Memos HIGH 7.5
CVE-2022-4767

Denial of Service in GitHub repository usememos/memos prior to 0.9.1.

Fix: 0.9.1+
Fix from $1,950 2022-12-27
Inet 900 Firmware CRITICAL 9.1
CVE-2022-24118

Certain General Electric Renewable Energy products allow attackers to use a code to trigger a reboot into the factory default configuration. This aff…

Fix: 1.2.6 / 2.0.16+
Fix from $2,300 2022-12-26
Brave MEDIUM 6.5
CVE-2022-47932

Brave Browser before 1.43.34 allowed a remote attacker to cause a denial of service via a crafted HTML file that mentions an ipfs:// or ipns:// URL. …

Fix: 1.42.51+
Fix from $1,600 2022-12-24
Brave MEDIUM 6.5
CVE-2022-47934

Brave Browser before 1.43.88 allowed a remote attacker to cause a denial of service in private and guest windows via a crafted HTML file that mention…

Fix: 1.43.88+
Fix from $1,600 2022-12-24
Userver HIGH 7.5
CVE-2022-28229

The hash functionality in userver before 42059b6319661583b3080cab9b595d4f8ac48128 allows attackers to cause a denial of service via crafted HTTP requ…

Fix: 2022-11-18+
Fix from $1,950 2022-12-23
Vios MEDIUM 6.2
CVE-2022-39164

IBM AIX 7.1, 7.2, 7.3, and VIOS 3.1could allow a non-privileged local user to exploit a vulnerability in the AIX kernel to cause a denial of service.…

Patch available
Fix from $1,600 2022-12-23
Vios MEDIUM 6.2
CVE-2022-39165

IBM AIX 7.1, 7.2, 7.3, and VIOS 3.1could allow a non-privileged local user to exploit a vulnerability in CAA to cause a denial of service. IBM X-For…

Patch available
Fix from $1,600 2022-12-23
Python Future HIGH 7.5
CVE-2022-40899

An issue discovered in Python Charmers Future 0.18.2 and earlier allows remote attackers to cause a denial of service via crafted Set-Cookie header f…

Fix: after 0.18.2
Fix from $1,950 2022-12-23