Vulnerability index

Browse CVEs

3,130 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Uncontrolled Resource ConsumptionCWE-400 × clear
Android HIGH 7.5
CVE-2020-0441

In Message and toBundle of Notification.java, there is a possible resource exhaustion due to improper input validation. This could lead to remote den…

Patch available
Fix from $1,950 2020-11-10
Melsec Q Q04udpvcpu Firmware HIGH 7.5
CVE-2020-5652

Uncontrolled resource consumption vulnerability in Ethernet Port on MELSEC iQ-R, Q and L series CPU modules (R 00/01/02 CPU firmware versions '20' an…

Mitigation only
Fix from $1,950 2020-11-02
Codemirror HIGH 7.5
CVE-2020-7760EPSS 5%

This affects the package codemirror before 5.58.2; the package org.apache.marmotta.webjars:codemirror before 5.58.2. The vulnerable regular expressio…

Fix: 5.58.2 / 11.2.9.0+
Fix from $1,950 2020-10-30
Big Ip Local Traffic Manager HIGH 7.5
CVE-2020-5936

On BIG-IP LTM 15.1.0-15.1.0.5, 14.1.0-14.1.2.7, 13.1.0-13.1.3.4, and 12.1.0-12.1.5.1, the Traffic Management Microkernel (TMM) process may consume ex…

Fix: 12.1.5.2 / 14.1.2.8+
Fix from $1,950 2020-10-29
Ipad Os MEDIUM 5.5
CVE-2019-8774

A resource exhaustion issue was addressed with improved input validation. This issue is fixed in iOS 13.1 and iPadOS 13.1, macOS Catalina 10.15. Pars…

Fix: 10.15 / 13.1+
Fix from $1,600 2020-10-27
Safari HIGH 7.5
CVE-2018-4474

A memory consumption issue was addressed with improved memory handling. This issue is fixed in iCloud for Windows 7.7, watchOS 5, Safari 12, iOS 12, …

Fix: 5.0 / 7.7+
Fix from $1,950 2020-10-27
Iphone Os MEDIUM 5.5
CVE-2018-4381

A resource exhaustion issue was addressed with improved input validation. This issue is fixed in tvOS 12.1, iOS 12.1. Processing a maliciously crafte…

Fix: 12.1+
Fix from $1,600 2020-10-27
Dat.gui HIGH 7.5
CVE-2020-7755

All versions of package dat.gui are vulnerable to Regular Expression Denial of Service (ReDoS) via specifically crafted rgb and rgba values.

Fix: 0.7.8+
Fix from $1,950 2020-10-27
Trim HIGH 7.5
CVE-2020-7753

All versions of package trim are vulnerable to Regular Expression Denial of Service (ReDoS) via trim().

No fix yet
Fix from $1,950 2020-10-27
Secure Firewall Threat Defense HIGH 8.6
CVE-2020-3571

A vulnerability in the ICMP ingress packet processing of Cisco Firepower Threat Defense (FTD) Software for Cisco Firepower 4110 appliances could allo…

Fix: 6.3.0.6 / 6.4.0.10+
Fix from $1,950 2020-10-21
Adaptive Security Appliance HIGH 8.6
CVE-2020-3572

A vulnerability in the SSL/TLS session handler of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software …

Fix: 6.3.0.6 / 6.4.0.10+
Fix from $1,950 2020-10-21
Secure Firewall Threat Defense HIGH 7.5
CVE-2020-3533

A vulnerability in the Simple Network Management Protocol (SNMP) input packet processor of Cisco Firepower Threat Defense (FTD) Software could allow …

Fix: 6.3.0.6 / 6.4.0.10+
Fix from $1,950 2020-10-21
Adaptive Security Appliance HIGH 7.5
CVE-2020-3554

A vulnerability in the TCP packet processing of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software co…

Fix: 6.4.0.10 / 6.5.0.5+
Fix from $1,950 2020-10-21
Secure Firewall Threat Defense HIGH 8.6
CVE-2020-3563

A vulnerability in the packet processing functionality of Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attack…

Fix: 6.3.0.6 / 6.4.0.10+
Fix from $1,950 2020-10-21
Secure Firewall Management Center HIGH 8.6
CVE-2020-3499

A vulnerability in the licensing service of Cisco Firepower Management Center (FMC) Software could allow an unauthenticated, remote attacker to cause…

Mitigation only
Fix from $1,950 2020-10-21
Adaptive Security Appliance HIGH 7.5
CVE-2020-3528

A vulnerability in the OSPF Version 2 (OSPFv2) implementation of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense …

Fix: 6.3.0.6 / 6.4.0.10+
Fix from $1,950 2020-10-21
Adaptive Security Appliance HIGH 7.5
CVE-2020-3529

A vulnerability in the SSL VPN negotiation process for Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Soft…

Fix: 6.3.0.6 / 6.4.0.10+
Fix from $1,950 2020-10-21
Adaptive Security Appliance HIGH 8.6
CVE-2020-3304

A vulnerability in the web interface of Cisco Adaptive Security Appliance (ASA) Software and Firepower Threat Defense (FTD) Software could allow an u…

Fix: 6.3.0.6 / 6.4.0.10+
Fix from $1,950 2020-10-21
Secure Firewall Threat Defense HIGH 8.6
CVE-2020-3373

A vulnerability in the IP fragment-handling implementation of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FT…

Mitigation only
Fix from $1,950 2020-10-21
Junos HIGH 7.5
CVE-2020-1684

On Juniper Networks SRX Series configured with application identification inspection enabled, receipt of specific HTTP traffic can cause high CPU loa…

Mitigation only
Fix from $1,950 2020-10-16
Junos MEDIUM 6.5
CVE-2020-1687

On Juniper Networks EX4300-MP Series, EX4600 Series and QFX5K Series deployed in (Ethernet VPN) EVPN-(Virtual Extensible LAN) VXLAN configuration, re…

Mitigation only
Fix from $1,600 2020-10-16
Junos MEDIUM 6.5
CVE-2020-1689

On Juniper Networks EX4300-MP Series, EX4600 Series and QFX5K Series deployed in a Virtual Chassis configuration, receipt of a stream of specific lay…

Mitigation only
Fix from $1,600 2020-10-16
Junos MEDIUM 6.5
CVE-2020-1678

On Juniper Networks Junos OS and Junos OS Evolved platforms with EVPN configured, receipt of specific BGP packets causes a slow memory leak. If the m…

Mitigation only
Fix from $1,600 2020-10-16
Junos MEDIUM 6.5
CVE-2020-1668

On Juniper Networks EX2300 Series, receipt of a stream of specific multicast packets by the layer2 interface can cause high CPU load, which could lea…

Mitigation only
Fix from $1,600 2020-10-16
Junos MEDIUM 6.5
CVE-2020-1670

On Juniper Networks EX4300 Series, receipt of a stream of specific IPv4 packets can cause Routing Engine (RE) high CPU load, which could lead to netw…

Mitigation only
Fix from $1,600 2020-10-16
Gatemanager 9250 Firmware MEDIUM 6.5
CVE-2020-11645

A denial of service vulnerability in B&R GateManager 4260 and 9250 versions <9.0.20262 and GateManager 8250 versions <9.2.620236042 allows authentica…

Fix: 9.0.20262 / 9.2.620236042+
Fix from $1,600 2020-10-15
8000p Ip Camera Firmware MEDIUM 6.5
CVE-2020-3543

A vulnerability in the Cisco Discovery Protocol of Cisco Video Surveillance 8000 Series IP Cameras could allow an unauthenticated, adjacent attacker …

Mitigation only
Fix from $1,600 2020-10-08
Kdeconnect MEDIUM 5.5
CVE-2020-26164

In kdeconnect-kde (aka KDE Connect) before 20.08.2, an attacker on the local network could send crafted packets that trigger use of large amounts of …

Fix: 20.08.2+
Fix from $1,600 2020-10-07
Whatsapp MEDIUM 5.3
CVE-2020-1901

Receiving a large text message containing URLs in WhatsApp for iOS prior to v2.20.91.4 could have caused the application to freeze while processing t…

Fix: 2.20.91.4+
Fix from $1,600 2020-10-06
Whatsapp MEDIUM 5.5
CVE-2020-1903

An issue when unzipping docx, pptx, and xlsx documents in WhatsApp for iOS prior to v2.20.61 and WhatsApp Business for iOS prior to v2.20.61 could ha…

Fix: 2.20.61+
Fix from $1,600 2020-10-06