Vulnerability index

Browse CVEs

3,130 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Uncontrolled Resource ConsumptionCWE-400 × clear
Tricon Tcm 4351 Firmware HIGH 7.5
CVE-2020-7486

**VERSION NOT SUPPORTED WHEN ASSIGNED** A vulnerability could cause TCM modules to reset when under high network load in TCM v10.4.x and in system v1…

Mitigation only
Fix from $1,950 2020-04-16
Aironet 1542i Firmware MEDIUM 6.5
CVE-2020-3260

A vulnerability in Cisco Aironet Series Access Points Software could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) c…

Mitigation only
Fix from $1,600 2020-04-15
Ktk Ate530s Firmware HIGH 7.5
CVE-2019-19300

A vulnerability has been identified in Development/Evaluation Kits for PROFINET IO: EK-ERTEC 200, Development/Evaluation Kits for PROFINET IO: EK-ERT…

Fix: 2.0+
Fix from $1,950 2020-04-14
Scalance Xc 200 Firmware HIGH 7.5
CVE-2019-19301

A vulnerability has been identified in SCALANCE X200-4P IRT, SCALANCE X201-3P IRT, SCALANCE X201-3P IRT PRO, SCALANCE X202-2IRT, SCALANCE X202-2P IRT…

Fix: 5.5.0+
Fix from $1,950 2020-04-14
Junos MEDIUM 6.5
CVE-2020-1625

The kernel memory usage represented as "temp" via 'show system virtual-memory' may constantly increase when Integrated Routing and Bridging (IRB) is …

No fix yet
Fix from $1,600 2020-04-08
Fortianalyzer HIGH 7.5
CVE-2019-17657

An Uncontrolled Resource Consumption vulnerability in Fortinet FortiSwitch below 3.6.11, 6.0.6 and 6.2.2, FortiAnalyzer below 6.2.3, FortiManager bel…

Fix: 3.6.11 / 6.0.6+
Fix from $1,950 2020-04-07
Emc Isilon Onefs HIGH 7.5
CVE-2020-5347

Dell EMC Isilon OneFS versions 8.2.2 and earlier contain a denial of service vulnerability. SmartConnect had an error condition that may be triggered…

Fix: after 8.2.2
Fix from $1,950 2020-04-04
Rmt Server HIGH 7.5
CVE-2019-18904

A Uncontrolled Resource Consumption vulnerability in rmt of SUSE Linux Enterprise High Performance Computing 15-ESPOS, SUSE Linux Enterprise High Per…

Fix: after 2.5.2-3.26.1
Fix from $1,950 2020-04-03
Cr800 Q Firmware HIGH 7.5
CVE-2020-5527

When MELSOFT transmission port (UDP/IP) of Mitsubishi Electric MELSEC iQ-R series (all versions), MELSEC iQ-F series (all versions), MELSEC Q series …

Mitigation only
Fix from $1,950 2020-03-30
GitLab HIGH 7.5
CVE-2020-10954

GitLab through 12.9 is affected by a potential DoS in repository archive download.

Fix: after 12.9
Fix from $1,950 2020-03-27
Tika MEDIUM 5.5
CVE-2020-1950

A carefully crafted or corrupt PSD file can cause excessive memory usage in Apache Tika's PSDParser in versions 1.0-1.23.

Fix: after 1.23
Fix from $1,600 2020-03-23
Fastify Multipart HIGH 7.5
CVE-2020-8136

Prototype pollution vulnerability in fastify-multipart < 1.0.5 allows an attacker to crash fastify applications parsing multipart requests by sending…

Fix: 1.0.5+
Fix from $1,950 2020-03-20
Android MEDIUM 6.5
CVE-2020-0088

In parseTrackFragmentRun of MPEG4Extractor.cpp, there is possible resource exhaustion due to improper input validation. This could lead to remote den…

Mitigation only
Fix from $1,600 2020-03-15
Bk9000 Firmware HIGH 7.5
CVE-2020-9464

A Denial-of-Service vulnerability exists in BECKHOFF Ethernet TCP/IP Bus Coupler BK9000. After an attack has occurred, the device's functionality can…

No fix yet
Fix from $1,950 2020-03-12
Pfc200 Firmware HIGH 7.5
CVE-2019-5149

The WBM web application on firmwares prior to 03.02.02 and 03.01.07 on the WAGO PFC100 and PFC2000, respectively, runs on a lighttpd web server and m…

No fix yet
Fix from $1,950 2020-03-11
Simatic S7 300 Cpu Firmware HIGH 7.5
CVE-2019-18336

A vulnerability has been identified in SIMATIC S7-300 CPU family (incl. related ET200 CPUs and SIPLUS variants) (All versions < V3.X.17), SIMATIC TDC…

Fix: 3.3.17+
Fix from $1,950 2020-03-10
Simatic Et 200sp Open Controller Cpu 1515sp Pc2 Firmware HIGH 7.5
CVE-2019-19281

A vulnerability has been identified in SIMATIC ET 200SP Open Controller CPU 1515SP PC2 (incl. SIPLUS variants) (All versions >= V2.5 and < V20.8), SI…

Fix: 2.8 / 20.8+
Fix from $1,950 2020-03-10
GitLab MEDIUM 6.5
CVE-2019-13009

An issue was discovered in GitLab Community and Enterprise Edition 9.2 through 12.0.2. Uploaded files associated with unsaved personal snippets were …

Fix: after 12.0.2
Fix from $1,600 2020-03-10
GitLab HIGH 7.5
CVE-2019-13003

An issue was discovered in GitLab Community and Enterprise Edition before 12.0.3. One of the parsers used by Gilab CI was vulnerable to a resource ex…

Fix: 12.0.3+
Fix from $1,950 2020-03-10
Urllib3 HIGH 7.5
CVE-2020-7212

The _encode_invalid_chars function in util/url.py in the urllib3 library 1.25.2 through 1.25.7 for Python allows a denial of service (CPU consumption…

Fix: after 1.25.7
Fix from $1,950 2020-03-06
Plc Cj1 Firmware HIGH 7.5
CVE-2020-6986

In all versions of Omron PLC CJ Series, an attacker can send a series of specific data packets within a short period, causing a service error on the …

Mitigation only
Fix from $1,950 2020-03-05
Openshift Service Mesh HIGH 7.5
CVE-2020-8661

CNCF Envoy through 1.13.0 may consume excessive amounts of memory when responding internally to pipelined requests.

Fix: after 1.13.0
Fix from $1,950 2020-03-04
Email Security Appliance MEDIUM 6.5
CVE-2020-3181

A vulnerability in the malware detection functionality in Cisco Advanced Malware Protection (AMP) in Cisco AsyncOS Software for Cisco Email Security …

Fix: 13.0.0+
Fix from $1,600 2020-03-04
Ios Xr MEDIUM 5.8
CVE-2020-3190

A vulnerability in the IPsec packet processor of Cisco IOS XR Software could allow an unauthenticated remote attacker to cause a denial of service (D…

Fix: 6.4.3 / 6.6.3+
Fix from $1,600 2020-03-04
Nx Os HIGH 8.6
CVE-2020-3175

A vulnerability in the resource handling system of Cisco NX-OS Software for Cisco MDS 9000 Series Multilayer Switches could allow an unauthenticated,…

Mitigation only
Fix from $1,950 2020-02-26
Nx Os HIGH 7.5
CVE-2020-3168

A vulnerability in the Secure Login Enhancements capability of Cisco Nexus 1000V Switch for VMware vSphere could allow an unauthenticated, remote att…

Mitigation only
Fix from $1,950 2020-02-26
Fedora HIGH 7.5
CVE-2020-9369

Sympa 6.2.38 through 6.2.52 allows remote attackers to cause a denial of service (disk consumption from temporary files, and a flood of notifications…

Fix: after 6.2.52
Fix from $1,950 2020-02-24
Jenkins HIGH 7.5
CVE-2012-0785

Hash collision attack vulnerability in Jenkins before 1.447, Jenkins LTS before 1.424.2, and Jenkins Enterprise by CloudBees 1.424.x before 1.424.2.1…

Fix: 1.400.0.11 / 1.424.2+
Fix from $1,950 2020-02-24
Bson HIGH 7.5
CVE-2015-4411EPSS 6%

The Moped::BSON::ObjecId.legal? method in mongodb/bson-ruby before 3.0.4 as used in rubygem-moped allows remote attackers to cause a denial of servic…

Fix: 3.0.4+
Fix from $1,950 2020-02-20
FreeBSD HIGH 7.5
CVE-2012-5363

The IPv6 implementation in FreeBSD and NetBSD (unknown versions, year 2012 and earlier) allows remote attackers to cause a denial of service via a fl…

Fix: 6.0.2 / 9.2+
Fix from $1,950 2020-02-20