Vulnerability index

Browse CVEs

3,130 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Uncontrolled Resource ConsumptionCWE-400 × clear
FreeBSD HIGH 7.5
CVE-2012-5365

The IPv6 implementation in FreeBSD and NetBSD (unknown versions, year 2012 and earlier) allows remote attackers to cause a denial of service via a fl…

Fix: 6.0.2 / 9.2+
Fix from $1,950 2020-02-20
Mac Os X HIGH 7.5
CVE-2012-5366

The IPv6 implementation in Apple Mac OS X (unknown versions, year 2012 and earlier) allows remote attackers to cause a denial of service via a flood …

Fix: 10.9+
Fix from $1,950 2020-02-20
Cloud Email Security MEDIUM 5.9
CVE-2020-3132

A vulnerability in the email message scanning feature of Cisco AsyncOS Software for Cisco Email Security Appliance (ESA) could allow an unauthenticat…

Fix: 12.5.1-037 / 13.0.0-375+
Fix from $1,600 2020-02-19
Linux Kernel MEDIUM 5.5
CVE-2020-8992

ext4_protect_reserved_inode in fs/ext4/block_validity.c in the Linux kernel through 5.5.3 allows attackers to cause a denial of service (soft lockup)…

Fix: after 5.5.3
Fix from $1,600 2020-02-14
Experience Manager HIGH 7.5
CVE-2020-3741

Adobe Experience Manager versions 6.5, and 6.4 have an uncontrolled resource consumption vulnerability. Successful exploitation could lead to denial-…

Patch available
Fix from $1,950 2020-02-13
Antivir Mailgate MEDIUM 5.5
CVE-2013-4602

A Denial of Service (infinite loop) vulnerability exists in Avira AntiVir Engine before 8.2.12.58 via an unspecified function in the PDF Scanner Engi…

Fix: 8.2.12.58+
Fix from $1,600 2020-02-12
PHP HIGH 7.5
CVE-2011-3336EPSS 6%

regcomp in the BSD implementation of libc is vulnerable to denial of service due to stack exhaustion.

Fix: after 10.7.2
Fix from $1,950 2020-02-12
Linux Kernel MEDIUM 5.5
CVE-2012-0810

The int3 handler in the Linux kernel before 3.3 relies on a per-CPU debug stack, which allows local users to cause a denial of service (stack corrupt…

Fix: 3.3+
Fix from $1,600 2020-02-12
Dk Standard Ethernet Controller HIGH 7.5
CVE-2019-13946

Profinet-IO (PNIO) stack versions prior V06.00 do not properly limit internal resource allocation when multiple legitimate diagnostic package request…

Fix: 2.1 / 4.3+
Fix from $1,950 2020-02-11
Scalance S602 Firmware HIGH 7.5
CVE-2019-13925

A vulnerability has been identified in SCALANCE S602 (All versions >= V3.0 and < V4.1), SCALANCE S612 (All versions >= V3.0 and < V4.1), SCALANCE S62…

Fix: 4.1+
Fix from $1,950 2020-02-11
Scalance S602 Firmware HIGH 7.5
CVE-2019-13926

A vulnerability has been identified in SCALANCE S602 (All versions >= V3.0 and < V4.1), SCALANCE S612 (All versions >= V3.0 and < V4.1), SCALANCE S62…

Fix: 4.1+
Fix from $1,950 2020-02-11
S7 1200 Cpu 1211c Firmware HIGH 7.5
CVE-2019-13940

A vulnerability has been identified in SIMATIC ET 200pro IM154-8 PN/DP CPU (All versions < V3.X.17), SIMATIC ET 200pro IM154-8F PN/DP CPU (All versio…

Fix: 4.1+
Fix from $1,950 2020-02-11
Openshift Container Storage MEDIUM 6.5
CVE-2020-1700

A flaw was found in the way the Ceph RGW Beast front-end handles unexpected disconnects. An authenticated attacker can abuse this flaw by making mult…

Mitigation only
Fix from $1,600 2020-02-07
Python HIGH 7.5
CVE-2019-9674EPSS 6%

Lib/zipfile.py in Python through 3.7.2 allows remote attackers to cause a denial of service (resource consumption) via a ZIP bomb.

Fix: after 3.8
Fix from $1,950 2020-02-04
Waitress MEDIUM 6.5
CVE-2020-5236

Waitress version 1.4.2 allows a DOS attack When waitress receives a header that contains invalid characters. When a header like "Bad-header: xxxxxxxx…

Patch available
Fix from $1,600 2020-02-04
Fedora MEDIUM 6.5
CVE-2019-20446

In xml.rs in GNOME librsvg before 2.46.2, a crafted SVG file with nested patterns can cause denial of service when passed to the library for processi…

Fix: 2.40.21 / 2.42.8+
Fix from $1,600 2020-02-02
Python MEDIUM 6.5
CVE-2020-8492EPSS 7%

Python 2.7 through 2.7.17, 3.5 through 3.5.9, 3.6 through 3.6.10, 3.7 through 3.7.6, and 3.8 through 3.8.1 allows an HTTP server to conduct Regular E…

Fix: after 3.8.1
Fix from $1,600 2020-01-30
Wndr4700 Firmware HIGH 7.5
CVE-2013-3074

NetGear WNDR4700 Media Server devices with firmware 1.0.0.34 allow remote attackers to cause a denial of service (device crash).

No fix yet
Fix from $1,950 2020-01-28
GitLab HIGH 7.5
CVE-2019-5472

An authorization issue was discovered in Gitlab versions < 12.1.2, < 12.0.4, and < 11.11.6 that prevented owners and maintainer to delete epic commen…

Fix: 11.11.6 / 12.0.4+
Fix from $1,950 2020-01-28
Webex Teams MEDIUM 6.5
CVE-2020-3131

A vulnerability in the Cisco Webex Teams client for Windows could allow an authenticated, remote attacker to cause the client to crash, resulting in …

Fix: after 3.0.13131
Fix from $1,600 2020-01-26
Ios Xr HIGH 8.6
CVE-2019-16020

Multiple vulnerabilities in the implementation of Border Gateway Protocol (BGP) Ethernet VPN (EVPN) functionality in Cisco IOS XR Software could allo…

Mitigation only
Fix from $1,950 2020-01-26
Ios Xr HIGH 8.6
CVE-2019-16022

Multiple vulnerabilities in the implementation of Border Gateway Protocol (BGP) Ethernet VPN (EVPN) functionality in Cisco IOS XR Software could allo…

Mitigation only
Fix from $1,950 2020-01-26
Ios Xr MEDIUM 6.5
CVE-2019-16018

A vulnerability in the implementation of Border Gateway Protocol (BGP) Ethernet VPN (EVPN) functionality in Cisco IOS XR Software could allow an unau…

Mitigation only
Fix from $1,600 2020-01-26
Libressl HIGH 7.5
CVE-2015-5333

Memory leak in the OBJ_obj2txt function in LibreSSL before 2.3.1 allows remote attackers to cause a denial of service (memory consumption) via a larg…

Fix: 2.3.1+
Fix from $1,950 2020-01-23
Freeciv HIGH 7.5
CVE-2012-6083EPSS 12%

Freeciv before 2.3.3 allows remote attackers to cause a denial of service via a crafted packet.

Fix: 2.3.3+
Fix from $1,950 2020-01-23
Undertow HIGH 7.5
CVE-2019-14888

A vulnerability was found in the Undertow HTTP server in versions before 2.0.28.SP1 when listening on HTTPS. An attacker can target the HTTPS port to…

Fix: after 2.0.28
Fix from $1,950 2020-01-23
Mysecureshell MEDIUM 5.5
CVE-2013-4175

MySecureShell 1.31 has a Local Denial of Service Vulnerability

No fix yet
Fix from $1,600 2020-01-23
Mirc HIGH 7.5
CVE-2008-7314

mIRC before 6.35 allows attackers to cause a denial of service (crash) via a long nickname.

Fix: 6.35+
Fix from $1,950 2020-01-23
Websphere Mq MEDIUM 6.5
CVE-2012-4863

IBM WebSphere MQ 7.1 and 7.5: Queue manager has a DoS vulnerability

Fix: 7.1.0.2 / 7.5.0.1+
Fix from $1,600 2020-01-23
Email Security Appliance Firmware MEDIUM 6.5
CVE-2019-15961

A vulnerability in the email parsing module Clam AntiVirus (ClamAV) Software versions 0.102.0, 0.101.4 and prior could allow an unauthenticated, remo…

Fix: after 0.101.4
Fix from $1,600 2020-01-15