Vulnerability index

Browse CVEs

3,124 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Uncontrolled Resource ConsumptionCWE-400 × clear
HIGH 7.5 CVE-2024-43541 Microsoft Simple Certificate Enrollment Protocol Denial of Service Vulnerability Windows Server 2008 10.0.14393.7428 / 10.0.17763.6414+ Fix from $1,9502024-10-08 HIGH 7.5 CVE-2024-43515 Internet Small Computer Systems Interface (iSCSI) Denial of Service Vulnerability Windows 10 1507 10.0.10240.20796 / 10.0.14393.7428+ Fix from $1,9502024-10-08 HIGH 7.5 CVE-2024-43506 BranchCache Denial of Service Vulnerability Windows 10 1507 10.0.10240.20796 / 10.0.14393.7428+ Fix from $1,9502024-10-08 HIGH 7.5 CVE-2024-38149 BranchCache Denial of Service Vulnerability Windows 10 1507 10.0.10240.20796 / 10.0.14393.7428+ Fix from $1,9502024-10-08 HIGH 7.5 CVE-2024-8626 Due to a memory leak, a denial-of-service vulnerability exists in the Rockwell Automation affected products. A malicious actor could exploit this vul… Compactlogix 5380 Firmware 33.015+ Fix from $1,9502024-10-08 HIGH 7.5 CVE-2024-47850 CUPS cups-browsed before 2.5b1 will send an HTTP POST request to an arbitrary destination and port in response to a single IPP UDP packet requesting … Mitigation only Fix from $1,9502024-10-04 HIGH 7.5 CVE-2024-20500 A vulnerability in the Cisco AnyConnect VPN server of Cisco Meraki MX and Cisco Meraki Z Series Teleworker Gateway devices could allow an unauthentic… Meraki Z4c Firmware 18.211.2+ Fix from $1,9502024-10-02 HIGH 7.5 CVE-2024-20502 A vulnerability in the Cisco AnyConnect VPN server of Cisco Meraki MX and Cisco Meraki Z Series Teleworker Gateway devices could allow an unauthentic… Meraki Mx65 Firmware 18.211.2+ Fix from $1,9502024-10-02 MEDIUM 5.9 CVE-2024-9358 A vulnerability has been found in ThingsBoard up to 3.7.0 and classified as problematic. Affected by this vulnerability is an unknown functionality o… Thingsboard after 3.7 Fix from $1,6002024-10-01 HIGH 7.5 CVE-2024-8454 The swctrl service is used to detect and remotely manage PLANET Technology devices. Certain switch models have a Denial-of-Service vulnerability in t… Gs 4210 24p2s Firmware 2.305b240719 / 3.305b240802+ Fix from $1,9502024-09-30 HIGH 7.5 CVE-2024-8451 Certain switch models from PLANET Technology have an SSH service that improperly handles insufficiently authenticated connection requests, allowing u… Gs 4210 24p2s Firmware 2.305b240719 / 3.305b240802+ Fix from $1,9502024-09-30 MEDIUM 5.3 CVE-2024-38809 Applications that parse ETags from "If-Match" or "If-None-Match" request headers are vulnerable to DoS attack. Users of affected versions should upg… Mitigation only Fix from $1,6002024-09-27 HIGH 7.5 CVE-2024-37125 Dell SmartFabric OS10 Software, versions 10.5.6.x, 10.5.5.x, 10.5.4.x,10.5.3.x, contains an Uncontrolled Resource Consumption vulnerability. A remote… Smartfabric Os10 10.5.3.11 / 10.5.4.12+ Fix from $1,9502024-09-26 MEDIUM 6.5 CVE-2024-47003 Mattermost versions 9.11.x <= 9.11.0 and 9.5.x <= 9.5.8 fail to validate that the message of the permalink post is a string, which allows an attacker… Mattermost Server 9.5.9+ Fix from $1,6002024-09-26 HIGH 7.5 CVE-2024-31145 Certain PCI devices in a system might be assigned Reserved Memory Regions (specified via Reserved Memory Region Reporting, "RMRR") for Intel VT-d or … Xen Patch available Fix from $1,9502024-09-25 HIGH 7.5 CVE-2024-31146 When multiple devices share resources and one of them is to be passed through to a guest, security of the entire system and of respective guests indi… Xen Patch available Fix from $1,9502024-09-25 HIGH 8.8 CVE-2024-47210 Gladys Assistant before 4.45.1 allows Privilege Escalation (a user changing their own role) because req.body.role can be used in updateMySelf in serv… Patch available Fix from $1,9502024-09-21 HIGH 7.5 CVE-2024-7254 Any project that parses untrusted Protocol Buffers data containing an arbitrary number of nested groups / series of SGROUP tags can corrupted by exce… Protobuf 3.25.5 / 4.27.5+ Fix from $1,9502024-09-19 HIGH 7.5 CVE-2023-28451 An issue was discovered in Technitium 11.0.2. There is a vulnerability (called BadDNS) in DNS resolving software, which triggers a resolver to ignore… Dnsserver Mitigation only Fix from $1,9502024-09-18 CRITICAL 9.1 CVE-2024-8892 Vulnerability in CIRCUTOR TCP2RS+ firmware version 1.3b, which could allow an attacker to modify any configuration value, even if the device has the … Tcp2rs\+ Firmware Mitigation only Fix from $2,3002024-09-18 MEDIUM 6.2 CVE-2024-8939 A vulnerability was found in the ilab model serve component, where improper handling of the best_of parameter in the vllm JSON web API can lead to a … Mitigation only Fix from $1,6002024-09-17 MEDIUM 5.5 CVE-2024-44169 The issue was addressed with improved memory handling. This issue is fixed in iOS 17.7 and iPadOS 17.7, iOS 18 and iPadOS 18, macOS Sequoia 15, macOS… Ipados 2.0 / 11.0+ Fix from $1,6002024-09-17 MEDIUM 5.5 CVE-2024-44176EPSS 8% An out-of-bounds access issue was addressed with improved bounds checking. This issue is fixed in iOS 17.7 and iPadOS 17.7, iOS 18 and iPadOS 18, mac… Ipados 2.0 / 11.0+ Fix from $1,6002024-09-17 MEDIUM 5.5 CVE-2024-44183 A logic error was addressed with improved error handling. This issue is fixed in iOS 17.7 and iPadOS 17.7, iOS 18 and iPadOS 18, macOS Sequoia 15, ma… Ipados 2.0 / 13.7+ Fix from $1,6002024-09-17 MEDIUM 5.5 CVE-2024-44154 A memory initialization issue was addressed with improved memory handling. This issue is fixed in macOS Sequoia 15, macOS Sonoma 14.7. Processing a m… macOS 14.7+ Fix from $1,6002024-09-17 MEDIUM 5.5 CVE-2024-44160 A buffer overflow issue was addressed with improved memory handling. This issue is fixed in macOS Sequoia 15, macOS Sonoma 14.7, macOS Ventura 13.7. … macOS 13.7 / 14.7+ Fix from $1,6002024-09-17 MEDIUM 5.5 CVE-2024-40841 An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in macOS Sequoia 15, macOS Sonoma 14.7. Processing a ma… macOS 14.7+ Fix from $1,6002024-09-17 HIGH 7.5 CVE-2024-27874 This issue was addressed through improved state management. This issue is fixed in iOS 18 and iPadOS 18. A remote attacker may be able to cause a den… Ipados 18.0+ Fix from $1,9502024-09-17 HIGH 7.5 CVE-2024-38236 DHCP Server Service Denial of Service Vulnerability Windows Server 2008 10.0.14393.7336 / 10.0.17763.6293+ Fix from $1,9502024-09-10 HIGH 7.5 CVE-2024-43647 A vulnerability has been identified in SIMATIC S7-200 SMART CPU CR40 (6ES7288-1CR40-0AA0) (All versions), SIMATIC S7-200 SMART CPU CR60 (6ES7288-1CR6… Mitigation only Fix from $1,9502024-09-10