Vulnerability index

Browse CVEs

3,124 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Uncontrolled Resource ConsumptionCWE-400 × clear
MEDIUM 5.5 CVE-2023-42503 Improper Input Validation, Uncontrolled Resource Consumption vulnerability in Apache Commons Compress in TAR parsing.This issue affects Apache Common… Commons Compress 1.24.0+ Fix from $1,6002023-09-14 HIGH 7.5 CVE-2023-38162EPSS 10% DHCP Server Service Denial of Service Vulnerability Windows Server 2012 Patch available Fix from $1,9502023-09-12 HIGH 7.5 CVE-2023-38149 Windows TCP/IP Denial of Service Vulnerability Windows 10 1507 10.0.10240.20162 / 10.0.14393.6252+ Fix from $1,9502023-09-12 MEDIUM 6.5 CVE-2023-36799 .NET Core and Visual Studio Denial of Service Vulnerability .net 17.2.19 / 17.4.11+ Fix from $1,6002023-09-12 HIGH 7.5 CVE-2022-48474 Control de Ciber, in its 1.650 version, is affected by a Denial of Service condition through the version function. Sending a malicious request could … Control De Ciber Mitigation only Fix from $1,9502023-09-12 HIGH 8.8 CVE-2022-48475 Buffer Overflow vulnerability in Control de Ciber version 1.650, in the printing function. Sending a modified request by the attacker could cause a B… Control De Ciber Mitigation only Fix from $1,9502023-09-12 HIGH 7.5 CVE-2022-4896 Cyber Control, in its 1.650 version, is affected by a vulnerability in the generation on the server of pop-up windows with the messages "PNTMEDIDAS",… Control De Ciber Mitigation only Fix from $1,9502023-09-12 HIGH 8.1 CVE-2022-23382 Shenzhen Hichip Vision Technology IP Camera Firmware V11.4.8.1.1-20170926 has a denial of service vulnerability through sending a crafted multicast m… Shenzhen Hichip Vision Technology Firmware No fix yet Fix from $1,9502023-09-11 HIGH 7.5 CVE-2023-36161 An issue was discovered in Qubo Smart Plug 10A version HSP02_01_01_14_SYSTEM-10A, allows attackers to cause a denial of service (DoS) via Wi-Fi deaut… Smart Plug 10a Firmware Mitigation only Fix from $1,9502023-09-11 HIGH 7.5 CVE-2023-39321 Processing an incomplete post-handshake message for a QUIC connection can cause a panic. Go 1.21.1+ Fix from $1,9502023-09-08 MEDIUM 6.5 CVE-2023-40584 Argo CD is a declarative continuous deployment for Kubernetes. All versions of ArgoCD starting from v2.4 have a bug where the ArgoCD repo-server comp… Argo Cd 2.6.15 / 2.7.14+ Fix from $1,6002023-09-07 HIGH 7.5 CVE-2023-40591 go-ethereum (geth) is a golang execution layer implementation of the Ethereum protocol. A vulnerable node, can be made to consume unbounded amounts o… Go Ethereum 1.12.1+ Fix from $1,9502023-09-06 MEDIUM 6.5 CVE-2023-28188 A denial-of-service issue was addressed with improved input validation. This issue is fixed in macOS Ventura 13.3. A remote user may be able to cause… macOS 13.3+ Fix from $1,6002023-09-06 HIGH 7.5 CVE-2023-40593 In Splunk Enterprise versions lower than 9.0.6 and 8.2.12, a malicious actor can send a malformed security assertion markup language (SAML) request t… Splunk 8.2.12 / 9.0.6+ Fix from $1,9502023-08-30 HIGH 7.5 CVE-2023-40594 In Splunk Enterprise versions lower than 8.2.12, 9.0.6, and 9.1.1, an attacker can use the `printf` SPL function to perform a denial of service (DoS)… Splunk 8.2.12 / 9.0.6+ Fix from $1,9502023-08-30 HIGH 7.5 CVE-2023-41121 Array AG OS before 9.4.0.499 allows denial of service: remote attackers can cause system service processes to crash through abnormal HTTP operations. Arrayos Ag 9.4.0.499+ Fix from $1,9502023-08-25 HIGH 7.5 CVE-2023-40583 libp2p is a networking stack and library modularized out of The IPFS Project, and bundled separately for other tools to use. In go-libp2p, by using s… Libp2p 0.27.4+ Fix from $1,9502023-08-25 HIGH 7.5 CVE-2023-40586 OWASP Coraza WAF is a golang modsecurity compatible web application firewall library. Due to the misuse of `log.Fatalf`, the application using coraza… Coraza Patch available Fix from $1,9502023-08-25 HIGH 7.5 CVE-2023-41173 AdGuard DNS before 2.2 allows remote attackers to cause a denial of service via malformed UDP packets. Adguard Dns 2.2+ Fix from $1,9502023-08-25 HIGH 7.5 CVE-2023-4418 A remote unprivileged attacker can sent multiple packages to the LMS5xx to disrupt its availability through a TCP SYN-based denial-of-service (DDoS) … Lms531 Firmware Mitigation only Fix from $1,9502023-08-24 HIGH 7.5 CVE-2023-40709 An adversary could crash the entire device by sending a large quantity of ICMP requests if the controller has the built-in web server enabled but doe… Snap Pac S1 Firmware Mitigation only Fix from $1,9502023-08-24 HIGH 7.5 CVE-2023-40710 An adversary could cause a continuous restart loop to the entire device by sending a large quantity of HTTP GET requests if the controller has the bu… Snap Pac S1 Firmware Mitigation only Fix from $1,9502023-08-24 HIGH 8.1 CVE-2023-37379 Apache Airflow, in versions prior to 2.7.0, contains a security vulnerability that can be exploited by an authenticated user possessing Connection ed… Airflow 2.7.0+ Fix from $1,9502023-08-23 HIGH 7.5 CVE-2022-48571 memcached 1.6.7 allows a Denial of Service via multi-packet uploads in UDP. Memcached Patch available Fix from $1,9502023-08-22 MEDIUM 6.5 CVE-2022-48564 read_ints in plistlib.py in Python through 3.9.1 is vulnerable to a potential DoS attack via CPU and RAM exhaustion when processing malformed Apple P… Python 3.6.13 / 3.7.10+ Fix from $1,6002023-08-22 HIGH 7.8 CVE-2022-47695 An issue was discovered Binutils objdump before 2.39.3 allows attackers to cause a denial of service or other unspecified impacts via function bfd_ma… Binutils 2.39.3+ Fix from $1,9502023-08-22 HIGH 7.8 CVE-2022-47696 An issue was discovered Binutils objdump before 2.39.3 allows attackers to cause a denial of service or other unspecified impacts via function compar… Binutils 2.39.3+ Fix from $1,9502023-08-22 MEDIUM 5.5 CVE-2022-48063 GNU Binutils before 2.40 was discovered to contain an excessive memory consumption vulnerability via the function load_separate_debug_files at dwarf2… Binutils 2.40+ Fix from $1,6002023-08-22 MEDIUM 6.5 CVE-2022-37050 In Poppler 22.07.0, PDFDoc::savePageAs in PDFDoc.c callows attackers to cause a denial-of-service (application crashes with SIGABRT) by crafting a PD… Debian Linux Patch available Fix from $1,6002023-08-22 HIGH 7.5 CVE-2020-26652 An issue was discovered in function nl80211_send_chandef in rtl8812au v5.6.4.2 allows attackers to cause a denial of service. Rtl8812au Firmware No fix yet Fix from $1,9502023-08-22