Vulnerability index

Browse CVEs

3,124 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Uncontrolled Resource ConsumptionCWE-400 × clear
HIGH 7.5 CVE-2022-27508 Unauthenticated denial of service Application Delivery Controller No fix yet Fix from $1,9502023-01-26 HIGH 7.5 CVE-2021-28510 For certain systems running EOS, a Precision Time Protocol (PTP) packet of a management/signaling message with an invalid Type-Length-Value (TLV) cau… Eos 4.23.10 / 4.24.8+ Fix from $1,9502023-01-26 HIGH 7.5 CVE-2023-22483 cmark-gfm is GitHub's fork of cmark, a CommonMark parsing and rendering library and program in C. Versions prior to 0.29.0.gfm.7 are subject to sever… Cmark Gfm 0.29.0.gfm.7+ Fix from $1,9502023-01-23 HIGH 7.5 CVE-2023-22484 cmark-gfm is GitHub's fork of cmark, a CommonMark parsing and rendering library and program in C. Versions prior to 0.29.0.gfm.7 are subject to a pol… Cmark Gfm 0.29.0.gfm.7+ Fix from $1,9502023-01-23 MEDIUM 5.5 CVE-2022-4816 A denial-of-service vulnerability has been identified in Lenovo Safecenter that could allow a local user to crash the application. Safecenter 7.2.01.0315+ Fix from $1,6002023-01-23 MEDIUM 6.5 CVE-2023-20047 A vulnerability in the Link Layer Discovery Protocol (LLDP) feature of Cisco Webex Room Phone and Cisco Webex Share devices could allow an unauthenti… Webex Room Phone Firmware after 1.2.0 Fix from $1,6002023-01-20 HIGH 7.5 CVE-2023-21838 Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Core). Supported versions that are affected are 12.2.1.3… Weblogic Server Patch available Fix from $1,9502023-01-18 MEDIUM 6.5 CVE-2022-41861 A flaw was found in freeradius. A malicious RADIUS client or home server can send a malformed abinary attribute which can cause the server to crash. Freeradius after 3.0.25 Fix from $1,6002023-01-17 HIGH 7.5 CVE-2023-23590EPSS 26% Mercedes-Benz XENTRY Retail Data Storage 7.8.1 allows remote attackers to cause a denial of service (device restart) via an unauthenticated API reque… Xentry Retail Data Storage Firmware Mitigation only Fix from $1,9502023-01-15 MEDIUM 6.5 CVE-2023-22470 Nextcloud Deck is a kanban style organization tool aimed at personal planning and project organization for teams integrated with Nextcloud. A databas… Deck 1.6.5 / 1.7.3+ Fix from $1,6002023-01-14 HIGH 7.5 CVE-2023-22396 An Uncontrolled Resource Consumption vulnerability in TCP processing on the Routing Engine (RE) of Juniper Networks Junos OS allows an unauthenticate… Junos Mitigation only Fix from $1,9502023-01-13 HIGH 7.5 CVE-2023-22400 An Uncontrolled Resource Consumption vulnerability in the PFE management daemon (evo-pfemand) of Juniper Networks Junos OS Evolved allows an unauthen… Junos Os Evolved Mitigation only Fix from $1,9502023-01-13 HIGH 7.5 CVE-2022-3613 An issue has been discovered in GitLab CE/EE affecting all versions before 15.5.7, all versions starting from 15.6 before 15.6.4, all versions starti… GitLab 15.5.7 / 15.6.4+ Fix from $1,9502023-01-12 MEDIUM 6.5 CVE-2022-34335 IBM Sterling Partner Engagement Manager 6.1.2, 6.2.0, and 6.2.1 could allow an authenticated user to exhaust server resources which could lead to a d… Sterling Partner Engagement Manager Patch available Fix from $1,6002023-01-11 HIGH 7.5 CVE-2023-21728 Windows Netlogon Denial of Service Vulnerability Windows 10 1607 No fix yet Fix from $1,9502023-01-10 HIGH 8.1 CVE-2023-21543 Windows Layer 2 Tunneling Protocol (L2TP) Remote Code Execution Vulnerability Windows 10 1607 Mitigation only Fix from $1,9502023-01-10 HIGH 7.5 CVE-2023-21547EPSS 89% Internet Key Exchange (IKE) Protocol Denial of Service Vulnerability Windows 10 1607 No fix yet Fix from $1,9502023-01-10 HIGH 7.5 CVE-2023-21557 Windows Lightweight Directory Access Protocol (LDAP) Denial of Service Vulnerability Windows 10 1607 Mitigation only Fix from $1,9502023-01-10 HIGH 7.5 CVE-2021-32821 MooTools is a collection of JavaScript utilities for JavaScript developers. All known versions include a CSS selector parser that is vulnerable to Re… Mootools after 1.6.0 Fix from $1,9502023-01-03 MEDIUM 6.5 CVE-2022-46740 There is a denial of service vulnerability in the Wi-Fi module of the HUAWEI WS7100-20 Smart WiFi Router.Successful exploit could cause a denial of s… Ws7100 20 Firmware No fix yet Fix from $1,6002022-12-28 HIGH 7.5 CVE-2022-3064 Parsing malicious or large YAML documents can consume excessive amounts of CPU or memory. Yaml 2.2.4+ Fix from $1,9502022-12-27 HIGH 7.5 CVE-2019-25072 Due to support of Gzip compression in request bodies, as well as a lack of limiting response body sizes, a malicious server can cause a client to con… Tendermint 0.31.1+ Fix from $1,9502022-12-27 HIGH 7.5 CVE-2022-4767 Denial of Service in GitHub repository usememos/memos prior to 0.9.1. Memos 0.9.1+ Fix from $1,9502022-12-27 CRITICAL 9.1 CVE-2022-24118 Certain General Electric Renewable Energy products allow attackers to use a code to trigger a reboot into the factory default configuration. This aff… Inet 900 Firmware 1.2.6 / 2.0.16+ Fix from $2,3002022-12-26 MEDIUM 6.5 CVE-2022-47932 Brave Browser before 1.43.34 allowed a remote attacker to cause a denial of service via a crafted HTML file that mentions an ipfs:// or ipns:// URL. … Brave 1.42.51+ Fix from $1,6002022-12-24 MEDIUM 6.5 CVE-2022-47934 Brave Browser before 1.43.88 allowed a remote attacker to cause a denial of service in private and guest windows via a crafted HTML file that mention… Brave 1.43.88+ Fix from $1,6002022-12-24 HIGH 7.5 CVE-2022-28229 The hash functionality in userver before 42059b6319661583b3080cab9b595d4f8ac48128 allows attackers to cause a denial of service via crafted HTTP requ… Userver 2022-11-18+ Fix from $1,9502022-12-23 MEDIUM 6.2 CVE-2022-39164 IBM AIX 7.1, 7.2, 7.3, and VIOS 3.1could allow a non-privileged local user to exploit a vulnerability in the AIX kernel to cause a denial of service.… Vios Patch available Fix from $1,6002022-12-23 MEDIUM 6.2 CVE-2022-39165 IBM AIX 7.1, 7.2, 7.3, and VIOS 3.1could allow a non-privileged local user to exploit a vulnerability in CAA to cause a denial of service. IBM X-For… Vios Patch available Fix from $1,6002022-12-23 HIGH 7.5 CVE-2022-40899 An issue discovered in Python Charmers Future 0.18.2 and earlier allows remote attackers to cause a denial of service via crafted Set-Cookie header f… Python Future after 0.18.2 Fix from $1,9502022-12-23