Vulnerability index

Browse CVEs

2,053 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Resource Allocation Without LimitsCWE-770 × clear
Sf302 08pp Firmware HIGH 8.6
CVE-2019-1814

A vulnerability in the interactions between the DHCP and TFTP features for Cisco Small Business 300 Series (Sx300) Managed Switches could allow an un…

Fix: 1.4.10.6+
Fix from $1,950 2019-05-16
Sf200 24 Firmware HIGH 7.7
CVE-2019-1806

A vulnerability in the Simple Network Management Protocol (SNMP) input packet processor of Cisco Small Business Sx200, Sx300, Sx500, ESW2 Series Mana…

Fix: 1.4.10.6+
Fix from $1,950 2019-05-15
Secure Firewall Threat Defense HIGH 8.6
CVE-2019-1703

A vulnerability in the internal packet-processing functionality of Cisco Firepower Threat Defense (FTD) Software for the Cisco Firepower 2100 Series …

Fix: 6.2.3.12+
Fix from $1,950 2019-05-03
Secure Firewall Threat Defense HIGH 7.5
CVE-2018-15462

A vulnerability in the TCP ingress handler for the data interfaces that are configured with management access to Cisco Firepower Threat Defense (FTD)…

Fix: 6.2.3.12 / 6.3.0.3+
Fix from $1,950 2019-05-03
Emc Openmanage Server Administrator HIGH 7.5
CVE-2019-3721

Dell EMC Open Manage System Administrator (OMSA) versions prior to 9.3.0 contain an Improper Range Header Processing Vulnerability. A remote unauthen…

Fix: 9.3.0+
Fix from $1,950 2019-04-25
Linux Kernel MEDIUM 5.5
CVE-2019-3882

A flaw was found in the Linux kernel's vfio interface implementation that permits violation of the user's locked memory limit. If a device is bound t…

Patch available
Fix from $1,600 2019-04-24
Pm554 Tp Eth Firmware HIGH 7.5
CVE-2019-10953

ABB, Phoenix Contact, Schneider Electric, Siemens, WAGO - Programmable Logic Controllers, multiple versions. Researchers have found some controllers …

Fix: 1.10.0.0+
Fix from $1,950 2019-04-17
Junos HIGH 7.5
CVE-2019-0031

Specific IPv6 DHCP packets received by the jdhcpd daemon will cause a memory resource consumption issue to occur on a Junos OS device using the jdhcp…

Fix: 17.4r2 / 18.1r2+
Fix from $1,950 2019-04-10
Junos MEDIUM 6.5
CVE-2019-0038

Crafted packets destined to the management interface (fxp0) of an SRX340 or SRX345 services gateway may create a denial of service (DoS) condition du…

Mitigation only
Fix from $1,600 2019-04-10
Podofo MEDIUM 5.5
CVE-2019-10723

An issue was discovered in PoDoFo 0.9.6. The PdfPagesTreeCache class in doc/PdfPagesTreeCache.cpp has an attempted excessive memory allocation becaus…

No fix yet
Fix from $1,600 2019-04-03
Kubernetes MEDIUM 6.5
CVE-2019-1002100EPSS 10%

In all Kubernetes versions prior to v1.11.8, v1.12.6, and v1.13.4, users that are authorized to make patch requests to the Kubernetes API Server can …

Fix: 1.11.8 / 1.12.6+
Fix from $1,600 2019-04-01
Ios Xe HIGH 8.6
CVE-2019-1737

A vulnerability in the processing of IP Service Level Agreement (SLA) packets by Cisco IOS Software and Cisco IOS XE software could allow an unauthen…

Patch available
Fix from $1,950 2019-03-27
Fedora HIGH 7.5
CVE-2018-12545EPSS 5%

In Eclipse Jetty version 9.3.x and 9.4.x, the server is vulnerable to Denial of Service conditions if a remote client sends either large SETTINGs fra…

Patch available
Fix from $1,950 2019-03-27
Rails HIGH 7.5
CVE-2019-5419EPSS 9%

There is a possible denial of service vulnerability in Action View (Rails) <5.2.2.1, <5.1.6.2, <5.0.7.2, <4.2.11.1 where specially crafted accept hea…

Fix: 4.2.11.1 / 5.0.7.2+
Fix from $1,950 2019-03-27
Debian Linux MEDIUM 5.5
CVE-2019-9705

Vixie Cron before the 3.0pl1-133 Debian package allows local users to cause a denial of service (memory consumption) via a large crontab file because…

Fix: 3.0pl1-133+
Fix from $1,600 2019-03-12
Nx Os HIGH 8.6
CVE-2019-1599EPSS 14%

A vulnerability in the network stack of Cisco NX-OS Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condi…

Fix: 3.2 / 4.0+
Fix from $1,950 2019-03-07
Flexnet Publisher CRITICAL 9.8
CVE-2018-20033

A Remote Code Execution vulnerability in lmgrd and vendor daemon components of FlexNet Publisher version 11.16.1.0 and earlier could allow a remote a…

Fix: after 13.4
Fix from $2,300 2019-02-25
Binutils MEDIUM 5.5
CVE-2019-9072

An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.32. It is an attempted excessive m…

Patch available
Fix from $1,600 2019-02-24
Ubuntu Linux MEDIUM 5.5
CVE-2019-9073

An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.32. It is an attempted excessive m…

Patch available
Fix from $1,600 2019-02-24
Binutils MEDIUM 5.5
CVE-2019-9076

An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.32. It is an attempted excessive m…

Patch available
Fix from $1,600 2019-02-24
Tor HIGH 7.5
CVE-2019-8955

In Tor before 0.3.3.12, 0.3.4.x before 0.3.4.11, 0.3.5.x before 0.3.5.8, and 0.4.x before 0.4.0.2-alpha, remote denial of service against Tor clients…

Fix: 0.3.3.12 / 0.3.4.11+
Fix from $1,950 2019-02-21
Django HIGH 7.5
CVE-2019-6975EPSS 5%

Django 1.11.x before 1.11.19, 2.0.x before 2.0.11, and 2.1.x before 2.1.6 allows Uncontrolled Memory Consumption via a malicious attacker-supplied va…

Fix: 1.11.19 / 2.0.11+
Fix from $1,950 2019-02-11
Bento4 MEDIUM 6.5
CVE-2019-7698

An issue was discovered in AP4_Array<AP4_CttsTableEntry>::EnsureCapacity in Core/Ap4Array.h in Bento4 1.5.1-627. Crafted MP4 input triggers an attemp…

No fix yet
Fix from $1,600 2019-02-10
Binaryen MEDIUM 6.5
CVE-2019-7704

wasm::WasmBinaryBuilder::readUserSection in wasm-binary.cpp in Binaryen 1.38.22 triggers an attempt at excessive memory allocation, as demonstrated b…

Fix: 64+
Fix from $1,600 2019-02-10
Libming HIGH 8.8
CVE-2019-7581

The parseSWF_ACTIONRECORD function in util/parser.c in libming through 0.4.8 allows remote attackers to have unspecified impact via a crafted swf fil…

Fix: after 0.4.8
Fix from $1,950 2019-02-07
Libming HIGH 8.8
CVE-2019-7582

The readBytes function in util/read.c in libming through 0.4.8 allows remote attackers to have unspecified impact via a crafted swf file that trigger…

Fix: after 0.4.8
Fix from $1,950 2019-02-07
Elfutils MEDIUM 6.5
CVE-2019-7148

An attempted excessive memory allocation was discovered in the function read_long_names in elf_begin.c in libelf in elfutils 0.174. Remote attackers …

No fix yet
Fix from $1,600 2019-01-29
Openjpeg MEDIUM 6.5
CVE-2019-6988

An issue was discovered in OpenJPEG 2.3.0. It allows remote attackers to cause a denial of service (attempted excessive memory allocation) in opj_cal…

No fix yet
Fix from $1,600 2019-01-28
Bento4 MEDIUM 6.5
CVE-2019-6966

An issue was discovered in Bento4 1.5.1-628. The AP4_ElstAtom class in Core/Ap4ElstAtom.cpp has an attempted excessive memory allocation related to A…

No fix yet
Fix from $1,600 2019-01-25
Go HIGH 8.2
CVE-2019-6486

Go before 1.10.8 and 1.11.x before 1.11.5 mishandles P-521 and P-384 elliptic curves, which allows attackers to cause a denial of service (CPU consum…

Fix: 1.10.8 / 1.11.5+
Fix from $1,950 2019-01-24