Vulnerability index

Browse CVEs

2,053 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Resource Allocation Without LimitsCWE-770 × clear
OpenBSD HIGH 7.5
CVE-2017-5850EPSS 17%

httpd in OpenBSD allows remote attackers to cause a denial of service (memory consumption) via a series of requests for a large file using an HTTP Ra…

Patch available
Fix from $1,950 2017-03-27
Libplist HIGH 7.5
CVE-2017-5835

libplist allows attackers to cause a denial of service (large memory allocation and crash) via vectors involving an offset size of zero.

Patch available
Fix from $1,950 2017-03-03
Openstack MEDIUM 6.0
CVE-2016-8576

The xhci_ring_fetch function in hw/usb/hcd-xhci.c in QEMU (aka Quick Emulator) allows local guest OS administrators to cause a denial of service (inf…

Fix: after 2.7.1
Fix from $1,600 2016-11-04
Jq HIGH 7.5
CVE-2016-4074EPSS 5%

The jv_dump_term function in jq 1.5 allows remote attackers to cause a denial of service (stack consumption and application crash) via a crafted JSON…

Fix: after 1.5
Fix from $1,950 2016-05-06
PHP MEDIUM 5.0
CVE-2009-4017EPSS 12%

PHP before 5.2.12 and 5.3.x before 5.3.1 does not restrict the number of temporary files created when handling a multipart/form-data POST request, wh…

Fix: 5.2.12+
Fix from $1,600 2009-11-24
Unified Communications Manager HIGH 7.8
CVE-2009-2054

Cisco Unified Communications Manager (aka CUCM, formerly CallManager) 4.x, 5.x before 5.1(3g), 6.x before 6.1(4), 7.0 before 7.0(2a)su1, and 7.1 befo…

Fix: 5.1 / 6.1+
Fix from $1,950 2009-08-27
Asterisk HIGH 7.8
CVE-2009-2726EPSS 7%

The SIP channel driver in Asterisk Open Source 1.2.x before 1.2.34, 1.4.x before 1.4.26.1, 1.6.0.x before 1.6.0.12, and 1.6.1.x before 1.6.1.4; Aster…

Fix: 1.2.34 / 1.3.0.3+
Fix from $1,950 2009-08-12
Office Communicator MEDIUM 5.3
CVE-2008-5180EPSS 68%

Microsoft Communicator, and Communicator in Microsoft Office 2010 beta, allows remote attackers to cause a denial of service (memory consumption) via…

No fix yet
Fix from $1,600 2008-11-20
HTTP Server MEDIUM 5.0
CVE-2008-2364EPSS 13%

The ap_proxy_http_process_response function in mod_proxy_http.c in the mod_proxy module in the Apache HTTP Server 2.0.63 and 2.2.8 does not limit the…

Fix: 2.0.64 / 2.2.9+
Fix from $1,600 2008-06-13
Worksite Web HIGH 7.1
CVE-2008-1700

The Web TransferCtrl Class 8,2,1,4 (iManFile.cab), as used in WorkSite Web 8.2 before SP1 P2, allows remote attackers to cause a denial of service (m…

Fix: after 8.2
Fix from $1,950 2008-04-08
Joomla\! MEDIUM 5.3
CVE-2005-4650

Joomla! 1.03 does not restrict the number of "Search" Mambots, which allows remote attackers to cause a denial of service (resource consumption) via …

Patch available
Fix from $1,600 2005-12-31
HTTP Server MEDIUM 5.0
CVE-2005-2970EPSS 14%

Memory leak in the worker MPM (worker.c) for Apache 2, in certain circumstances, allows remote attackers to cause a denial of service (memory consump…

Fix: 2.0.55+
Fix from $1,600 2005-10-25
Iptables MEDIUM 5.0
CVE-2001-1388

iptables before 1.2.4 does not accurately convert rate limits that are specified on the command line, which could allow attackers or users to generat…

Fix: 1.2.4+
Fix from $1,600 2001-11-05