Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds WriteCWE-787 × clear
Cscape HIGH 7.8
CVE-2022-3379

Horner Automation's Cscape version 9.90 SP7 and prior does not properly validate user-supplied data. If a user opens a maliciously formed FNT file, t…

Fix: 9.90+
Fix from $1,950 2022-10-27
R Seenet CRITICAL 9.8
CVE-2022-3385

Advantech R-SeeNet Versions 2.4.17 and prior are vulnerable to a stack-based buffer overflow. An unauthorized attacker can remotely overflow the stac…

Fix: after 2.4.17
Fix from $2,300 2022-10-27
R Seenet CRITICAL 9.8
CVE-2022-3386

Advantech R-SeeNet Versions 2.4.17 and prior are vulnerable to a stack-based buffer overflow. An unauthorized attacker can use an outsized filename t…

Fix: after 2.4.17
Fix from $2,300 2022-10-27
Ax1803 Firmware CRITICAL 9.8
CVE-2022-40876

In Tenda ax1803 v1.0.0.1, the http requests handled by the fromAdvSetMacMtuWan functions, wanSpeed, cloneType, mac, can cause a stack overflow and en…

No fix yet
Fix from $2,300 2022-10-27
Ax1803 Firmware HIGH 7.5
CVE-2022-40875

Tenda AX1803 v1.0.0.1 was discovered to contain a heap overflow in the function GetParentControlInfo.

No fix yet
Fix from $1,950 2022-10-27
Ax1803 Firmware HIGH 7.5
CVE-2022-40874

Tenda AX1803 v1.0.0.1 was discovered to contain a heap overflow vulnerability in the GetParentControlInfo function, which can cause a denial of servi…

No fix yet
Fix from $1,950 2022-10-27
Wireshark HIGH 7.5
CVE-2022-3725

Crash in the OPUS protocol dissector in Wireshark 3.6.0 to 3.6.8 allows denial of service via packet injection or crafted capture file

Fix: after 3.6.8
Fix from $1,950 2022-10-27
Openbmc HIGH 7.5
CVE-2022-3409

A vulnerability in bmcweb of OpenBMC Project allows user to cause denial of service. This vulnerability was identified during mitigation for CVE-2022…

Fix: after 2.13.0
Fix from $1,950 2022-10-27
Openbmc HIGH 7.5
CVE-2022-2809

A vulnerability in bmcweb of OpenBMC Project allows user to cause denial of service. When fuzzing the multipart_parser code using AFL++ with address …

Fix: after 2.13.0
Fix from $1,950 2022-10-27
Dir 816 Firmware CRITICAL 9.8
CVE-2022-43002

D-Link DIR-816 A2 1.10 B05 was discovered to contain a stack overflow via the wizardstep54_pskpwd parameter at /goform/form2WizardStep54.

No fix yet
Fix from $2,300 2022-10-26
Dir 816 Firmware CRITICAL 9.8
CVE-2022-43003

D-Link DIR-816 A2 1.10 B05 was discovered to contain a stack overflow via the pskValue parameter in the setRepeaterSecurity function.

No fix yet
Fix from $2,300 2022-10-26
Dir 816 Firmware CRITICAL 9.8
CVE-2022-43000

D-Link DIR-816 A2 1.10 B05 was discovered to contain a stack overflow via the wizardstep4_pskpwd parameter at /goform/form2WizardStep4.

No fix yet
Fix from $2,300 2022-10-26
Dir 816 Firmware CRITICAL 9.8
CVE-2022-43001

D-Link DIR-816 A2 1.10 B05 was discovered to contain a stack overflow via the pskValue parameter in the setSecurity function.

No fix yet
Fix from $2,300 2022-10-26
Bento4 HIGH 7.8
CVE-2022-3670

A vulnerability was found in Axiomatic Bento4. It has been classified as critical. Affected is the function WriteSample of the component mp42hevc. Th…

No fix yet
Fix from $1,950 2022-10-26
Dir 816 Firmware CRITICAL 9.8
CVE-2022-42998

D-Link DIR-816 A2 1.10 B05 was discovered to contain a stack overflow via the srcip parameter at /goform/form2IPQoSTcAdd.

No fix yet
Fix from $2,300 2022-10-26
Bento4 HIGH 7.5
CVE-2022-3667

A vulnerability, which was classified as critical, was found in Axiomatic Bento4. This affects the function AP4_MemoryByteStream::WritePartial of the…

No fix yet
Fix from $1,950 2022-10-26
Bento4 HIGH 7.8
CVE-2022-3665

A vulnerability classified as critical was found in Axiomatic Bento4. Affected by this vulnerability is an unknown functionality of the file AvcInfo.…

No fix yet
Fix from $1,950 2022-10-26
Bento4 HIGH 7.8
CVE-2022-3664

A vulnerability classified as critical has been found in Axiomatic Bento4. Affected is the function AP4_BitStream::WriteBytes of the file Ap4BitStrea…

No fix yet
Fix from $1,950 2022-10-26
Linux Kernel MEDIUM 6.7
CVE-2022-43750

drivers/usb/mon/mon_bin.c in usbmon in the Linux kernel before 5.19.15 and 6.x before 6.0.1 allows a user-space client to corrupt the monitor's inter…

Fix: 4.9.331 / 4.14.296+
Fix from $1,600 2022-10-26
Fabric Operating System HIGH 8.8
CVE-2022-33183

A vulnerability in Brocade Fabric OS CLI before Brocade Fabric OS v9.1.0, 9.0.1e, 8.2.3c, 8.2.0cbn5, 7.4.2.j could allow a remote authenticated attac…

Fix: 7.4.2.j / 8.2.3c+
Fix from $1,950 2022-10-25
Fabric Operating System HIGH 7.8
CVE-2022-33184

A vulnerability in fab_seg.c.h libraries of all Brocade Fabric OS versions before Brocade Fabric OS v9.1.1, v9.0.1e, v8.2.3c, v8.2.0_cbn5, 7.4.2j cou…

Fix: 7.4.2.j / 8.2.3c+
Fix from $1,950 2022-10-25
Fabric Operating System HIGH 7.8
CVE-2022-33185

Several commands in Brocade Fabric OS before Brocade Fabric OS v.9.0.1e, and v9.1.0 use unsafe string functions to process user input. Authenticated …

Fix: 9.0.1e+
Fix from $1,950 2022-10-25
Wtviewere 761941 CRITICAL 9.8
CVE-2022-40984

Stack-based buffer overflow in WTViewerE series WTViewerE 761941 from 1.31 to 1.61 and WTViewerEfree from 1.01 to 1.52 allows an attacker to cause th…

Fix: 1.53 / 1.62+
Fix from $2,300 2022-10-24
Iac Ast2500a Firmware CRITICAL 9.8
CVE-2021-26727

Multiple command injections and stack-based buffer overflows vulnerabilities in the SubNet_handler_func function of spx_restservice allow an attacker…

Mitigation only
Fix from $2,300 2022-10-24
Iac Ast2500a Firmware CRITICAL 9.8
CVE-2021-26728

Command injection and stack-based buffer overflow vulnerabilities in the KillDupUsr_func function of spx_restservice allow an attacker to execute arb…

Mitigation only
Fix from $2,300 2022-10-24
Iac Ast2500a Firmware CRITICAL 9.8
CVE-2021-26729

Command injection and multiple stack-based buffer overflows vulnerabilities in the Login_handler_func function of spx_restservice allow an attacker t…

Mitigation only
Fix from $2,300 2022-10-24
Iac Ast2500a Firmware CRITICAL 9.8
CVE-2021-26730

A stack-based buffer overflow vulnerability in a subfunction of the Login_handler_func function of spx_restservice allows an attacker to execute arbi…

Mitigation only
Fix from $2,300 2022-10-24
Iac Ast2500a Firmware CRITICAL 9.8
CVE-2021-26731

Command injection and multiple stack-based buffer overflows vulnerabilities in the modifyUserb_func function of spx_restservice allow an authenticate…

Mitigation only
Fix from $2,300 2022-10-24
Iowow HIGH 7.5
CVE-2022-23462

IOWOW is a C utility library and persistent key/value storage engine. Versions 1.4.15 and prior contain a stack buffer overflow vulnerability that al…

Fix: after 1.4.15
Fix from $1,950 2022-10-21
Autocad HIGH 7.8
CVE-2022-42943

A malicious crafted dwf or .pct file when consumed through DesignReview.exe application could lead to memory corruption vulnerability by read access …

Patch available
Fix from $1,950 2022-10-21