Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds WriteCWE-787 × clear
Ipados HIGH 7.8
CVE-2022-32820

An out-of-bounds write issue was addressed with improved input validation. This issue is fixed in iOS 15.6 and iPadOS 15.6, macOS Big Sur 11.6.8, wat…

Fix: 8.7 / 10.15.7+
Fix from $1,950 2022-09-23
Ipados HIGH 7.8
CVE-2022-32821

A memory corruption issue was addressed with improved validation. This issue is fixed in watchOS 8.7, tvOS 15.6, iOS 15.6 and iPadOS 15.6, macOS Mont…

Fix: 8.7 / 12.5+
Fix from $1,950 2022-09-23
Mac Os X HIGH 7.1
CVE-2022-32843

An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in Security Update 2022-005 Catalina, macOS Big Sur 11.…

Fix: 10.15.7 / 11.6.8+
Fix from $1,950 2022-09-23
Ipados HIGH 8.8
CVE-2022-32787

An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 15.6 and iPadOS 15.6, macOS Big Sur 11.6.8, watc…

Fix: 8.7 / 10.15.7+
Fix from $1,950 2022-09-23
Ipados HIGH 8.8
CVE-2022-32792

An out-of-bounds write issue was addressed with improved input validation. This issue is fixed in iOS 15.6 and iPadOS 15.6, watchOS 8.7, tvOS 15.6, m…

Fix: 8.7 / 12.5+
Fix from $1,950 2022-09-23
macOS HIGH 7.8
CVE-2022-32796

A memory corruption issue was addressed with improved state management. This issue is fixed in macOS Monterey 12.5. An app may be able to execute arb…

Fix: 12.5+
Fix from $1,950 2022-09-23
macOS HIGH 7.8
CVE-2022-32798

An out-of-bounds write issue was addressed with improved input validation. This issue is fixed in macOS Monterey 12.5. An app may be able to gain ele…

Fix: 12.5+
Fix from $1,950 2022-09-23
Ipados HIGH 7.8
CVE-2022-32815

The issue was addressed with improved memory handling. This issue is fixed in iOS 15.6 and iPadOS 15.6, macOS Big Sur 11.6.8, watchOS 8.7, tvOS 15.6,…

Fix: 8.7 / 10.15.7+
Fix from $1,950 2022-09-23
Safari HIGH 8.8
CVE-2022-26700

A memory corruption issue was addressed with improved state management. This issue is fixed in tvOS 15.5, watchOS 8.6, iOS 15.5 and iPadOS 15.5, macO…

Fix: 8.6 / 12.4+
Fix from $1,950 2022-09-23
Safari HIGH 8.8
CVE-2022-22610

A memory corruption issue was addressed with improved state management. This issue is fixed in macOS Monterey 12.3, Safari 15.4, watchOS 8.5, iOS 15.…

Fix: 8.5 / 12.3+
Fix from $1,950 2022-09-23
Swftools MEDIUM 5.5
CVE-2022-35092

SWFTools commit 772e55a2 was discovered to contain a segmentation violation via convert_gfxline at /gfxpoly/convert.c.

No fix yet
Fix from $1,600 2022-09-23
Swftools MEDIUM 5.5
CVE-2022-35093

SWFTools commit 772e55a2 was discovered to contain a global buffer overflow via DCTStream::transformDataUnit at /xpdf/Stream.cc.

No fix yet
Fix from $1,600 2022-09-23
Swftools MEDIUM 5.5
CVE-2022-35094

SWFTools commit 772e55a2 was discovered to contain a heap-buffer overflow via DCTStream::readHuffSym(DCTHuffTable*) at /xpdf/Stream.cc.

No fix yet
Fix from $1,600 2022-09-23
Swftools MEDIUM 5.5
CVE-2022-35095

SWFTools commit 772e55a2 was discovered to contain a segmentation violation via InfoOutputDev::type3D1 at /pdf/InfoOutputDev.cc.

No fix yet
Fix from $1,600 2022-09-23
Swftools MEDIUM 5.5
CVE-2022-35096

SWFTools commit 772e55a2 was discovered to contain a heap-buffer overflow via draw_stroke at /gfxpoly/stroke.c.

No fix yet
Fix from $1,600 2022-09-23
Swftools MEDIUM 5.5
CVE-2022-35097

SWFTools commit 772e55a2 was discovered to contain a segmentation violation via FoFiTrueType::writeTTF at /xpdf/FoFiTrueType.cc.

No fix yet
Fix from $1,600 2022-09-23
Swftools MEDIUM 5.5
CVE-2022-35098

SWFTools commit 772e55a2 was discovered to contain a heap-buffer overflow via GfxICCBasedColorSpace::getDefaultColor(GfxColor*) at /xpdf/GfxState.cc.

No fix yet
Fix from $1,600 2022-09-23
Swftools MEDIUM 5.5
CVE-2022-35099

SWFTools commit 772e55a2 was discovered to contain a stack overflow via ImageStream::getPixel(unsigned char*) at /xpdf/Stream.cc.

No fix yet
Fix from $1,600 2022-09-23
Thinmanager CRITICAL 9.8
CVE-2022-38742EPSS 22%

Rockwell Automation ThinManager ThinServer versions 11.0.0 - 13.0.0 is vulnerable to a heap-based buffer overflow. An attacker could send a specifica…

Fix: after 13.0.0
Fix from $2,300 2022-09-23
Gds3710 Firmware CRITICAL 9.8
CVE-2022-2025

an attacker with knowledge of user/pass of Grandstream GSD3710 in its 1.0.11.13 version, could overflow the stack since it doesn't check the param le…

Mitigation only
Fix from $2,300 2022-09-23
Gds3710 Firmware CRITICAL 9.8
CVE-2022-2070

In Grandstream GSD3710 in its 1.0.11.13 version, it's possible to overflow the stack since it doesn't check the param length before using the sscanf …

Mitigation only
Fix from $2,300 2022-09-23
Libiec61850 CRITICAL 9.8
CVE-2022-2970

MZ Automation's libIEC61850 (versions 1.4 and prior; version 1.5 prior to commit a3b04b7bc4872a5a39e5de3fdc5fbde52c09e10e) does not sanitize input be…

Fix: 1.5.0+
Fix from $2,300 2022-09-23
Libiec61850 CRITICAL 9.8
CVE-2022-2972

MZ Automation's libIEC61850 (versions 1.4 and prior; version 1.5 prior to commit a3b04b7bc4872a5a39e5de3fdc5fbde52c09e10e) is vulnerable to a stack-b…

Fix: 1.5.0+
Fix from $2,300 2022-09-23
Ac15 Firmware CRITICAL 9.8
CVE-2022-40851EPSS 9%

Tenda AC15 V15.03.05.19 contained a stack overflow via the function fromAddressNat.

No fix yet
Fix from $2,300 2022-09-23
Ac18 Firmware CRITICAL 9.8
CVE-2022-40854

Tenda AC18 router contained a stack overflow vulnerability in /goform/fast_setting_wifi_set

No fix yet
Fix from $2,300 2022-09-23
W20e Firmware CRITICAL 9.8
CVE-2022-40855EPSS 13%

Tenda W20E router V15.11.0.6 contains a stack overflow in the function formSetPortMapping with post request 'goform/setPortMapping/'. This vulnerabil…

No fix yet
Fix from $2,300 2022-09-23
Ac18 Firmware HIGH 7.2
CVE-2022-40861

Tenda AC18 router V15.03.05.19 contains a stack overflow vulnerability in the formSetQosBand->FUN_0007db78 function with the request /goform/SetNetCo…

No fix yet
Fix from $1,950 2022-09-23
W20e Firmware CRITICAL 9.8
CVE-2022-40866

Tenda W20E router V15.11.0.6 (US_W20EV4.0br_V15.11.0.6(1068_1546_841)_CN_TDC) contains a stack overflow vulnerability in the function formSetDebugCfg…

No fix yet
Fix from $2,300 2022-09-23
W20e Firmware CRITICAL 9.8
CVE-2022-40867

Tenda W20E router V15.11.0.6 (US_W20EV4.0br_V15.11.0.6(1068_1546_841)_CN_TDC) contains a stack overflow vulnerability in the function formIPMacBindDe…

No fix yet
Fix from $2,300 2022-09-23
W20e Firmware CRITICAL 9.8
CVE-2022-40868

Tenda W20E router V15.11.0.6 (US_W20EV4.0br_V15.11.0.6(1068_1546_841)_CN_TDC) contains a stack overflow vulnerability in the function formDelDhcpRule…

No fix yet
Fix from $2,300 2022-09-23