Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds WriteCWE-787 × clear
Jt Open Toolkit HIGH 7.8
CVE-2021-44430

A vulnerability has been identified in JT Utilities (All versions < V13.1.1.0), JTTK (All versions < V11.1.1.0). JTTK library in affected products is…

Fix: 11.1.1.0 / 13.1.1.0+
Fix from $1,950 2021-12-14
Simcenter Star Ccm\+ Viewer HIGH 7.8
CVE-2021-42024

A vulnerability has been identified in Simcenter STAR-CCM+ Viewer (All versions < 2021.3.1). The starview+.exe application lacks proper validation of…

Fix: 2021.3.1+
Fix from $1,950 2021-12-14
Rizin HIGH 7.8
CVE-2021-43814

Rizin is a UNIX-like reverse engineering framework and command-line toolset. In versions up to and including 0.3.1 there is a heap-based out of bound…

Fix: after 0.3.1
Fix from $1,950 2021-12-13
I2 Analysts Notebook HIGH 7.8
CVE-2021-39050

IBM i2 Analyst's Notebook 9.2.0, 9.2.1, and 9.2.2 is vulnerable to a stack-based buffer overflow, caused by improper bounds checking. A local attacke…

Mitigation only
Fix from $1,950 2021-12-13
Spectrum Protect Backup Archive Client MEDIUM 5.5
CVE-2021-39048

IBM Spectrum Protect Client 7.1 and 8.1 is vulnerable to a stack based buffer overflow, caused by improper bounds checking. A local attacker could ex…

Fix: after 8.1.12.0
Fix from $1,600 2021-12-13
I2 Analysts Notebook HIGH 7.8
CVE-2021-39049

IBM i2 Analyst's Notebook 9.2.0, 9.2.1, and 9.2.2 is vulnerable to a stack-based buffer overflow, caused by improper bounds checking. A local attacke…

Mitigation only
Fix from $1,950 2021-12-13
Levistudiou HIGH 7.8
CVE-2021-43983

WECON LeviStudioU Versions 2019-09-21 and prior are vulnerable to multiple stack-based buffer overflow instances while parsing project files, which m…

Fix: after 2019-09-21
Fix from $1,950 2021-12-13
Fortiweb HIGH 8.8
CVE-2021-43071

A heap-based buffer overflow in Fortinet FortiWeb version 6.4.1 and 6.4.0, version 6.3.15 and below, version 6.2.6 and below allows attacker to execu…

Fix: after 6.3.16
Fix from $1,950 2021-12-09
Fortiweb HIGH 8.8
CVE-2021-36194

Multiple stack-based buffer overflows in the API controllers of FortiWeb 6.4.1, 6.4.0, and 6.3.0 through 6.3.15 may allow an authenticated attacker t…

Fix: after 6.3.15
Fix from $1,950 2021-12-09
Nss CRITICAL 9.8
CVE-2021-43527EPSS 18%

NSS (Network Security Services) versions prior to 3.73 or 3.68.1 ESR are vulnerable to a heap overflow when handling DER-encoded DSA or RSA-PSS signa…

Fix: 3.68.1 / 3.73+
Fix from $2,300 2021-12-08
Firefox HIGH 8.8
CVE-2021-43534

Mozilla developers and community members reported memory safety bugs present in Firefox 93 and Firefox ESR 91.2. Some of these bugs showed evidence o…

Fix: 91.3.0 / 94.0+
Fix from $1,950 2021-12-08
Yubihsm 2 Software Development Kit HIGH 7.5
CVE-2021-43399

The Yubico YubiHSM YubiHSM2 library 2021.08, included in the yubihsm-shell project, does not properly validate the length of some operations includin…

Fix: after 2021.08
Fix from $1,950 2021-12-08
Fortios HIGH 8.8
CVE-2021-36173

A heap-based buffer overflow in the firmware signature verification function of FortiOS versions 7.0.1, 7.0.0, 6.4.0 through 6.4.6, 6.2.0 through 6.2…

Fix: after 6.4.6
Fix from $1,950 2021-12-08
Fortiweb HIGH 8.8
CVE-2021-41017

Multiple heap-based buffer overflow vulnerabilities in some web API controllers of FortiWeb 6.4.1, 6.4.0, and 6.3.0 through 6.3.15 may allow a remote…

Fix: after 6.3.15
Fix from $1,950 2021-12-08
Harmonyos CRITICAL 9.8
CVE-2021-37049

There is a Heap-based buffer overflow vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may rewrite the memory of adja…

Fix: 2.0+
Fix from $2,300 2021-12-08
Android MEDIUM 6.7
CVE-2021-25518

An improper boundary check in secure_log of LDFW and BL31 prior to SMR Dec-2021 Release 1 allows arbitrary memory write and code execution.

Mitigation only
Fix from $1,600 2021-12-08
Fortiweb HIGH 7.8
CVE-2021-41027

A stack-based buffer overflow in Fortinet FortiWeb version 6.4.1 and 6.4.0, allows an authenticated attacker to execute unauthorized code or commands…

Patch available
Fix from $1,950 2021-12-08
Fortiadc MEDIUM 6.7
CVE-2021-42757

A buffer overflow [CWE-121] in the TFTP client library of FortiOS before 6.4.7 and FortiOS 7.0.0 through 7.0.2, may allow an authenticated local atta…

Fix: after 7.0.2
Fix from $1,600 2021-12-08
Sma 200 Firmware HIGH 8.8
CVE-2021-20043EPSS 23%

A Heap-based buffer overflow vulnerability in SonicWall SMA100 getBookmarks method allows a remote authenticated attacker to potentially execute code…

Mitigation only
Fix from $1,950 2021-12-08
Sma 200 Firmware CRITICAL 9.8
CVE-2021-20038 KEVEPSS 100%

A Stack-based buffer overflow vulnerability in SMA100 Apache httpd server's mod_cgi module environment variables allows a remote unauthenticated atta…

Mitigation only
Fix from $2,300 2021-12-08
Whatsapp CRITICAL 9.8
CVE-2021-24041

A missing bounds check in image blurring code prior to WhatsApp for Android v2.21.22.7 and WhatsApp Business for Android v2.21.22.7 could have allowe…

Fix: 2.21.22.7+
Fix from $2,300 2021-12-07
Harmonyos CRITICAL 9.1
CVE-2021-37011

There is a Stack-based Buffer Overflow vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may lead to Out-of-bounds rea…

Fix: 2.0+
Fix from $2,300 2021-12-07
Harmonyos HIGH 7.5
CVE-2021-37014

There is a Stack-based Buffer Overflow vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may lead to device cannot be …

Fix: 2.0+
Fix from $1,950 2021-12-07
Emui CRITICAL 9.1
CVE-2021-37020

There is a Stack-based Buffer Overflow vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may lead to Out-of-bounds rea…

Fix: 2.0+
Fix from $2,300 2021-12-07
Emui CRITICAL 9.1
CVE-2021-37021

There is a Stack-based Buffer Overflow vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may lead to Out-of-bounds rea…

Fix: 2.0+
Fix from $2,300 2021-12-07
Drawings Sdk HIGH 7.8
CVE-2021-44045

An out-of-bounds write vulnerability exists when reading a DGN file using Open Design Alliance Drawings SDK before 2022.11. The specific issue exists…

Fix: 2022.11+
Fix from $1,950 2021-12-05
Prc Sdk HIGH 7.8
CVE-2021-44046

An out-of-bounds write vulnerability exists when reading U3D files in Open Design Alliance PRC SDK before 2022.11. An unchecked return value of a fun…

Fix: 2022.11+
Fix from $1,950 2021-12-05
Drawings Explorer HIGH 7.8
CVE-2021-44048

An out-of-bounds write vulnerability exists when reading a TIF file using Open Design Alliance (ODA) Drawings Explorer before 2022.11. The specific i…

Fix: 2022.11+
Fix from $1,950 2021-12-05
Drawings Sdk HIGH 7.8
CVE-2021-44044

An out-of-bounds write vulnerability exists when reading a JPG file using Open Design Alliance Drawings SDK before 2022.11. The specific issue exists…

Fix: 2022.11+
Fix from $1,950 2021-12-05
Tsmuxer CRITICAL 9.8
CVE-2021-35344

tsMuxer v2.6.16 was discovered to contain a heap-based buffer overflow via the function BitStreamReader::getCurVal in bitStream.h.

Patch available
Fix from $2,300 2021-12-03