Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds WriteCWE-787 × clear
HIGH 7.5 CVE-2022-24145 Tenda AX3 v16.03.12.10_CN was discovered to contain a stack overflow in the function formWifiBasicSet. This vulnerability allows attackers to cause a… Ax3 Firmware No fix yet Fix from $1,9502022-02-04 HIGH 7.5 CVE-2022-24146 Tenda AX3 v16.03.12.10_CN was discovered to contain a stack overflow in the function formSetQosBand. This vulnerability allows attackers to cause a D… Ax3 Firmware No fix yet Fix from $1,9502022-02-04 HIGH 7.5 CVE-2021-45988 Tenda routers G1 and G3 v15.11.0.17(9502)_CN were discovered to contain a stack overflow in the function formAddDnsForward. This vulnerability allows… G1 Firmware Mitigation only Fix from $1,9502022-02-04 HIGH 7.5 CVE-2021-45989 Tenda routers G1 and G3 v15.11.0.17(9502)_CN were discovered to contain a stack overflow in the function guestWifiRuleRefresh. This vulnerability all… G1 Firmware Mitigation only Fix from $1,9502022-02-04 HIGH 7.5 CVE-2021-45991 Tenda routers G1 and G3 v15.11.0.17(9502)_CN were discovered to contain a stack overflow in the function formAddVpnUsers. This vulnerability allows a… G1 Firmware Mitigation only Fix from $1,9502022-02-04 HIGH 7.5 CVE-2021-45992 Tenda routers G1 and G3 v15.11.0.17(9502)_CN were discovered to contain a stack overflow in the function formSetQvlanList. This vulnerability allows … G1 Firmware Mitigation only Fix from $1,9502022-02-04 HIGH 7.5 CVE-2021-45993 Tenda routers G1 and G3 v15.11.0.17(9502)_CN were discovered to contain a stack overflow in the function formIPMacBindModify. This vulnerability allo… G1 Firmware Mitigation only Fix from $1,9502022-02-04 HIGH 7.5 CVE-2021-45994 Tenda routers G1 and G3 v15.11.0.17(9502)_CN were discovered to contain a stack overflow in the function formDelDhcpRule. This vulnerability allows a… G1 Firmware Mitigation only Fix from $1,9502022-02-04 HIGH 7.5 CVE-2021-45995 Tenda routers G1 and G3 v15.11.0.17(9502)_CN were discovered to contain a stack overflow in the function formSetStaticRoute. This vulnerability allow… G1 Firmware Mitigation only Fix from $1,9502022-02-04 HIGH 7.5 CVE-2021-45996 Tenda routers G1 and G3 v15.11.0.17(9502)_CN were discovered to contain a stack overflow in the function formSetPortMapping. This vulnerability allow… G1 Firmware No fix yet Fix from $1,9502022-02-04 HIGH 8.8 CVE-2022-21740 Tensorflow is an Open Source Machine Learning Framework. The implementation of `SparseCountSparseOutput` is vulnerable to a heap overflow. The fix wi… Tensorflow after 2.6.2 Fix from $1,9502022-02-03 MEDIUM 6.7 CVE-2021-42059 An issue was discovered in Insyde InsydeH2O Kernel 5.0 before 05.08.41, Kernel 5.1 before 05.16.41, Kernel 5.2 before 05.26.41, Kernel 5.3 before 05.… Insydeh2o 5.08.41 / 5.16.41+ Fix from $1,6002022-02-03 HIGH 8.2 CVE-2021-42554 An issue was discovered in Insyde InsydeH2O with Kernel 5.0 before 05.08.42, Kernel 5.1 before 05.16.42, Kernel 5.2 before 05.26.42, Kernel 5.3 befor… Insydeh2o 5.08.42 / 5.16.42+ Fix from $1,9502022-02-03 HIGH 8.2 CVE-2021-43615 An issue was discovered in HddPassword in Insyde InsydeH2O with kernel 5.1 before 05.16.23, 5.2 before 05.26.23, 5.3 before 05.35.23, 5.4 before 05.4… Insydeh2o 5.16.23 / 5.23.22+ Fix from $1,9502022-02-03 HIGH 7.5 CVE-2022-24030 An issue was discovered in AhciBusDxe in Insyde InsydeH2O with kernel 5.1 through 5.5. An SMM memory corruption vulnerability allows an attacker to w… Insydeh2o 5.08.41 / 5.16.41+ Fix from $1,9502022-02-03 HIGH 8.2 CVE-2022-24031 An issue was discovered in NvmExpressDxe in Insyde InsydeH2O with kernel 5.1 through 5.5. An SMM memory corruption vulnerability allows an attacker t… Insydeh2o 5.16.42 / 5.26.42+ Fix from $1,9502022-02-03 HIGH 7.5 CVE-2021-43522 An issue was discovered in Insyde InsydeH2O with kernel 5.1 through 2021-11-08, 5.2 through 2021-11-08, and 5.3 through 2021-11-08. A StorageSecurity… Insydeh2o 5.14.34 / 5.24.34+ Fix from $1,9502022-02-03 MEDIUM 6.1 CVE-2020-26208 JHEAD is a simple command line tool for displaying and some manipulation of EXIF header data embedded in Jpeg images from digital cameras. In affecte… Jhead 3.04+ Fix from $1,6002022-02-02 HIGH 7.2 CVE-2021-36193 Multiple stack-based buffer overflows in the command line interpreter of FortiWeb before 6.4.2 may allow an authenticated attacker to achieve arbitra… Fortiweb 6.2.6 / 6.3.16+ Fix from $1,9502022-02-02 MEDIUM 6.5 CVE-2022-24197 iText v7.1.17 was discovered to contain a stack-based buffer overflow via the component ByteBuffer.append, which allows attackers to cause a Denial o… Itext 7.2.2+ Fix from $1,6002022-02-01 HIGH 7.8 CVE-2022-0417 Heap-based Buffer Overflow GitHub repository vim/vim prior to 8.2. Fedora 8.2.4245+ Fix from $1,9502022-02-01 HIGH 7.8 CVE-2022-0408 Stack-based Buffer Overflow in GitHub repository vim/vim prior to 8.2. Fedora 8.2.4247+ Fix from $1,9502022-01-30 HIGH 7.8 CVE-2022-0407 Heap-based Buffer Overflow in GitHub repository vim/vim prior to 8.2. Vim 8.2.4219+ Fix from $1,9502022-01-30 HIGH 7.8 CVE-2022-0392 Heap-based Buffer Overflow in GitHub repository vim prior to 8.2. Debian Linux 8.2.4218 / 12.6+ Fix from $1,9502022-01-28 HIGH 7.8 CVE-2021-4034 KEVEPSS 95% A local privilege escalation vulnerability was found on polkit's pkexec utility. The pkexec application is a setuid tool designed to allow unprivileg… Enterprise Linux Server Update Services For Sap Solutions Patch available Fix from $1,9502022-01-28 CRITICAL 9.8 CVE-2022-21217 An out-of-bounds write vulnerability exists in the device TestEmail functionality of reolink RLC-410W v3.0.0.136_20121102. A specially-crafted networ… Rlc 410w Firmware Mitigation only Fix from $2,3002022-01-28 HIGH 8.2 CVE-2022-21796 A memory corruption vulnerability exists in the netserver parse_command_list functionality of reolink RLC-410W v3.0.0.136_20121102. A specially-craft… Rlc 410w Firmware Mitigation only Fix from $1,9502022-01-28 HIGH 7.8 CVE-2021-22807 A CWE-787: Out-of-bounds Write vulnerability exists that could cause arbitrary code execution when a malicious *.gd1 configuration file is loaded int… Guicon after 2.0 Fix from $1,9502022-01-28 HIGH 7.8 CVE-2021-46522 Cesanta MJS v2.20.0 was discovered to contain a heap buffer overflow via /usr/lib/x86_64-linux-gnu/libasan.so.4+0xaff53. Mjs No fix yet Fix from $1,9502022-01-27 HIGH 7.8 CVE-2021-46523 Cesanta MJS v2.20.0 was discovered to contain a heap buffer overflow via to_json_or_debug at mjs/src/mjs_json.c. Mjs No fix yet Fix from $1,9502022-01-27