Vulnerability index

Browse CVEs

1,648 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

iOS MEDIUM 5.9
CVE-2018-0179 KEV

Multiple vulnerabilities in the Login Enhancements (Login Block) feature of Cisco IOS Software could allow an unauthenticated, remote attacker to tri…

Mitigation only
Fix from $1,600 2018-03-28
iOS HIGH 8.0
CVE-2018-0175 KEV

Format String vulnerability in the Link Layer Discovery Protocol (LLDP) subsystem of Cisco IOS Software, Cisco IOS XE Software, and Cisco IOS XR Soft…

Fix: after 15.6.3m1
Fix from $1,950 2018-03-28
iOS HIGH 8.6
CVE-2018-0174 KEVEPSS 8%

A vulnerability in the DHCP option 82 encapsulation functionality of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, rem…

Fix: after 15.2
Fix from $1,950 2018-03-28
iOS HIGH 8.6
CVE-2018-0173 KEVEPSS 8%

A vulnerability in the Cisco IOS Software and Cisco IOS XE Software function that restores encapsulated option 82 information in DHCP Version 4 (DHCP…

Fix: after 15.2
Fix from $1,950 2018-03-28
iOS HIGH 8.6
CVE-2018-0172 KEVEPSS 8%

A vulnerability in the DHCP option 82 encapsulation functionality of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, rem…

Mitigation only
Fix from $1,950 2018-03-28
iOS CRITICAL 9.8
CVE-2018-0171 KEVEPSS 99%

A vulnerability in the Smart Install feature of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to trigg…

Mitigation only
Fix from $2,300 2018-03-28
iOS HIGH 8.8
CVE-2018-0167 KEV

Multiple Buffer Overflow vulnerabilities in the Link Layer Discovery Protocol (LLDP) subsystem of Cisco IOS Software, Cisco IOS XE Software, and Cisc…

Fix: 5.1.3+
Fix from $1,950 2018-03-28
iOS MEDIUM 6.3
CVE-2018-0161 KEV

A vulnerability in the Simple Network Management Protocol (SNMP) subsystem of Cisco IOS Software running on certain models of Cisco Catalyst Switches…

Mitigation only
Fix from $1,600 2018-03-28
iOS HIGH 7.5
CVE-2018-0159 KEVEPSS 7%

A vulnerability in the implementation of Internet Key Exchange Version 1 (IKEv1) functionality in Cisco IOS Software and Cisco IOS XE Software could …

Mitigation only
Fix from $1,950 2018-03-28
iOS HIGH 8.6
CVE-2018-0158 KEVEPSS 7%

A vulnerability in the Internet Key Exchange Version 2 (IKEv2) module of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated,…

Mitigation only
Fix from $1,950 2018-03-28
iOS HIGH 7.5
CVE-2018-0156 KEVEPSS 8%

A vulnerability in the Smart Install feature of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to trigg…

Mitigation only
Fix from $1,950 2018-03-28
iOS HIGH 8.6
CVE-2018-0155 KEVEPSS 8%

A vulnerability in the Bidirectional Forwarding Detection (BFD) offload implementation of Cisco Catalyst 4500 Series Switches and Cisco Catalyst 4500…

Mitigation only
Fix from $1,950 2018-03-28
iOS HIGH 7.5
CVE-2018-0154 KEVEPSS 7%

A vulnerability in the crypto engine of the Cisco Integrated Services Module for VPN (ISM-VPN) running Cisco IOS Software could allow an unauthentica…

Mitigation only
Fix from $1,950 2018-03-28
Ios Xe CRITICAL 9.8
CVE-2018-0151 KEVEPSS 14%

A vulnerability in the quality of service (QoS) subsystem of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote atta…

Mitigation only
Fix from $2,300 2018-03-28
Zimbra Collaboration Suite MEDIUM 6.1
CVE-2018-6882 KEVEPSS 25%

Cross-site scripting (XSS) vulnerability in the ZmMailMsgView.getAttachmentLinkHtml function in Zimbra Collaboration Suite (ZCS) before 8.7 Patch 1 a…

Fix: 8.7.0+
Fix from $1,600 2018-03-27
iOS MEDIUM 5.9
CVE-2017-12319 KEVEPSS 5%

A vulnerability in the Border Gateway Protocol (BGP) over an Ethernet Virtual Private Network (EVPN) for Cisco IOS XE Software could allow an unauthe…

Fix: 16.3+
Fix from $1,600 2018-03-27
Routeros CRITICAL 9.8
CVE-2018-7445 KEVEPSS 61%

A buffer overflow was found in the MikroTik RouterOS SMB service when processing NetBIOS session request messages. Remote attackers with access to th…

Fix: 6.41.3+
Fix from $2,300 2018-03-19
Secure Access Control System CRITICAL 9.8
CVE-2018-0147 KEVEPSS 18%

A vulnerability in Java deserialization used by Cisco Secure Access Control System (ACS) prior to release 5.8 patch 9 could allow an unauthenticated,…

Mitigation only
Fix from $2,300 2018-03-08
Dir 860l Firmware CRITICAL 9.8
CVE-2018-6530 KEVEPSS 97%

OS command injection vulnerability in soap.cgi (soapcgi_main in cgibin) in D-Link DIR-880L DIR-880L_REVA_FIRMWARE_PATCH_1.08B04 and previous versions…

Fix: after 1.12b04
Fix from $2,300 2018-03-06
Customer Relationship Management MEDIUM 6.6
CVE-2018-2380 KEVEPSS 29%

SAP CRM, 7.01, 7.02,7.30, 7.31, 7.33, 7.54, allows an attacker to exploit insufficient validation of path information provided by users, thus charact…

Mitigation only
Fix from $1,600 2018-03-01
Debian Linux CRITICAL 9.8
CVE-2018-6789 KEVEPSS 82%

An issue was discovered in the base64d function in the SMTP listener in Exim before 4.90.1. By sending a handcrafted message, a buffer overflow may h…

Fix: 4.90.1+
Fix from $2,300 2018-02-08
Rv132w Firmware CRITICAL 9.8
CVE-2018-0125 KEVEPSS 55%

A vulnerability in the web interface of the Cisco RV132W ADSL2+ Wireless-N VPN and RV134W VDSL2 Wireless-AC VPN Routers could allow an unauthenticate…

Mitigation only
Fix from $2,300 2018-02-08
Enterprise Linux Desktop HIGH 7.8
CVE-2018-4878 KEVEPSS 90%

A use-after-free vulnerability was discovered in Adobe Flash Player before 28.0.0.161. This vulnerability occurs due to a dangling pointer in the Pri…

Fix: 28.0.0.161+
Fix from $1,950 2018-02-06
Jenkins CRITICAL 9.8
CVE-2017-1000353 KEVEPSS 100%

Jenkins versions 2.56 and earlier as well as 2.46.1 LTS and earlier are vulnerable to an unauthenticated remote code execution. An unauthenticated re…

Fix: after 2.56
Fix from $2,300 2018-01-29
Office HIGH 7.8
CVE-2018-0802 KEVEPSS 87%

Equation Editor in Microsoft Office 2007, Microsoft Office 2010, Microsoft Office 2013, and Microsoft Office 2016 allow a remote code execution vulne…

Patch available
Fix from $1,950 2018-01-10
Office HIGH 8.8
CVE-2018-0798 KEVEPSS 91%

Equation Editor in Microsoft Office 2007, Microsoft Office 2010, Microsoft Office 2013, and Microsoft Office 2016 allows a remote code execution vuln…

Patch available
Fix from $1,950 2018-01-10
Primefaces CRITICAL 9.8
CVE-2017-1000486 KEVEPSS 94%

Primetek Primefaces 5.x is vulnerable to a weak encryption flaw resulting in remote code execution

Fix: 5.2.21 / 5.3.8+
Fix from $2,300 2018-01-03
Goahead HIGH 8.1
CVE-2017-17562 KEVEPSS 96%

Embedthis GoAhead before 3.6.5 allows remote code execution if CGI is enabled and a CGI program is dynamically linked. This is a result of initializi…

Fix: 3.6.5+
Fix from $1,950 2017-12-12
Pan Os CRITICAL 9.8
CVE-2017-15944 KEVEPSS 98%

Palo Alto Networks PAN-OS before 6.1.19, 7.0.x before 7.0.19, 7.1.x before 7.1.14, and 8.0.x before 8.0.6 allows remote attackers to execute arbitrar…

Fix: 6.1.19 / 7.0.19+
Fix from $2,300 2017-12-11
Office HIGH 7.8
CVE-2017-11882 KEVEPSS 100%

Microsoft Office 2007 Service Pack 3, Microsoft Office 2010 Service Pack 2, Microsoft Office 2013 Service Pack 1, and Microsoft Office 2016 allow an …

Patch available
Fix from $1,950 2017-11-15