Vulnerability index

Browse CVEs

131 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Raid Controller Web Interface HIGH 7.5
CVE-2023-4326

Broadcom RAID Controller web interface is vulnerable has an insecure default TLS configuration that supports obsolete SHA1-based ciphersuites

Mitigation only
Fix from $1,950 2023-08-15
Raid Controller Web Interface MEDIUM 6.5
CVE-2023-4345

Broadcom RAID Controller web interface is vulnerable client-side control bypass leads to unauthorized data access for low privileged user

Mitigation only
Fix from $1,600 2023-08-15
Fabric Operating System HIGH 7.8
CVE-2023-31425

A vulnerability in the fosexec command of Brocade Fabric OS after Brocade Fabric OS v9.1.0 and, before Brocade Fabric OS v9.1.1 could allow a local a…

Mitigation only
Fix from $1,950 2023-08-01
Symantec Siteminder Webagent MEDIUM 5.4
CVE-2023-23956

A user can supply malicious HTML and JavaScript code that will be executed in the client browser

No fix yet
Fix from $1,600 2023-05-30
Symantec Identity Governance And Administration MEDIUM 6.1
CVE-2023-23950

User’s supplied input (usually a CRLF sequence) can be used to split a returning response into two responses.

Mitigation only
Fix from $1,600 2023-01-26
Symantec Identity Governance And Administration MEDIUM 6.1
CVE-2023-23951

Ability to enumerate the Oracle LDAP attributes for the current user by modifying the query used by the application

No fix yet
Fix from $1,600 2023-01-26
Symantec Identity Governance And Administration MEDIUM 5.4
CVE-2023-23949

An authenticated user can supply malicious HTML and JavaScript code that will be executed in the client browser.

Mitigation only
Fix from $1,600 2023-01-26
Symantec Identity Governance And Administration HIGH 8.8
CVE-2022-25628

An authenticated user can perform XML eXternal Entity injection in Management Console in Symantec Identity Manager 14.4

Mitigation only
Fix from $1,950 2022-12-16
Symantec Identity Governance And Administration MEDIUM 6.7
CVE-2022-25627

An authenticated administrator who has physical access to the environment can carry out Remote Command Execution on Management Console in Symantec Id…

Mitigation only
Fix from $1,600 2022-12-16
Symantec Identity Governance And Administration MEDIUM 5.3
CVE-2022-25626

An unauthenticated user can access Identity Manager’s management console specific page URLs. However, the system doesn’t allow the user to carry out …

Mitigation only
Fix from $1,600 2022-12-16
Fabric Operating System CRITICAL 9.8
CVE-2022-33186

A vulnerability in Brocade Fabric OS software v9.1.1, v9.0.1e, v8.2.3c, v7.4.2j, and earlier versions could allow a remote unauthenticated attacker t…

Mitigation only
Fix from $2,300 2022-12-08
Fabric Operating System MEDIUM 5.5
CVE-2021-27798

A vulnerability in Brocade Fabric OS versions 7.4.1b and 7.3.1d could allow local users to conduct privileged directory transversal. Brocade Fabric O…

Mitigation only
Fix from $1,600 2022-08-05
Advanced Secure Gateway CRITICAL 9.1
CVE-2021-46825

Symantec Advanced Secure Gateway (ASG) and ProxySG are susceptible to an HTTP desync vulnerability. When a remote unauthenticated attacker and other …

Mitigation only
Fix from $2,300 2022-07-07
Ca Automic Automation CRITICAL 9.8
CVE-2022-33750

CA Automic Automation 12.2 and 12.3 contain an authentication error vulnerability in the Automic agent that could allow a remote attacker to potentia…

Mitigation only
Fix from $2,300 2022-06-16
Ca Automic Automation CRITICAL 9.8
CVE-2022-33752

CA Automic Automation 12.2 and 12.3 contain an insufficient input validation vulnerability in the Automic agent that could allow a remote attacker to…

Mitigation only
Fix from $2,300 2022-06-16
Ca Automic Automation CRITICAL 9.8
CVE-2022-33754

CA Automic Automation 12.2 and 12.3 contain an insufficient input validation vulnerability in the Automic agent that could allow a remote attacker to…

Mitigation only
Fix from $2,300 2022-06-16
Ca Automic Automation HIGH 8.8
CVE-2022-33753

CA Automic Automation 12.2 and 12.3 contain an insecure file creation and handling vulnerability in the Automic agent that could allow a user to pote…

Mitigation only
Fix from $1,950 2022-06-16
Ca Automic Automation HIGH 7.5
CVE-2022-33751

CA Automic Automation 12.2 and 12.3 contain an insecure memory handling vulnerability in the Automic agent that could allow a remote attacker to pote…

Mitigation only
Fix from $1,950 2022-06-16
Ca Automic Automation HIGH 7.5
CVE-2022-33756

CA Automic Automation 12.2 and 12.3 contain an entropy weakness vulnerability in the Automic AutomationEngine that could allow a remote attacker to p…

Mitigation only
Fix from $1,950 2022-06-16
Ca Automic Automation MEDIUM 5.3
CVE-2022-33755

CA Automic Automation 12.2 and 12.3 contain an insecure input handling vulnerability in the Automic Agent that could allow a remote attacker to poten…

Mitigation only
Fix from $1,600 2022-06-16
Symantec Siteminder MEDIUM 6.1
CVE-2005-10001

A vulnerability was found in Netegrity SiteMinder up to 4.5.1 and classified as critical. Affected by this issue is the file /siteminderagent/pwcgi/s…

Mitigation only
Fix from $1,600 2022-03-28
Tcpreplay MEDIUM 5.5
CVE-2022-25484

tcpprep v4.4.1 has a reachable assertion (assert(l2len > 0)) in packet2tree() at tree.c in tcpprep v4.4.1.

No fix yet
Fix from $1,600 2022-03-22
Xcom Data Transport CRITICAL 9.8
CVE-2022-23992

XCOM Data Transport for Windows, Linux, and UNIX 11.6 releases contain a vulnerability due to insufficient input validation that could potentially al…

Mitigation only
Fix from $2,300 2022-02-14
Tcpreplay MEDIUM 5.5
CVE-2021-45386

tcpreplay 4.3.4 has a Reachable Assertion in add_tree_ipv6() at tree.c

No fix yet
Fix from $1,600 2022-02-11
Tcpreplay MEDIUM 5.5
CVE-2021-45387

tcpreplay 4.3.4 has a Reachable Assertion in add_tree_ipv4() at tree.c.

No fix yet
Fix from $1,600 2022-02-11
Netmaster File Transfer Management MEDIUM 6.1
CVE-2022-23083

NetMaster 12.2 Network Management for TCP/IP and NetMaster File Transfer Management contain a XSS (Cross-Site Scripting) vulnerability in ReportCente…

No fix yet
Fix from $1,600 2022-01-18
Tcpreplay MEDIUM 5.5
CVE-2020-23273

Heap-buffer overflow in the randomize_iparp function in edit_packet.c. of Tcpreplay v4.3.2 allows attackers to cause a denial of service (DOS) via a …

No fix yet
Fix from $1,600 2021-09-22
Fabric Operating System MEDIUM 5.3
CVE-2020-15386

Brocade Fabric OS prior to v9.0.1a and 8.2.3a and after v9.0.0 and 8.2.2d may observe high CPU load during security scanning, which could lead to a s…

Mitigation only
Fix from $1,600 2021-06-09
Ca Service Catalog HIGH 7.5
CVE-2020-29478

CA Service Catalog 17.2 and 17.3 contain a vulnerability in the default configuration of the Setup Utility that may allow a remote attacker to cause …

Mitigation only
Fix from $1,950 2021-01-05
Fabric Operating System CRITICAL 9.8
CVE-2020-15371

Brocade Fabric OS versions before Brocade Fabric OS v9.0.0, v8.2.2c, v8.2.1e, v8.1.2k, v8.2.0_CBN3, contains code injection and privilege escalation …

Mitigation only
Fix from $2,300 2020-09-25